Acceptable Use Policy
سياسة الاستخدام المقبول
AUP
Version 1.0 — Effective 2026-09-20 — Published at /legal/aup
العربية
1. الغرض
تحدد سياسة الاستخدام المقبول ما هو مسموح وممنوع عند استخدام NOVAERPS لحماية المشتركين والبنية والمنصة.
2. الاستخدام المشروع
يُسمح بالاستخدام لأغراض أعمال مشروعة وفق الاشتراك والصلاحيات الممنوحة، وبما يتوافق مع أنظمة المملكة بما فيها حماية البيانات والأمن السيبراني والتجارة الإلكترونية حسب الانطباق.
3. محظورات عامة
يُحظر على سبيل المثال لا الحصر: (أ) إساءة استخدام أو مشاركة بيانات اعتماد؛ (ب) محاولة الوصول لبيانات مستأجر آخر (IDOR/تنقّل بين المستأجرين)؛ (ج) رفع برمجيات خبيثة أو محتوى غير قانوني؛ (د) إرسال رسائل اقتحام/احتيال عبر أدوات المنصة؛ (هـ) التعدين أو إرهاق الموارد بشكل متعمد؛ (و) انتحال صفة أو تضليل؛ (ز) انتهاك حقوق الملكية الفكرية للغير.
4. بند حظر الفحص الأمني والاختراق (إلزامي)
يُحظر حظراً صريحاً ومطلقاً على أي طرف خارجي (بما في ذلك العملاء والمستخدمين والمقاولين المستقلين والباحثين الأمنيين غير المصرّح لهم) القيام بأي مما يلي دون إذن كتابي مسبق وصريح من مشغّل NOVAERPS:
- أي فحص أمني أو مسح ثغرات (Vulnerability Scanning) للمنصة أو بنيتها أو واجهاتها؛
- أي اختبار اختراق (Penetration Testing) أو محاكاة هجوم؛
- أي محاولة استغلال ثغرات، تجاوز صلاحيات، حقن، اختطاف جلسات، أو هندسة عكسية بهدف أمني دون تصريح؛
- أي نشاط يهدف إلى اكتشاف أو إثبات ثغرات على بيئات الإنتاج أو التجريبية المرتبطة بـ novaerps.com دون تنسيق كتابي.
يُعدّ مخالفة هذا البند إخلالاً جوهرياً بشروط الاستخدام وقد يؤدي إلى تعليق فوري للحساب، وإبلاغ الجهات المختصة عند الاقتضاء، والمطالبة بالتعويضات النظامية.
لطلب تصريح اختبار أمني منظم (Bug Bounty / pentest مجدول): راسل [email protected] مع النطاق المقترح والجدول الزمني ومعلومات الجهة المختبرة.
5. واجهات البرمجة والأتمتة
استخدام API يجب أن يحترم حدود المعدّل والصلاحيات. يُحظر التحايل على Rate Limiting أو تزوير الهويات أو كشط البيانات على نطاق واسع دون إذن.
6. الإنفاذ
نحتفظ بحق التحقيق في المخالفات وتعليق أو إنهاء الوصول وحفظ الأدلة للامتثال النظامي.
7. التحديثات
قد تُحدَّث هذه السياسة مع شروط الاستخدام. النسخة السارية تُنشر بعد الاعتماد.
English
1. Purpose
This Acceptable Use Policy (AUP) defines permitted and prohibited use of NOVAERPS to protect subscribers, infrastructure, and the Platform.
2. Lawful Use
Use is permitted for lawful business purposes within your subscription and granted permissions, consistent with KSA laws including data protection and cybersecurity rules as applicable.
3. General Prohibitions
Without limitation, you must not: (a) share or misuse credentials; (b) attempt access to another tenant’s data; (c) upload malware or unlawful content; (d) send spam/phishing via Platform tools; (e) cryptomine or willfully exhaust resources; (f) impersonate others; (g) infringe third-party IP.
4. Mandatory Prohibition on Security Testing & Exploitation
It is expressly and strictly prohibited for any external party (including customers, users, independent contractors, and unauthorized security researchers) to engage in any of the following without prior explicit written authorization from the NOVAERPS operator:
- Any security assessment or vulnerability scanning of the Platform, its infrastructure, or interfaces;
- Any penetration testing or attack simulation;
- Any attempt to exploit vulnerabilities, escalate privileges, inject payloads, hijack sessions, or reverse engineer for security discovery without authorization;
- Any activity intended to discover or demonstrate vulnerabilities on production or related staging environments for novaerps.com without written coordination.
Breach of this clause is a material Terms violation and may result in immediate account suspension, reports to competent authorities where appropriate, and legal remedies.
To request authorized security testing (scheduled pentest / coordinated disclosure): email [email protected] with proposed scope, schedule, and tester identity.
5. APIs & Automation
API use must respect rate limits and permissions. Circumventing rate limits, identity spoofing, or large-scale scraping without permission is prohibited.
6. Enforcement
We may investigate violations, suspend or terminate access, and retain evidence for legal compliance.
7. Updates
This AUP may be updated with the Terms. The effective version is published after approval.