Amazon · AWS Acceptable Use Policy

Prohibition on Network Security Violations

High severity
Share 𝕏 Share in Share

What it is

Security Violations. Accessing or using any System without permission, including attempting to probe, scan, or test the vulnerability of a System or to breach any security or authentication measures used by a System. Intercepting or monitoring data or traffic on a System without permission.

Why it matters

Security researchers and penetration testers must obtain explicit authorization before conducting any testing through AWS infrastructure, or they risk immediate account suspension and potential law enforcement referral under the CFAA.

Consumer impact

AWS's AUP binds all customers — from individual developers to large enterprises — to a broad set of prohibited use categories, and makes customers responsible for ensuring their own end-users comply. AWS retains the unilateral right to investigate suspected violations and to suspend or remove access to content or resources without prior notice, which can cause immediate service disruption. If you host applications or services on AWS, you should review whether your own terms of service pass these obligations through to your end-users, as failure to do so creates direct liability under your AWS contract.

Applicable agencies

  • FTC
    FTC has jurisdiction over deceptive or unfair practices related to network security failures, and coordinates with DOJ on CFAA referrals involving platform providers.
    File a complaint →

Provision details

Document information
Document
AWS Acceptable Use Policy
Entity
Amazon
Document last updated
March 24, 2026
Tracking information
First tracked
March 6, 2026
Last verified
April 4, 2026
Record ID
CA-P-002110
Document ID
CA-D-00028
Evidence Provenance
Source URL
Wayback Machine
SHA-256
c61af89c19589f506fd3fc8bbb8010407f0052d2e845554c876b99cc2495d2ce
Verified
✓ Snapshot stored   ✓ Change verified
How to Cite
ConductAtlas Policy Archive
Entity: Amazon | Document: AWS Acceptable Use Policy | Record: CA-P-002110
Captured: 2026-03-06 20:03:12 UTC | SHA-256: c61af89c19589f50…
URL: https://conductatlas.com/platform/amazon/aws-acceptable-use-policy/prohibition-on-network-security-violations/
Accessed: April 4, 2026
Classification
Severity
High
Categories

Other provisions in this document