# Legal and Ethical Use Disclaimer

NanoDeck security resources are provided for authorized defensive security,
digital forensics, compliance, education, CTF labs, and professional assessments.
They must not be used to access, test, scan, monitor, disrupt, or collect data
from systems without explicit permission from the owner or another valid legal
authority.

## Required User Commitments
- I will obtain written authorization before assessing any third-party system.
- I will follow the written scope, test window, rate limits, and data rules.
- I will avoid destructive testing unless it is explicitly approved and planned.
- I will not collect, retain, or disclose secrets or personal data beyond the engagement need.
- I will report findings responsibly to the authorized contact.
- I will stop testing if I identify safety, availability, privacy, or legal concerns.

## Not Allowed
- Credential theft, phishing, malware, persistence, evasion, or unauthorized access.
- Scanning internet targets without permission.
- Exploiting live systems outside a signed scope.
- Publishing sensitive evidence, private keys, secrets, or personal data.

## Evidence Handling
Maintain chain of custody, store evidence securely, redact sensitive fields in
reports, and delete data according to the engagement agreement.
