Legal Document

Terms of Service

Fortuna_Security LLC  |  Effective Date: January 1, 2026  |  Last Revised: May 2026

Plain-Language Summary

These Terms govern your use of all Fortuna_Security services — including our offensive security assessments, academy courses, device scanning tools, and booking platform. By using our services, you agree to these Terms. If you are using our services on behalf of a company, you represent that you have authority to bind that company.

Contents

01

Eligibility, Authority & Age Requirements

You must be at least eighteen (18) years of age to create an account, purchase a security assessment, enroll in an academy course, or use any diagnostic tool hosted on this platform. By accessing our services, you represent and warrant that you meet this age requirement.

If you are accessing or using our services on behalf of a business, organization, or other legal entity, you represent and warrant that you have full legal authority to bind that entity to these Terms and to authorize the execution of security testing, network scanning, and reconnaissance activities against the assets specified in your engagement scope.

02

Account Responsibility & Credential Security

You are solely responsible for maintaining the confidentiality of your account credentials, including your password, authentication tokens, and any JSON Web Tokens (JWTs) issued upon login. You agree not to share your credentials with any third party.

You agree to use our platform only for lawful purposes and to ensure that all data submitted through booking forms, scoping sheets, and diagnostic interfaces contains accurate, non-malicious inputs. Your specific responsibilities include:

Fortuna_Security reserves the right to immediately suspend or permanently terminate account access exhibiting signatures of multi-origin session reuse, brute-force credential attacks, directory enumeration, API fuzzing, or direct violations of platform rate-limit controls.

03

Authorized Scanning Boundaries & Honeypot Disclosure

All Fortuna_Security diagnostic tools — including the device assessment suite, port scanning utilities, and browser fingerprinting modules — are designed exclusively for lawful, ethical security validation. These tools are scoped to operate against your own devices and connections only.

You are explicitly prohibited from using our tools to target, scan, enumerate, or interact with any network, host, cloud instance, or application for which you do not hold a valid, written authorization. Unauthorized scanning may constitute a violation of the Computer Fraud and Abuse Act (18 U.S.C. § 1030), the Electronic Communications Privacy Act, or equivalent applicable law.

Honeypot Disclosure

This platform intentionally deploys active security honeypots and telemetry monitoring across its directory structure and API endpoints. Any attempt to bypass input validation, reverse-engineer routing logic, access unlinked administrative paths, or fuzz API boundaries will trigger automated security event logging, IP flagging, and may result in law enforcement referral.
04

Security Assessments — Scope, Risks & Limitations

Professional security assessments, penetration tests, port sweeps, vulnerability scans, and diagnostic engagements are governed by a separate Statement of Work (SOW) or engagement agreement executed prior to testing. These Terms apply in addition to, not in lieu of, any such engagement agreement.

05

Academy, Lab Environments & Student Conduct

Course materials, demonstration files, code frameworks, capture-the-flag exercises, and lab architectures deployed through the Fortuna_Security Academy are provided exclusively for educational research, student training, and authorized personal skill development.

As a student, you agree to the following conduct requirements:

06

Intellectual Property & Methodology Ownership

All source code, interface components, testing workflows, reporting methodologies, course content, instructional materials, brand assets, and custom tooling remain the exclusive intellectual property of Fortuna_Security LLC, protected under applicable copyright, trade secret, and intellectual property law.

The following are expressly prohibited without prior written corporate authorization:

07

Confidentiality of Deliverables & Findings

Technical reports, asset inventories, vulnerability parameters, exploitation evidence, and remediation blueprints generated through Fortuna_Security engagements contain sensitive configuration details about your infrastructure. These deliverables are classified as confidential.

You agree to:

Fortuna_Security maintains corresponding confidentiality obligations with respect to client data and will not disclose client vulnerability findings to third parties except as required by law or with explicit written client consent.

08

Automated Tools, Heuristics & Output Limitations

Certain platform features — including the device assessment suite, browser fingerprinting tool, and DNS leak detection — rely on automated heuristic analysis and programmatic parsing. You acknowledge that automated outputs may include false positives, false negatives, or contextual inaccuracies resulting from network conditions, browser configurations, or tool limitations.

Automated diagnostic summaries represent dynamic awareness data and must not serve as the sole basis for infrastructure risk classification, formal compliance assertions, or legal proceedings without independent validation by a qualified security professional.

09

Disclaimers & Limitation of Liability

The platform, scanners, laboratory modules, assessment files, and all generated content are provided strictly on an "AS IS" and "AS AVAILABLE" basis. Fortuna_Security LLC disclaims all implied representations, statutory warranties, or guarantees — including implied warranties of merchantability, fitness for a particular purpose, or non-infringement.
To the fullest extent permitted by applicable law, Fortuna_Security LLC shall not be liable for any indirect, incidental, special, consequential, or punitive damages — including but not limited to system outages, financial loss, data corruption, firewall lockouts, or service termination — arising from the use of our platform, tools, or engagement outputs, even if advised of the possibility of such damages.
10

Termination & Suspension

Either party may terminate an active service engagement or account relationship with written notice. Fortuna_Security reserves the right to immediately suspend or terminate your account and access to all platform services, without prior notice, for any of the following:

Upon termination, your right to access the platform ceases immediately. Sections 6 (Intellectual Property), 7 (Confidentiality), 9 (Disclaimers & Liability), and 11 (Dispute Resolution) survive termination and remain in full effect.

11

Dispute Resolution & Governing Law

These Terms are governed by and construed in accordance with the laws of the State of Texas, United States of America, without regard to conflict of law principles.

Before initiating any formal dispute, you agree to contact Fortuna_Security in writing and attempt good-faith resolution within thirty (30) days of providing notice. If the dispute cannot be resolved informally, the parties agree to binding arbitration administered by the American Arbitration Association (AAA) under its Commercial Arbitration Rules, conducted in English in Travis County, Texas.

Class Action Waiver

By agreeing to these Terms, you waive any right to participate in a class action lawsuit or class-wide arbitration against Fortuna_Security. All disputes must be brought on an individual basis only.

Nothing in this section shall prevent Fortuna_Security from seeking emergency injunctive or equitable relief in a court of competent jurisdiction where necessary to protect its intellectual property, confidential information, or platform security.

12

Modifications & Severability

Fortuna_Security reserves the right to modify these Terms at any time. When material changes are made, we will update the "Last Revised" date at the top of this document and, where feasible, notify registered users by email or platform notification at least fourteen (14) days prior to the effective date of such changes.

Your continued use of the platform following the effective date of any modification constitutes your acceptance of the revised Terms. If you do not agree to the modified Terms, you must discontinue use of the platform and may request account closure by contacting us at legal@fortunasecurity.com.

If any provision of these Terms is found by a court of competent jurisdiction to be invalid, illegal, or unenforceable, that provision shall be modified to the minimum extent necessary to make it enforceable, and the validity and enforceability of the remaining provisions shall not be affected.

Fortuna_Security LLC

For questions about these Terms, contact: legal@fortunasecurity.com
For security disclosures: security@fortunasecurity.com