1. Scope and relationship to the Terms
The Platform is an educational training environment that simulates offensive and defensive cybersecurity scenarios. This AUP applies to everyone who accesses the Platform, the website at eevsec.com, or any related service. It restates and expands Section 4 of the Terms of Service; where this AUP and the Terms address the same conduct, both apply, and the stricter requirement governs. Capitalised terms have the meaning given in the Terms.
2. Sandbox isolation
All simulations run inside isolated, single-use environments. You must not attempt to escape a simulation container, compromise the underlying infrastructure or hypervisor, access other users' sessions or data, or launch denial-of-service or other attacks against our systems. The boundary of an authorised exercise is the isolated environment provisioned for your match; everything outside it is out of scope. Any attempt to cross that boundary may lead to immediate suspension or termination and, where warranted, referral to the relevant authorities.
3. No off-platform misuse
You must not use any tools, techniques, scripts, or knowledge gained on the Platform to conduct unauthorised, malicious, or illegal activity against any network, system, or person outside the Platform. The Platform is for authorised training only. Skill built here is meant to defend real systems you are responsible for or have written permission to test — never to attack systems you do not own or are not authorised to assess.
4. Prohibited conduct
You also agree not to:
- reverse engineer, decompile, scrape, or copy the Platform except as the law expressly allows;
- resell, sublicense, or commercially exploit the Platform without our written permission;
- access the Platform by automated means, or circumvent any security control, rate limit, or access control;
- impersonate any person or misrepresent your affiliation;
- upload or deploy malware intended to harm the Platform or other users;
- infringe the intellectual property or privacy rights of others; or
- use the Platform in violation of any applicable law, including the export-control and sanctions laws that may apply to security tools.
5. Doctrine and intent
EEVSEC organises its scenarios around three doctrine layers — WAR (strategy), Ethical Hacking (craft), and Cyber Crime (the real-world threat). The Ethical Hacking layer is exactly that: ethical. Offensive technique exists on the Platform so defenders can recognise and counter it. Using the same technique against a system you are not authorised to test is not in the spirit of this AUP and is a breach of it, regardless of intent.
6. Reporting violations and enforcement
If you discover a vulnerability in the Platform itself, or believe someone is misusing it, follow our responsible-disclosure policy or email hi@eevsec.com (subject: “AUP report”). We may investigate suspected violations, and we may suspend or terminate access, remove content, or refer matters to the relevant authorities where the law or the safety of others requires it. We aim to act proportionately and to tell affected users where we are permitted to.
7. Changes to this Policy
We may update this AUP from time to time. We will post the updated version here with a revised date, and for material changes we will give notice as described in Section 9 of the Terms.
8. Contact
EEVSEC PRIVATE LIMITED, CIN U62013GJ2026PTC177190
401, Garud Apartment, Opp: Mahabaleshwar Flat, Jodhpur Char Rasta, Ahmedabad, Gujarat 380015, India