Responsible use guidelines and legal considerations for CyberMind CLI.
- Authorized Use Only
- Responsible Disclosure
- Legal Compliance
- Data Privacy
- Terms of Service
- Reporting Misuse
You must have explicit written permission to test any target.
✅ You own the target — Your own servers, applications, domains ✅ Written permission — Client contract, bug bounty program, authorization letter ✅ Public bug bounty — Testing within program scope on HackerOne, Bugcrowd, etc. ✅ Educational labs - Hack The Box, TryHackMe, VulnHub, your own lab ✅ CTF competitions - Within competition rules
❌ Without permission — Testing random websites, servers, organizations ❌ Outside scope — Testing beyond bug bounty program rules ❌ Malicious intent — Using for data theft, disruption, harassment ❌ Government targets — Testing government systems without authorization ❌ Critical infrastructure — Testing hospitals, power grids, emergency services
Unauthorized use is illegal and violates our Terms of Service.
- Stop immediately — Do not exploit further
- Document — Take screenshots, save evidence
- Report — Follow the program's disclosure policy
- Cooperate — Work with the vendor on fix timeline
- Public disclosure — Only after vendor fixes and approves
| Phase | Timeframe |
|---|---|
| Initial report | Immediately |
| Vendor acknowledgment | 48 hours |
| Fix timeline | 30-90 days (depends on severity) |
| Public disclosure | After fix deployed |
Always follow the specific program's rules:
- Scope (what you can/cannot test)
- Testing methods (allowed tools)
- Out-of-scope (what to avoid)
- Disclosure policy
Unauthorized access to computer systems is a federal crime.
Unauthorized access, intent to impair, or unauthorized modification is illegal.
Section 66: Computer-related offenses (hacking, unauthorized access).
Data protection law. Testing without consent violates data privacy rights.
- Know your local laws
- Get written authorization
- Stay within legal boundaries
- Follow responsible disclosure
- API key (hashed in database)
- Usage logs (endpoint, timestamp, status)
- Error logs (no sensitive data)
- Tool output from your scans
- Target URLs/domains
- Your findings/vulnerabilities
- Personal data from targets
- Database: Supabase PostgreSQL (encrypted at rest)
- Logs: Retained for 90 days
- API keys: SHA-256 hashed
# Request deletion
support@cybermindcli.comBy using CyberMind, you agree to:
-
Authorized Use Only
- Only test targets you own or have written permission to test
-
No Illegal Activity
- Not use for hacking, data theft, harassment, or any illegal purpose
-
Responsible Disclosure
- Follow responsible disclosure practices for vulnerabilities found
-
Indemnification
- You are solely responsible for your use of CyberMind
-
No Warranty
- CyberMind is provided "as is" without warranties
-
Plan Limits
- Respect rate limits and plan restrictions
-
API Key Security
- Keep your API key secret, do not share
If you believe CyberMind is being used illegally:
- Document evidence — Screenshots, logs, timestamps
- Report to us — abuse@cybermindcli.com
- Report to authorities — If illegal activity, contact law enforcement
- We will investigate — Suspend accounts violating ToS
- Receive abuse report
- Verify evidence
- Suspend offending account
- Cooperate with authorities
- Prevent future abuse
- Stay in scope — Read program rules carefully
- No destructive testing — Don't delete data, disrupt services
- Rate limit — Don't overwhelm targets
- Report promptly — Submit findings quickly
- Be professional — Communicate respectfully with triage
- Written contract — Always get written scope
- Define rules — Clear what's in/out of scope
- Regular check-ins — Update client on progress
- No data exfiltration — Unless explicitly authorized
- Clean up - Remove any backdoors/implants after test
- Responsible disclosure — Give vendors time to fix
- Proof of concept — Demonstrate without causing harm
- Collaborate — Work with vendors on fixes
- Credit — Acknowledge vendor cooperation
- Learn - Share knowledge responsibly
CyberMind is a tool for authorized security testing only. The creators are not responsible for misuse of this software. Users are solely responsible for ensuring their use complies with all applicable laws and regulations.
Legal Questions: legal@cybermindcli.com Abuse Reports: abuse@cybermindcli.com Security Issues: security@cybermindcli.com
Proprietary — All rights reserved.
© 2026 Chandan Pandey