This policy governs use of kagesystem.com, any Kage System product or service made available through it — including Kage OAT once released — and any communication channel we operate, such as our newsletter. It forms part of our Terms of Service; where a signed services agreement covers the same ground, that agreement prevails.
We would rather write a short policy and enforce it sparingly than a long one nobody reads. The rules below exist because the alternative is being complicit in harm.
Do not use this site or our services to break the law, to infringe anyone’s rights, or to do to others what you would report as an incident if it were done to you.
Kage OAT aggregates open-source intelligence. Aggregation is precisely what makes such tooling powerful and what makes misuse dangerous: individually harmless public facts become a surveillance profile once combined. The following are prohibited absolutely, regardless of whether the underlying sources are public.
If you use our tooling in a professional context — penetration testing, threat intelligence, due diligence, investigative journalism, or law enforcement — you are responsible for holding the authorisation, legal basis, and internal approvals that your context requires, and for retaining evidence of them. We do not supply that authorisation and cannot verify it on your behalf.
Search engine crawlers and feed readers are welcome, subject to robots.txt. Other automated access should identify itself with a descriptive user agent and a contact address, request no more than one page per second, and back off on 429 or 5xx responses. Automated collection for the purpose of training machine learning models on our content requires prior written permission.
We welcome good-faith security research on our own systems. Contact [email protected] before you begin, describing what you intend to test. If you find a vulnerability, report it to us privately, give us reasonable time to fix it, avoid accessing or modifying data that is not yours, and do not degrade service for others. Research conducted on those terms is authorised and we will not pursue action over it.
Testing without that prior contact is not authorised, and is covered by the prohibitions above.
We may investigate suspected breaches and take proportionate action, including issuing a warning, removing content, rate-limiting or blocking access, suspending or terminating accounts and subscriptions, and — where the law requires it or the harm warrants it — reporting the matter to the competent authorities. Serious breaches, particularly those in the OSINT section, may result in immediate termination without warning.
Where circumstances allow, we prefer to ask before we act. Where they do not, we act first.
To report a breach of this policy, misuse of our tooling, or abuse originating from our infrastructure, email [email protected] with as much detail as you can provide, including timestamps and any relevant identifiers. Reports concerning harassment or the safety of an individual are prioritised.
This policy will be updated as our products evolve, particularly on the release of Kage OAT. The effective date above reflects the latest revision.