Skip to main content
Periphery exists so that security teams, researchers, and platform operators can see what is exposed on the public web. Use it for lawful purposes only. This page summarises section 4 of the terms of service, which is the binding text.

Do not

  • Use any credential, token, key, or secret surfaced by Periphery to access, modify, or disrupt a system, account, or data you are not authorised to access.
  • Use information from Periphery to harass, defraud, impersonate, or harm any person or organisation, or to send unsolicited communications.
  • Resell, sublicense, or redistribute the index, in whole or in part, or build a competing dataset from it.
  • Scrape or bulk-export the service outside the documented API and your plan’s limits, share API keys, or circumvent rate limits or access controls.
  • Try to identify natural persons from indexed data beyond what a legitimate security notification needs.

Legitimate research

Legitimate security research means, at minimum, that you own or are authorised to test the system concerned, or that you limit yourself to notifying its owner of the exposure.

Enforcement

Accounts that breach these rules may be suspended or terminated without notice or refund, and lawful requests from authorities are honoured.

Reporting misuse

If you believe Periphery is being misused, or you have found something in the index that should not be there, write to contact@gglabs.fr. See also Removal requests and the privacy policy.