Lebanese For Advanced Information Technologies SARL
LFAIT / MFAIT
This Acceptable Use Policy (“AUP”) governs all use of services, networks, servers, virtual machines, IP addresses, bandwidth, applications, storage, security services, proxy services, and other infrastructure supplied by LFAIT.
This AUP forms part of LFAIT's Terms of Service. Violation of this AUP constitutes a violation of the Terms of Service.
The Customer is responsible for all activity originating from or conducted through its Services.
This includes activity performed by the Customer's employees, administrators, contractors, customers, subscribers, resellers, end-users, scripts, applications, servers, virtual machines, APIs, automated systems, or other persons receiving access directly or indirectly through the Customer.
A Customer may not avoid responsibility under this AUP merely by claiming that prohibited activity originated from an end-user, reseller, compromised server, compromised credential, automated application, or third party using Customer-controlled infrastructure.
The Services must not be used to conduct, facilitate, assist, enable, conceal, or knowingly support unlawful, malicious, fraudulent, abusive, infringing, unauthorized, or materially disruptive activity.
The examples listed in this AUP are not exhaustive.
Customers using the Services for streaming, IPTV, retransmission, media distribution, restreaming, broadcasting, CDN activity, video delivery, or similar purposes represent and warrant that they possess all rights, permissions, licenses, and authorizations legally required for that activity.
Prohibited activity includes unauthorized:
A Customer may be required to provide reasonable evidence of authorization or licensing following a credible complaint.
Failure to provide sufficient information may result in restriction or suspension while the matter is investigated.
The following are prohibited:
Prohibited activity includes:
Legitimate penetration testing or security research must be conducted only against systems for which the Customer has proper authorization and must not materially affect LFAIT, an Upstream Provider, or third parties.
Prohibited activity includes:
Customers may not host, distribute, transmit, advertise, facilitate, or knowingly support content or activity prohibited by applicable law.
Content involving unlawful exploitation, abuse of minors, terrorist activity, trafficking, serious financial crime, or other activity requiring immediate legal intervention may result in immediate restriction or termination and may be reported where required by law.
Customers may not intentionally or negligently operate systems in a manner that materially:
IP addresses supplied with the Services remain subject to LFAIT and applicable Upstream Provider network policies.
Customers must not use assigned IP addresses in a manner that causes or is reasonably likely to cause:
LFAIT may, where reasonably required:
IP addresses assigned with a Service do not become the Customer's property unless specifically transferred under a separate written agreement.
Customers operating proxies, VPNs, tunnels, relays, exit nodes, public gateways, residential proxy systems, or similar services must implement reasonable abuse controls appropriate to the risk of the Service.
LFAIT may require measures including:
Persistent abuse from proxy, VPN, relay, or public-access infrastructure may result in restriction or termination.
The Customer is responsible for securing Customer-controlled systems.
Customers should implement security practices appropriate to their Services, including:
If a system is compromised, the Customer must promptly:
A compromised server does not automatically exempt the Customer from obligations under this AUP.
Abuse reports should be submitted through the designated LFAIT abuse channel.
Reports should contain, where available:
LFAIT may request additional evidence where a complaint is incomplete or unclear.
LFAIT is not required to treat unsupported allegations as conclusive evidence.
Where immediate action is reasonably necessary to protect the network, prevent serious harm, satisfy legal obligations, or comply with an Upstream Provider requirement, temporary protective action may be taken before completion of an investigation.
When LFAIT forwards an abuse complaint or requests remediation, the Customer must respond within the timeframe specified in the notice.
For high-risk, active, or ongoing abuse, a substantially shorter response period may be required.
The Customer may be required to:
Failure to respond within the required period may result in restriction or suspension.
A denial that does not address credible technical evidence may not be considered adequate remediation.
LFAIT may take immediate action without prior notice where reasonably necessary to protect its network, customers, Upstream Providers, third parties, or legal interests.
Emergency action may include:
Such action may be taken in response to active attacks, malware, ransomware, botnets, phishing, fraud, exploitation, significant infringement supported by credible evidence, urgent upstream notices, legal orders, or other activity creating an immediate material risk.
Repeated complaints, recurring malicious activity, repeated failure to secure compromised Services, repeated infringement, or continued violations after warnings may be treated as repeat abuse.
LFAIT may consider:
Repeat offenders may have Services terminated even where individual incidents might otherwise have resulted only in warnings.
Customers may not evade an abuse history by opening new accounts, changing contact information, moving activity to another server, or ordering through another controlled entity.
Certain Services depend upon Upstream Providers.
Where an Upstream Provider requires action relating to specific traffic, IP addresses, servers, or Services, LFAIT may implement the required action where reasonably necessary to maintain connectivity, contractual compliance, security, or Service availability.
LFAIT will not be responsible for an Upstream Provider action resulting from Customer abuse, unlawful activity, security threats, or violations attributable to the Customer, except to the extent liability cannot lawfully be excluded.
Where Customer activity causes LFAIT to incur material and reasonably documented costs due to abuse investigation, mitigation, emergency technical intervention, replacement of blacklisted resources, legal requests, Upstream Provider penalties, IP remediation, or other extraordinary remediation, LFAIT may seek reimbursement from the Customer to the extent permitted by applicable law and the applicable contract.
This provision is not intended to create arbitrary penalties. Charges should reflect reasonable costs or contractual third-party charges attributable to the Customer's activity.
Where DDoS protection, firewalling, filtering, mitigation, monitoring, or another security feature is provided, such Services reduce certain risks but cannot guarantee prevention of every attack or interruption.
LFAIT may change routing, apply filters, rate-limit traffic, or temporarily null-route a destination where reasonably necessary to protect network stability.
A DDoS-protected Service does not authorize a Customer to intentionally attract, provoke, participate in, or facilitate attacks.
Customers may not circumvent or attempt to circumvent:
Attempts to bypass an enforcement action may result in termination.
LFAIT may suspend, restrict, or terminate an affected Service where:
Prior notice is not required where immediate action is reasonably necessary to address serious abuse, active attacks, fraud, security threats, legal requirements, or network protection.
Suspension caused by Customer abuse does not by itself create a right to a refund or Service Level Agreement credit, except where required by applicable law or a specific written agreement.
Security, network abuse, copyright, phishing, malware, spam, fraud, and related complaints should be submitted to:
Abuse: [email protected]
Reports should contain sufficient technical evidence to allow a reasonable investigation.
Customers are responsible for activity originating from their Services, including activity performed by employees, contractors, customers, resellers, end-users, compromised systems, scripts, applications, and credentials.
LFAIT may take immediate protective action where activity creates a serious security, legal, abuse, network, or Upstream Provider risk.
If you receive an abuse notification from LFAIT, respond promptly and completely. Failure to remediate abuse may result in network restriction, IP null-routing, suspension, or termination.
Lebanese For Advanced Information Technologies SARL