Scope and purpose
The policy exists to make the service boundary explicit. Normal workloads should remain distinguishable from activity that creates security, reliability or legal risk for the platform or other users.
Allowed use
Use the platform for lawful workloads that match the configured service, account and traffic parameters. Customers remain responsible for the content and systems they connect to the platform.
Legitimate traffic
Normal application traffic, APIs, websites and other documented workloads are within scope when operated lawfully and within service limits.
Responsible operation
Changes should be made through the supported control surface and should not intentionally undermine service isolation, monitoring or access controls.
Prohibited use
Activity may be restricted when it is unlawful, intentionally abusive, designed to compromise systems, or materially interferes with the platform or other customers.
Abuse and attacks
Attempts to disrupt, probe, compromise or gain unauthorized access to infrastructure or third-party systems are outside the permitted boundary.
Evasion of controls
Deliberately bypassing documented security, rate, identity or isolation controls is not considered normal service use.
Abuse response
Signals are assessed in context rather than by a single metric. Where action is required, the response may include investigation, traffic restriction, temporary suspension or escalation to the responsible account contact.
Security boundaries
Platform controls protect shared infrastructure, service availability and account isolation. External systems remain outside NORDPORT's control boundary and may impose their own restrictions.
Review and requests
Questions about a restriction or the interpretation of this policy should include the affected service, relevant request or event identifier, approximate time and a concise description of the workload. This gives the responsible team enough context to review the decision.