These Terms set out the basis on which MonMyIP ("we", "the Provider") performs a free security audit and preliminary reconnaissance of the asset you specify when ordering an audit. By submitting an order and ticking the required consent box, you accept these Terms.
1. Who may order an audit
An audit may only be ordered by a person who owns the domain / website or holds explicit written authorization from the owner to commission security testing of the specified asset. By ordering, you represent and warrant that you have this right.
2. Scope of reconnaissance
As part of the free audit we perform only passive, non-intrusive reconnaissance against publicly available resources of the specified domain, including:
- checking DNS, WHOIS and domain configuration records;
- analysis of public HTTP headers and TLS/SSL certificates;
- identification of publicly visible technologies, services and standard open ports;
- open-source intelligence (OSINT) on the public exposure of the asset.
3. What we do NOT do
Without a separate written agreement we do not perform intrusive activities, in particular: active exploitation of vulnerabilities, brute-force attacks, DoS/DDoS testing, login attempts, modification or deletion of data, or any action that could disrupt your services.
4. Your consent
By ticking the required consent box in the form, you authorize MonMyIP to perform the passive reconnaissance described above on the specified domain and confirm you are entitled to do so. You may withdraw consent before the audit begins by contacting us at [email protected].
5. Email verification and audit activation
After submitting the form, a confirmation email with a PDF and an activation link will be sent to the provided corporate email address (matching the domain of the audited website). The audit only begins once the activation link is clicked. The link is valid for 72 hours from submission — after that the request expires and must be resubmitted.
6. Report and confidentiality
We share reconnaissance results only with the person who ordered the audit and treat them as confidential. We do not disclose discovered vulnerabilities to third parties. We recommend remediating any identified issues promptly.
7. Limitation of liability
The free audit is preliminary and informational. It does not guarantee discovery of all vulnerabilities and is not a full penetration test. MonMyIP is not liable for damages arising from existing vulnerabilities or from actions taken based on the report.
8. Personal data
Data submitted in the audit form is processed in accordance with our Privacy Policy (GDPR).
9. Contact
Questions about the audit: [email protected].