Legal

Acceptable Use Policy

Obelisk is a security product. Use it to protect what's yours — not to attack others.

Last updated 2026-07-29

Prohibited conduct

You agree not to:

  • Attempt to breach, probe, or disrupt the Service or other users' accounts, except under our vulnerability disclosure policy.
  • Impersonate any person or organization, or register handles you have no right to use.
  • Use Obelisk to facilitate unlawful activity, fraud, or the distribution of malware.
  • Circumvent rate limits, access controls, or the tamper-evidence of the audit chain.
  • Reverse-engineer, resell, or sublicense the Service except as expressly permitted.

Website scanning

Only scan sites you own or are authorized to test. The Obelisk Rating website scan performs an external read of transport and security headers. You must have authority over any domain you submit. We block scans of private, loopback, and metadata hosts, and we may block abusive scanning.

Organizations

Organization owners and admins are responsible for who they invite and the roles they grant. Invites are link-based, role-scoped, and expire; revoke any you no longer need.

Enforcement

We may suspend or terminate access for violations, and may report unlawful conduct to the appropriate authorities. Questions: legal@obeliskgate.com.