Terms & Conditions
These Terms govern your access to and use of TMG Security's website, cybersecurity services, training programs, research resources, laboratories, products, and related digital platforms.
Acceptance of Terms
These Terms & Conditions (“Terms”) govern your access to and use of the TMG Security website, digital platforms, resources, cybersecurity services, training information, research materials, laboratories, products, and other offerings provided by or on behalf of TMG Security.
By accessing or using our website, submitting an enquiry, requesting services, accessing our resources, participating in training, or otherwise interacting with TMG Security, you acknowledge that you have read, understood, and agree to these Terms.
If you do not agree with these Terms, please discontinue use of the applicable website or service.
About TMG Security
TMG Security is a cybersecurity organization providing cybersecurity services, security consulting, penetration testing, security assessments, defensive security services, cloud and application security, AI and LLM security, governance, risk and compliance services, cybersecurity education, corporate training, research, security resources, and related technology solutions.
TMG Security operates and serves customers across India, the United States, and other jurisdictions.
The applicable TMG Security entity providing a particular service may depend on the nature and location of the engagement.
Website Use
The TMG Security website is provided to:
- provide information about our organization
- describe cybersecurity services
- provide information about training and education
- publish cybersecurity research
- provide technical resources
- provide information about products and solutions
- facilitate legitimate business enquiries
- provide security and educational resources
You agree to use the website only for lawful and legitimate purposes.
You must not use the website to:
- interfere with its operation
- gain unauthorized access
- distribute malicious software
- abuse website functionality
- scrape protected content
- conduct unauthorized security testing
- attempt to bypass security controls
- violate applicable law
Cybersecurity Services
TMG Security may provide services including:
- Web Application Penetration Testing
- API Security Testing
- Mobile Application Security Testing
- Network Penetration Testing
- Cloud Security Assessments
- Application Security
- AI & LLM Security
- Red Teaming
- Vulnerability Assessment
- Security Operations
- Threat Detection
- GRC & Compliance
- Security Consulting
- Corporate Cybersecurity Training
- Security Research
Specific services, scope, pricing, timelines, deliverables, responsibilities, and limitations may be defined through a separate proposal, Statement of Work, Master Services Agreement, order form, or engagement agreement.
Authorization for Security Testing
TMG Security performs authorized cybersecurity testing.
No user or customer may request TMG Security to test, scan, exploit, attack, access, or otherwise interact with systems unless appropriate authorization has been obtained from the owner or authorized operator.
Before a penetration test, red-team exercise, vulnerability assessment, AI security assessment, cloud assessment, or similar engagement begins, the client may be required to provide written authorization and define the approved scope.
The scope may include:
- domains
- IP addresses
- applications
- APIs
- mobile applications
- cloud environments
- accounts
- testing windows
- permitted techniques
- prohibited techniques
- emergency contacts
- rules of engagement
Responsible Security Testing
Users must not use TMG Security services, content, laboratories, or resources to conduct unauthorized cyber activity.
Prohibited activity includes:
- unauthorized access
- credential theft
- phishing against unauthorized targets
- malware deployment
- ransomware
- denial-of-service attacks against unauthorized systems
- unauthorized data extraction
- unauthorized persistence
- disruption of systems
- abuse of third-party infrastructure
- unlawful surveillance
- activities violating applicable law
TMG Labs
TMG Security may provide controlled cybersecurity laboratories including:
- TMG AI Security Lab
- TMG Vulnerable Web Application Lab
- TMG Vulnerable API Lab
- Application Security Labs
- AI/LLM Security Labs
- Cybersecurity Training Labs
- future TMG research environments
These environments may intentionally contain vulnerabilities for educational and research purposes.
Laboratory access is provided only for legitimate educational, research, and authorized testing purposes.
Users must not use laboratory infrastructure to attack external systems, compromise other users, disrupt services, access unauthorized accounts, or attempt to escape intended sandbox boundaries.
TMG Security may suspend laboratory access if misuse is detected.
AI, LLM and Security Research Content
TMG Security may publish content relating to:
- AI Security
- LLM Security
- Prompt Injection
- Jailbreaks
- Agent Security
- Tool Abuse
- Model Security
- AI Red Teaming
- AI Threat Modeling
- AI Governance
- Data Leakage
- Model Manipulation
Such content is provided for legitimate educational, defensive security, and authorized research purposes.
Users are responsible for ensuring that their use of security techniques complies with applicable law and authorization requirements.
Training and Educational Programs
TMG Security may provide cybersecurity courses, workshops, corporate training, educational programs, certifications, laboratories, and professional development resources.
Training may cover:
- Penetration Testing
- Bug Bounty
- SOC Operations
- SIEM
- Threat Hunting
- Cloud Security
- Application Security
- AI Security
- LLM Security
- GRC
- Compliance
- Secure Development
- Security Awareness
Course availability, curriculum, instructors, schedules, pricing, laboratory access, certification requirements, and delivery formats may change.
TMG-Aegis and Technology Products
TMG Security may develop, operate, or provide security technologies including TMG-Aegis and future cybersecurity products.
Product features, availability, pricing, functionality, integrations, and supported environments may change.
Unless expressly agreed otherwise, access to a product or demonstration does not transfer ownership of its software, source code, detection logic, methodologies, models, intellectual property, or technology.
Separate licensing terms may apply to specific products.
