Laboratory authorization scope
Only the exact systems, identities, network paths and time window assigned to your active laboratory are authorized.
In scope
The private endpoints, machines, services and synthetic identities explicitly shown in your active course or assigned laboratory workspace.
Out of scope
The Cyber War Labs control plane, authentication provider, VPN management service, runner infrastructure, other learner environments and every public Internet system not explicitly listed in your assignment.
Allowed techniques
Use the tools and techniques required by the laboratory brief at a controlled rate. Denial of service, persistence outside the assigned runtime, malware deployment and uncontrolled scanning are prohibited unless a future scenario explicitly authorizes them.
If you find a platform issue
Stop testing, preserve minimal evidence and report the suspected control-plane or isolation issue through the dedicated security channel shown in your account.