Lab Acceptable-Use Policy
Last updated: 2026-05-07 — Version 1
The techlogia.de Lab provides you with temporary, isolated Linux servers so you can practice server hardening, security configuration and administrative tasks in a realistic but controlled environment. These machines cost us money and bandwidth. To keep things fair for every learner, the following rules apply.
What's allowed
- Run commands described in the lesson task text
- Try your own variations of tasks (e.g. alternative SSH configs)
- Use tools like
nmap,tcpdump,lynis,auditdagainst loopback or against your own VM - Create your own notes / configuration files — they get wiped at session end
What's explicitly not allowed
| Behavior | Consequence |
|---|---|
| Crypto-mining (XMRig, stratum pool connections, throttled stealth mining) | immediate VM kill + account suspension |
| DDoS / flooding against external targets | immediate VM kill + account suspension + criminal report if applicable |
| Port scans / exploit attempts against third-party hosts (including non-techlogia.de hosts) | immediate VM kill + account suspension |
| Brute-force login against external SSH/HTTP/email services | immediate VM kill + account suspension |
| Setting up Tor exit node, proxy service, VPN endpoint for third parties | immediate VM kill + account suspension |
| Distributing phishing pages, malware, illegal content | immediate VM kill + account suspension + criminal report |
| Reselling lab time / SSH access to third parties | permanent ban |
| Installing persistent backdoors outside the lesson task | permanent ban |
| Data exfiltration via DNS tunneling, ICMP tunneling or similar | immediate VM kill + account suspension |
| Sandbox evasion / anti-detection (killing watcher scripts, tampering with audit logs) | permanent ban |
How we monitor
We log and monitor automatically:
- CPU load: sustained high load (≥95% for 10min or ≥70% for 30min) triggers automatic VM termination.
- Network egress: sustained high outbound traffic (≥50 Mbit/s for 10min) triggers automatic VM termination.
- DNS queries: only to public resolvers (Cloudflare, Google, Quad9). Queries to other DNS servers are blocked at the firewall.
- Audit logs: command execution, login, file access — retained for 90 days.
What happens on violation
- Automatic VM kill — your running lab VM is terminated.
- Account flag — on mining, DDoS or brute-force suspicion the account is suspended. You receive an email with the reason and appeal path.
- Appeal / disclosure — within 14 days you can file an objection at info@techlogia.de or request disclosure of the suspension reason under Art. 15 GDPR.
- Criminal behavior is reported. In such cases we forward the logs we hold (IP address, account email, audit log) to law enforcement authorities.
Quotas and fair use
In the Free tier you have 3 sessions per day (UTC) with a maximum runtime of 60 minutes each. These values can change but are always shown in the catalog. Trying to bypass quotas via multiple accounts counts as a policy violation.
Data retention
| Data | Retention |
|---|---|
| Lab session metadata (start, end, lesson_slug) | 90 days |
| Audit logs (watcher-kill events, suspension decisions) | 90 days |
| Suspension reason (for GDPR disclosure) | 3 years |
| Lab VM contents (files on the VM) | fractions of a second after session end — the VM is fully deleted |
Contact
- Email: info@techlogia.de
- Data Protection Officer: datenschutz@techlogia.de
- Full privacy policy: /privacy
- Full Terms of Service: /terms
Questions about the policy or a suspension decision? Reach out — we reply within 5 business days.
