# Acceptable Use Policy

ifport.io is a defensive request-source-only TCP port visibility service.

Allowed use: check the public request-source path that is contacting ifport.io.

Not allowed:

- no arbitrary third-party target scanning
- no forwarding-header spoofing
- no rate-limit evasion
- no use as a vulnerability assessment
- no reliance on unchecked ports as proof they are closed
- no abuse of persisted results
- no CIDR/range sweeps, domain or host reconnaissance, banner grabbing, exploitation, payload delivery, credential attacks, harassment, or abuse

Results are single-vantage, scoped observations. Unchecked ports are not assessed by the selected profile or explicit port list, and ifport.io does not provide a security assurance or vulnerability assessment.

For abuse reports or security issues, contact abuse@ifport.io or security@ifport.io.
General troubleshooting support is not provided for free public scans.

Privacy: https://ifport.io/privacy. Security policy: https://ifport.io/security.
