Disclaimer
This project is a public-interest open source security ruleset intended to help users improve network security protection. By using this project, you acknowledge that you have read, understood, and agreed to the following terms:
- Third-party source notice: Some project content references public threat intelligence, such as security community reports, threat databases, GitHub projects, and similar sources. Relevant references are indicated where applicable. If you have objections, please contact me for correction or removal.
- Identification module enablement notice: This project follows the principles of technical neutrality, information transparency, and independence. The ruleset is intended to assist users in identifying potentially risky communication behavior. All identification modules are disabled by default. Related policy design and enablement are entirely decided by users, and the project author assumes no responsibility for communication risks caused by user configuration.
- False positive risk notice: Because the ruleset may involve general blocking strategies, users should fully test it before deployment to ensure that normal business operations are not affected. The project author assumes no responsibility for connection errors, missing functionality, or other consequences caused by false blocking.
- Commercial use notice: This project is released as open source under the Apache License 2.0. You may use it for both commercial and non-commercial purposes, but you must comply with the license terms and retain original author attribution and comments. We oppose abuse of the ruleset for closed-source misuse, harm to the public interest, or behavior that violates the spirit of open source.
- No warranty: This project is provided “as is” and makes no express or implied warranty regarding completeness, accuracy, timeliness, or suitability. Users should judge applicability themselves and assume all usage risks.
- Usage limitation: All rules and configuration files are provided only for lawful network defense, traffic identification, and security research. It is strictly prohibited to use this project for offensive behavior, reverse engineering, audit bypass, or any unlawful or gray-area purpose.
- Limitation of liability: The project author assumes no legal responsibility for any direct or indirect loss arising from the use, copying, or distribution of this project content, including but not limited to data leakage, business interruption, and security incidents.
- Right to change: The project author reserves the right to update, modify, or remove project content and this disclaimer at any time without prior notice. You are advised to check the repository regularly for the latest version.
Formal statement: This project does not do harm, does not carry hidden agendas, does not recommend any proxy node deployment, does not involve traffic hijacking or monitoring mechanisms, and does not contain malicious logic or hidden behavior. All rule content is provided in plaintext with clear structure and complete comments. It does not depend on third-party sources, and all rule files are hosted in this repository for community review, traceability, and supervision.