Legal/Cybersecurity Policy

Cybersecurity Policy

Last updated: 1 August 2025

1. Authorized use requirement

The CYRIS Shield cybersecurity workspace must only be used on systems, networks, applications, and environments that you own, control, or have explicit, documented written authorization to assess. Unauthorized use of CYRIS Shield is strictly prohibited.

2. Prohibited activities

  • Unauthorized access to any computer system, network, or data.
  • Using CYRIS Shield to plan, facilitate, or execute attacks on systems you do not own or are not authorized to test.
  • Generating malware, exploit code, or attack tooling intended for unauthorized use.
  • Using outputs to harass, surveil, or harm individuals or organizations.
  • Bypassing or attempting to bypass CYRIS Shield's safety controls.

3. Defensive use only

CYRIS Shield is designed exclusively for defensive security purposes: threat modeling, risk assessment, incident documentation, security planning, and pre-engagement preparation within authorized scopes. It is not designed for offensive exploitation.

4. User responsibility

Users are solely responsible for ensuring their use of CYRIS Shield complies with all applicable laws, regulations, and contractual obligations. This includes but is not limited to computer fraud laws, data protection regulations, and engagement scope agreements with clients.

5. Compliance

Lienskill Limited reserves the right to suspend or terminate access for any user who violates this policy. We may report violations to relevant authorities where required by law.

6. Reporting

If you become aware of misuse of CYRIS Shield, please report it to security@lienskill.com.

Contact

Security concerns: security@lienskill.com