PATHFABRIC ACCEPTABLE USE POLICY

Version 1.2 - Effective July 16, 2026

1. Scope

This Acceptable Use Policy applies to every Pathfabric account, service, assigned address, tunnel, remote system, user, application, and packet routed through the service. It forms part of the Pathfabric Terms of Service.

You are responsible for activity performed intentionally or unintentionally through your account or service, including activity caused by compromised systems, exposed credentials, vulnerable applications, customers, or other people you authorize.

2. Prohibited activity

You must not use Pathfabric to perform, facilitate, advertise, conceal, or knowingly enable:

- Unsolicited bulk email, spam, mass mailing, message-board or form spam, address harvesting, or evasion of anti-spam controls.

- Denial-of-service activity, traffic flooding, reflection or amplification, stress testing against systems you do not own or lack permission to test, or participation in a botnet.

- Unauthorized access, exploitation, credential attacks, hacking, intrusion attempts, or scanning of ports, hosts, accounts, or vulnerabilities without documented authorization.

- Malware, ransomware, spyware, phishing, credential theft, command-and-control infrastructure, malicious redirects, exploit distribution, or systems primarily intended to compromise others.

- Source-address spoofing, deceptive routing information, protocol impersonation, or manipulation intended to hide abusive traffic or interfere with attribution.

- Publicly accessible open proxies, open DNS resolvers, UDP amplification services, open port mappers, or similar services commonly used to conceal abuse or attack others. Private, authenticated proxy or VPN use is permitted when otherwise compliant.

- Tor exit nodes or public anonymity relays that expose Pathfabric addresses to unrelated third-party traffic.

- Fraud, identity theft, financial crime, unlawful gambling, trafficking, threats, harassment, exploitation, or any activity prohibited by applicable law.

- Content or activity that infringes copyright, trademark, privacy, publicity, trade-secret, or other rights, including distribution of cracked software, counterfeit goods, or unlawfully copied material.

- Any activity intended or reasonably likely to place an assigned address or provider network on an abuse list or blocklist, damage network or sender reputation, trigger repeated complaints, or interfere with service to others.

- Attempts to bypass service limits, metering, billing, suspension, authentication, rate limits, provisioning locks, or security controls.

3. Security and response duties

You must maintain reasonable security for remote systems, applications, credentials, keys, and users. You must investigate suspected compromise promptly, preserve relevant information, stop abusive activity, and cooperate with reasonable remediation requests.

Being the victim of an incoming attack does not by itself violate this Policy. You must nevertheless cooperate with mitigation measures reasonably needed to protect the service, providers, or third parties.

4. Enforcement

We may investigate suspected violations and may limit traffic, null-route or filter addresses, suspend a service or account, require corrective action, preserve relevant records, or terminate access. Emergency action may occur without advance notice where reasonably necessary to address security, legal, provider, or network-reputation risk.

Repeated, deliberate, severe, or uncorrected violations may result in permanent termination.

5. Reporting abuse

Report abuse or legal concerns through https://www.it7.net/contact/. Include relevant IP addresses, timestamps with time zone, logs, packet details, and other information needed to investigate. Customers should use the Pathfabric ticket system for account-specific support.

6. Changes

We may update this Policy. We will notify you of material changes where required by applicable law.