1. Required conduct
Users must act lawfully, honestly and in a manner that does not harm the website, Lily Asia, another user, a client, a partner or any third party.
2. Prohibited activities
- Unauthorised access, credential attacks, scanning, exploitation, reverse engineering or circumvention of security controls.
- Uploading or transmitting malware, destructive code, fraudulent content, unlawful material or material that infringes another person’s rights.
- Using false identities, impersonating another person or falsely suggesting affiliation, approval or authority.
- Collecting personal data from the website without lawful authority or permission.
- Automated scraping, crawling or bulk extraction beyond normal search-engine indexing or expressly permitted use.
- Interfering with availability, performance, logging, monitoring or incident response.
- Sending spam, unsolicited commercial communications or repetitive form submissions.
- Using the website to facilitate corruption, sanctions evasion, fraud, discrimination, harassment or any unlawful conduct.
- Using content or data for training or improving artificial-intelligence systems without written permission.
3. Monitoring and enforcement
We may use reasonable security tools, logs and rate limits to detect misuse. We may block traffic, preserve evidence, suspend features, notify affected parties or report suspected unlawful activity to authorities where appropriate.
4. Responsible security reporting
Security researchers should avoid accessing, changing or downloading data that is not their own and should promptly report a suspected vulnerability to business@lilyinasia.com with the subject “Security Report”. Public disclosure should be deferred until we have had a reasonable opportunity to investigate and remediate.