1. Malicious Security Activity
Prohibited activities include:
- malware, ransomware, credential stealers and malicious payloads;
- botnets and malicious command-and-control infrastructure;
- phishing and credential harvesting;
- unauthorized exploitation or intrusion;
- password attacks or credential stuffing against unauthorized targets;
- deliberate compromise of third-party systems;
- distribution or operation of tools primarily being used to attack unauthorized targets.
2. Network Attacks
DDoS, DoS, reflection/amplification attacks, deliberate packet floods and other intentional disruption of third-party networks or Front Line infrastructure are prohibited.
Legitimate security testing must be limited to systems for which the customer has authorization and must not threaten Front Line infrastructure or other customers.
3. Customer Isolation
Customers must never attempt to access another Front Line customer's files, databases, credentials, virtual machines, containers, networks or management interfaces without authorization.
Attempts to bypass tenant isolation or Front Line security controls may result in immediate containment and investigation.
4. Fraud, Spam and Deception
- No phishing or impersonation services.
- No credential theft.
- No payment or identity fraud.
- No unsolicited bulk messaging or abusive spam operations.
- No intentionally deceptive services designed to harm others.
5. Resource Abuse
Customers may not intentionally exhaust shared CPU, memory, disk, storage I/O or network resources, evade service quotas or circumvent technical limits.
Cryptocurrency mining is prohibited unless Front Line has expressly authorized it for the particular service.
6. Infrastructure Interference
Customers may not attack, bypass, disable, probe without authorization or otherwise interfere with Front Line authentication, billing, provisioning, monitoring, security, automation or control-plane infrastructure.
7. Unlawful Activity
Services may not knowingly be used to conduct unlawful activity or host, distribute or facilitate material prohibited by applicable law.
8. Automated Detection and Enforcement
Front Line may use automated systems to identify resource-limit violations, service-health conditions, security indicators and potential abuse.
Where reasonably necessary to protect customers or infrastructure, automated or operator-initiated controls may temporarily isolate, restrict or suspend a service. Significant enforcement actions may be reviewed when appropriate.
9. Serious and Repeat Violations
A serious single violation or repeated violations may result in suspension or termination. Front Line may preserve relevant operational or security records where reasonably necessary and permitted by law.
