Legal

Acceptable Use Policy

Last updated September 25, 2026

Draft, not yet in effect. This document is being finalized. Highlighted text is still to be decided. Questions to admin@alesiansecurity.com.

This policy forms part of the Terms of Service and the Subscription Services Agreement of Alesian Security LLC ("Alesian", "we"). It applies to everyone who uses the Service. The Service exists to protect organizations and the people who deal with them from impersonation. We may refuse any use that works against that purpose, even if this page does not name it.

1. Watching and verified properties

  • You may watch any domain name for lookalikes. Watching is for monitoring and research only; it gives you no authority to act against anyone on that name's behalf.
  • Block requests, takedown requests and DMARC reporting are only for domains you own or are authorized in writing to act for (for example, as an agency or managed service provider for a client). Verify control of a domain as the Service requires (an email from an administrative address at that domain) before requesting a block, and do not use someone else's verification or mailbox.
  • If we ask, show us your authority. If you cannot, we may disable those features for the domain.

2. Block and takedown requests

Do not request a block or takedown against:

  • a name you do not have a genuine basis to believe imitates you or is being used to harm you or people who deal with you;
  • a competitor's, or anyone's, ordinary and legitimate use of a similar name;
  • a site used for criticism, commentary, parody, news or reporting;
  • a name you want to acquire, or to gain leverage in a commercial or legal dispute;
  • a name you or your affiliates own;
  • anything connected with a domain you watch but have not verified under section 1.

Do not give false or misleading evidence, and do not hide facts you know would matter to our review. Do not submit repeated or speculative requests to test our review; each request uses a credit whether or not we approve it, and a request cannot be repeated for the same name.

3. Honest identity

  • Do not impersonate another person or organization, or claim authority you do not have.
  • Do not use the Service, its reports or its name in a way that suggests we endorse you or have verified a claim we have not.

4. Using findings

  • Do not use detections to register, buy, sell, park or monetize lookalike domain names.
  • Do not use the Service to plan, test or improve phishing, spoofing, or other impersonation, except for authorized testing of your own organization.
  • Do not use the Service or its data to contact, harass, threaten or publicly accuse registrants. Take concerns to us, the registrar, the host, or the authorities.
  • Do not use WHOIS or other contact details from the Service for marketing or outreach.

5. Mail-defense and monitoring features

  • Point DMARC reporting only at domains you control or are authorized to manage.
  • Use failure reports and message data only to find and stop spoofing and to improve your mail authentication. Do not use them to read, collect or act on the content of other people's messages for any other purpose.
  • Do not use Alesian monitoring addresses, or ask us to use them, to subscribe to mail in breach of the sender's terms, to access paid or restricted content, or to collect personal data about individuals.

6. Security and the platform

  • Do not probe, scan or test the Service's security, or bypass its access controls or limits. Report suspected vulnerabilities as described in /.well-known/security.txt.
  • Do not load-test the Service, or send automated requests beyond what the Service's features are designed for.
  • Do not scrape the public pages (such as /explore) beyond ordinary browsing, or use them to build a competing dataset.
  • Do not upload malware, or use the Service to send spam.
  • Do not share accounts or credentials, or resell or redistribute access or data, unless your Order Form allows it.

7. Law

Use the Service only lawfully, including privacy, anti-spam, computer misuse, export control and sanctions laws.

8. What we may do

If we believe this policy has been breached, we may, depending on the seriousness: ask for information; warn you; decline or cancel requests; withdraw block submissions and ask operators to delist names; remove watched names; suspend or close accounts; and report conduct to the authorities or affected parties. Where reasonable, we will tell you first.

9. Reporting misuse

If you believe someone has misused the Service, including by submitting a wrongful block request about your domain, email admin@alesiansecurity.com. See also Your Data Rights, section 9.