Authorised Testing Only
Do not submit assets you do not own or have permission to test.
CLEAR TERMS. RESPONSIBLE SECURITY.
These terms explain the rules for using CGST India websites, enquiries, accounts, security assessments and related services.
Do not submit assets you do not own or have permission to test.
Testing remains within agreed assets, methods, timeframes and restrictions.
An assessment cannot prove a system is completely secure.
Sensitive findings and engagement information should be protected.
These Terms of Service (“Terms”) govern access to and use of Cyber Guard Solutions Team (“CGST”, “we”, “us” or “our”) websites, security assessment platform, accounts, security enquiries, assessments, reports and related services. By accessing or using a CGST service, you agree to these Terms to the extent applicable to your use of that service.
CGST provides cybersecurity-related services that may include security assessments, risk identification, findings and reports, remediation guidance, retesting, cybersecurity support, security awareness and related advisory services. The exact scope and deliverables of a paid or authorised engagement are determined by the applicable proposal, quotation, scope, authorisation, statement of work or other engagement documentation.
Certain CGST services may require an account. Authentication may include passwordless email verification, one-time passwords or other mechanisms made available by CGST. You are responsible for maintaining control of your email account, devices, sessions and authentication mechanisms. You must provide accurate information and must not impersonate another individual or organisation or access an account without authorisation.
You must not submit a domain, application, system, network, account, infrastructure component or other asset for security assessment unless you own it or have sufficient permission from its owner to authorise the requested testing.
You must not use CGST services to facilitate unauthorised access, malicious exploitation, credential theft, malware distribution, phishing, denial-of-service activity, unlawful surveillance, fraud, harassment, infringement of third-party rights or other unlawful or abusive activity. You must not intentionally interfere with or compromise CGST systems or other users’ accounts.
Security assessments represent observations within the agreed scope and conditions at the time the assessment is performed.
Customers are responsible for providing accurate scope information, maintaining appropriate backups, obtaining necessary permissions, identifying operational restrictions, reviewing proposed assessment scope, protecting their own credentials and systems, and implementing remediation decisions appropriate to their environment.
Where a CGST India service is chargeable, applicable prices, quotations, invoices or payment requests may be denominated in Indian Rupees (INR). The price and payment terms are those presented or agreed for the relevant service. Payments may be processed by third-party payment providers such as PayU where that payment flow is used.
Cancellation and refund eligibility may depend on the relevant service, whether work has commenced, resources have been allocated, third-party costs have been incurred and the terms communicated for the engagement. Engagement-specific terms take priority where they address cancellation or refunds.
Security reports, vulnerability information, technical findings, credentials, assessment evidence and other sensitive engagement information should be handled confidentially. Each party should take reasonable measures to prevent unauthorised disclosure, subject to lawful disclosure requirements and information already lawfully public or independently obtained without confidentiality restrictions.
CGST retains rights in its pre-existing methodologies, templates, platform software, branding, documentation and processes except where expressly agreed otherwise. Customers retain their rights in their own systems, data, content and materials supplied to CGST. Rights concerning engagement-specific reports and deliverables may also be governed by the applicable engagement documentation.
CGST may modify, maintain, suspend or discontinue website or platform functionality when reasonably necessary. We do not guarantee uninterrupted or error-free availability. CGST services may rely on third-party infrastructure such as hosting, authentication, email delivery, payment processing and analytics.
Cybersecurity involves evolving threats and inherent uncertainty. CGST does not warrant that an assessment, report, recommendation or other service will identify every existing or future vulnerability or prevent every cyberattack, data breach, service interruption, financial loss or other incident. Nothing in a CGST report should be interpreted as a representation that a system is “unhackable” or completely secure.
To the extent permitted by applicable law, liability arising from CGST services will be subject to the limitations agreed for the applicable engagement and any mandatory rights that cannot lawfully be excluded or limited. Nothing in these Terms excludes or limits liability where such exclusion or limitation is prohibited by applicable law.
CGST may suspend or terminate access where reasonably necessary because of unlawful activity, unauthorised security testing, material violation of these Terms, security threats, fraud, abuse, non-payment where applicable or legal requirements. Users may stop using CGST services subject to outstanding obligations from an existing engagement.
Personal information associated with CGST services is handled in accordance with the CGST Privacy Policy.
CGST may update these Terms to reflect changes in services, security requirements, business operations or applicable requirements. The current version will be published with an updated “Last updated” date.
These Terms and CGST India services are intended to operate subject to applicable laws of India. Any specific governing-law, jurisdiction, arbitration, mediation or dispute-resolution provisions agreed in an engagement-specific contract will apply according to their terms. CGST does not state a specific court jurisdiction here where it has not been separately agreed.
Questions regarding these Terms may be sent to info@cyberguardsolutionsteam.in.