Research, Articles and Security Resources
TMG Security may publish:
- research reports
- technical articles
- security advisories
- vulnerability analysis
- threat research
- AI security research
- application security research
- educational content
Research content is provided for informational and educational purposes.
Security information may become outdated as technologies, vulnerabilities, and defensive techniques evolve.
Users should independently validate security recommendations before applying them to production environments.
Intellectual Property
Unless otherwise stated, TMG Security owns or licenses the intellectual property appearing on its website and platforms.
This may include:
- logos
- trademarks
- website design
- graphics
- animations
- written content
- research
- reports
- training materials
- videos
- documentation
- software
- source materials
- methodologies
- diagrams
- visual assets
You may not reproduce, redistribute, sell, modify, publish, or commercially exploit proprietary TMG Security content without appropriate authorization.
Training Materials and Course Content
Training materials are provided for authorized educational use.
Unless expressly permitted, users must not:
- resell course material
- redistribute private course content
- share account credentials
- upload paid course content publicly
- reproduce proprietary training materials
- commercially exploit course content
- share private laboratory credentials
Additional course-specific terms may apply.
User Responsibilities
Users agree to:
- provide accurate information
- use services lawfully
- respect intellectual property
- protect account credentials
- obtain authorization before security testing
- avoid misuse of TMG infrastructure
- comply with applicable laws
- follow laboratory rules
- respect confidentiality
- cooperate with reasonable security requirements
Payments and Commercial Terms
Where TMG Security provides paid services, products, training, or programs, pricing and payment terms may be specified through:
- proposals
- quotations
- invoices
- order forms
- contracts
- Statements of Work
- subscription agreements
These documents may define:
- pricing
- taxes
- payment deadlines
- deposits
- milestones
- refunds
- cancellation
- renewals
- expenses
Where a specific written agreement exists, that agreement governs the relevant commercial relationship.
Confidentiality and Client Information
Information exchanged during professional engagements may be confidential.
Cybersecurity engagements may involve sensitive client information, security architecture, credentials, vulnerabilities, reports, systems, and other confidential information.
Additional confidentiality obligations may be established through:
- NDA
- MSA
- SOW
- confidentiality agreements
- data-processing agreements
These website Terms do not replace separate contractual confidentiality obligations.
Privacy
TMG Security's collection and use of personal information is governed by the TMG Security Privacy Policy.
Users should review the Privacy Policy before submitting personal information through our website.
The Privacy Policy explains how TMG Security may collect, use, store, protect, and process personal information.
Third-Party Services and Links
The website may contain links to:
- educational platforms
- university websites
- course platforms
- technology providers
- social media platforms
- partner organizations
- external research resources
Third-party services may have their own terms, privacy policies, licensing conditions, and security practices.
TMG Security is not responsible for independent third-party websites or services unless expressly agreed otherwise.
Website and Service Availability
TMG Security seeks to maintain reliable website and service availability.
However, we do not guarantee that the website or services will always be:
- available
- uninterrupted
- error-free
- completely secure
- compatible with every device
- free from maintenance interruptions
Services may be temporarily suspended for maintenance, upgrades, security investigations, infrastructure changes, emergencies, or third-party outages.
Cybersecurity and Service Disclaimer
Cybersecurity assessments are point-in-time evaluations based on defined scope, available access, testing conditions, methodology, and engagement limitations.
No cybersecurity assessment can guarantee that every vulnerability or security weakness will be discovered.
TMG Security does not guarantee that:
- every vulnerability will be identified
- every attack will be prevented
- every threat will be detected
- every security incident will be avoided
- systems will remain completely secure
Limitation of Liability
To the maximum extent permitted by applicable law, TMG Security will not be liable for indirect, incidental, consequential, special, exemplary, or punitive damages arising from use of the website or services.
This may include, where legally permitted:
- loss of profits
- loss of business
- loss of data
- loss of opportunity
- business interruption
- reputational loss
For professional services, any specific liability limits or caps will be governed by the applicable written agreement.
Suspension and Termination
TMG Security may suspend or terminate access to website resources, laboratories, accounts, courses, products, or services where reasonably necessary due to:
- violation of these Terms
- unauthorized security activity
- abuse
- fraud
- security concerns
- non-payment
- legal requirements
- protection of users or infrastructure
Certain provisions, including intellectual property, confidentiality, disclaimers, payment obligations, and liability provisions, may survive termination.
Changes to These Terms
TMG Security may update these Terms periodically to reflect:
- changes in services
- technology developments
- legal requirements
- security considerations
- business practices
The updated Terms will be published on the website with a revised “Last Updated” date.
Continued use of the website following publication of updated Terms may constitute acceptance to the extent permitted by applicable law.
Governing Law and Disputes
These Terms are intended to operate across jurisdictions in which TMG Security conducts business.
Applicable law may depend on:
- user's location
- TMG Security entity providing the service
- nature of the service
- contractual arrangements
- applicable mandatory laws
Where a separate written agreement contains governing-law or dispute-resolution provisions, those provisions will apply to the relevant engagement.
For general website matters where no separate agreement applies, TMG Security may seek to resolve disputes through good-faith communication before pursuing formal remedies.
Contact Us
For questions regarding these Terms & Conditions, legal notices, contractual matters, or other legal enquiries, contact:
Harrisonville, MO 64701
United States
Gmada Aerocity
Mohali, Punjab 140306
India
Legal enquiries
For questions about these Terms, legal notices or contractual matters, contact the TMG Security legal team directly.
