Legal and data handling

Clear authority, clear data boundaries, clear exclusions.

Commercial terms, privacy notice, DPA, acceptable-use policy, subprocessors and incident procedures are release gates for paid service.

01

What this capability is responsible for

Each function has a narrow operating boundary and a state derived from evidence.

Available

Privacy

Minimize telemetry, avoid bodies by default and publish retention and deletion behavior.

Available

Authorized scope

Scanning, proxying and response require verified ownership and explicit technique limits.

Needs configuration

Commercial documents

Terms, DPA, AUP, SLA and subprocessors require Romanian and EU legal review.

02

How the operating flow works

The visitor path remains short while control, evidence and rollback stay explicit.

  1. 01

    Document

    Describe data, authority, responsibilities and exclusions.

  2. 02

    Review

    Obtain written legal and privacy assessment.

  3. 03

    Accept

    Store versioned customer acceptance before activation.

Start with observation. Promote only measured controls.

Every traffic activation requires ownership, certificate, origin and rollback checks.

Request legal documents