Terms

Terms and data use

Last updated 8 August 2026

01

What is supplied

Access to telemetry recorded by security sensors we run on our own servers: aggregate statistics, indicators (source addresses, file hashes, URLs) and a read-only query API. A dataset purchase supplies a fixed, documented corpus as a download.

02

What you may do

  • Analyse it, act on it defensively, and publish findings derived from it, including academic work. Citation details ship with each dataset.
  • Use indicators operationally: block or hunt within your own estate.
  • Quote reasonable extracts with attribution.
03

What you may not do

  • Redistribute or resell the corpus, in whole or substantial part, as a data product.
  • Share account credentials or an API key outside the subscribing organisation.
  • Use the data to attack, harass or probe any third party. It is supplied for defence and research.
  • Attempt to overwhelm the service, circumvent its rate limits, or gain unauthorised access to it.
04

What is not warranted

The service is provided as is. There is no SLA on the self-serve tiers, no guarantee of availability, completeness or continuity, and no warranty that an indicator is accurate or that an address is malicious.

Sensor data is observational: it records what arrived. Inference beyond that is yours. Do not use it as the sole basis for a decision that materially affects a third party.

Our liability is limited to the fees you paid in the preceding 12 months.

05

Personal data

Records describe automated attack infrastructure, not individuals, and we do not deliberately collect personal data. A source IP address can still be personal data under the UK GDPR and the EU GDPR, so:

  • We record addresses that connect to our own sensors unsolicited. We do not scan, probe or collect from anyone else's systems.
  • Our basis for processing is legitimate interest in operating and researching network security. As a customer you are an independent controller for whatever you do with the data, and you need your own lawful basis for it.
  • Account data we hold is limited to a username, a password hash, a plan, an API key and sign-in records (time, address, user agent). It is kept while the account exists and for a short period afterwards for audit.
  • To request access to or deletion of account data, or to raise a data-protection question, email [email protected]. An institution that needs a data processing agreement can ask and we will provide one.
06

Malware handling

We do not sell, distribute or host malware, exploit code or offensive tooling. Samples the sensors capture stay in our own quarantine. Only cryptographic hashes are shared or submitted to third-party enrichment services.

Datasets contain observational records, indicators and hashes, and no executable content.

07

Payment and cancellation

Polar is the merchant of record. It bills you, collects local sales tax, and decides any refund under its own policy.

Cancelling stops renewal. Access and the API key end with the paid period.

08

Changes and termination

These terms may change. Material changes are notified by email to account holders.

We may suspend an account that breaches section 03.

About these terms

Written to be read and understood, not to be exhaustive. They have not been reviewed by a lawyer. If procurement needs something specific, ask and we will discuss it.