This is an old revision of the document!


No attacks against (or from) the instance

You may not do anything which may impact confidentiality, integrity or availability of Infosec.Exchange, the users of the service or their data.

You may not undertake any activity that would in any way put the confidentiality, integrity or availability of the servers, the users of the service or their data at risk.

This may include, but is not limited to:

  • Denial of Service attack (DoS)
  • Distributed Denial of Service attack (DDoS)
  • Attempting to hack/exploit any software or hardware that compromises the service
  • Compromise/attempted compromise of any user or admin account/login
  • Impersonation of any user or admin
  • Posting of malicious links/materials except where clearly identified as such and placed behind a content warning

Breach of this rule will lead to an immediate lifetime ban and may also include reporting to the relevant authorities.

This rule also encompasses using Infosec.Exchange in any way to impact other servers or people.

If you are looking for somewhere to test vulnerabilities of Mastodon, a list of servers maintained for this are available at https://wiki.infosec.exchange/faq/security/mastodon_vulnerability_testing