A little clarity goes a long way
Good work. Responsible use.
Simple expectations that help protect people, systems, and the work we do together.
Effective September 15, 2026
A shared standard
This policy applies to use of the Pathy website and communications sent through its contact options. It also applies to a client engagement when incorporated into the written service agreement. Cloud providers’ own acceptable use rules continue to apply to their products.
Use the website and any agreed services lawfully, respect other people’s rights, and access only systems and information you are authorized to use.
Prohibited activity
You must not use the website or services covered by this policy to:
- Commit fraud, impersonate another person, or misrepresent authority to act for an organization.
- Distribute malware, steal credentials, conduct phishing, or facilitate unauthorized access.
- Disrupt services through denial-of-service attacks, abusive automation, or attempts to bypass security controls.
- Send unlawful unsolicited messages, harassment, threats, or content that violates others’ rights.
- Access, disclose, or misuse personal, confidential, or copyrighted information without the required permission.
- Violate applicable sanctions, export restrictions, licensing requirements, or provider terms.
Ordinary search engine indexing and reasonable, non-disruptive access to public pages are permitted. Security testing requires advance written authorization and an agreed scope.
Responsible cloud administration
Clients must have the right to authorize work on the relevant accounts, networks, applications, and data. Any access granted to Pathy should be limited to the agreed work and removed when it is no longer needed.
Responsibilities for licenses, data permissions, backups, spending limits, and production changes belong in the written engagement. Do not ask Pathy to evade vendor controls, conceal unauthorized access, or use improperly licensed products.
How concerns are handled
We may limit or block website access that presents a security risk or violates this policy. Measures affecting a paid engagement will be governed by its written agreement and applicable law. Where practical and appropriate, we will explain the concern and seek a resolution.
We may preserve relevant information or make disclosures when required by law or necessary to investigate misuse and protect rights or safety, as described in our privacy policy.
Report misuse
Email carlos@pathy.cc with the subject “Abuse report.” Include the relevant URL, approximate time, and a short description. Share only the information needed to explain the concern.
For a potential vulnerability, use the guidance on our security page. Please do not send active credentials or unnecessary personal information.