Acceptable Use Policy

Last updated 2026-09-30

This Acceptable Use Policy is part of the Terms of Service. Terms defined there have the same meaning here. It applies to every account, Team, and Test Activity.

1. Authorized testing only

Use dejav only to test Target Sites that you own or are authorized to test. You are responsible for confirming that your authorization covers every domain, subdomain, account, page, API, and third-party service that Test Activity may reach or affect.

2. Prohibited use

You must not use the Service to:

  • access, probe, or test a system without authorization;
  • bypass authentication, access controls, rate limits, paywalls, or security measures;
  • disrupt, degrade, overload, or interfere with a Target Site or another person's systems;
  • submit spam, fraudulent orders, harmful content, or unwanted communications;
  • collect, disclose, or use personal information except as permitted by applicable law and your authority over the Target Site;
  • introduce malware, exploit a vulnerability, or attempt to obtain credentials, secrets, or data that you are not authorized to access;
  • place instructions aimed at the agent in a Target Site or in your test cases, specification files, or other input to make it act outside your testing instructions, extract its prompts, or bypass its safeguards (prompt injection). Intentional prompt injection may lead to a claim for damages as described in Section 8 of the Terms;
  • use the Service in violation of sanctions, export controls, or any other applicable law; or
  • help another person do any of the above.

3. Safe configuration

Configure excluded paths and test credentials carefully. Do not allow a test to reach production workflows, payment flows, administrative functions, or personal data unless you have assessed the risk and have the authority and safeguards needed to do so. Product safeguards reduce risk but do not replace your review or authorization.

4. Enforcement

We may investigate suspected violations and suspend or terminate access, preserve records, or cooperate with authorities and affected parties as described in the Terms. We may act without prior notice where needed to prevent harm or comply with law.

5. Contact

To report misuse or ask about this policy, email [email protected].