# Authorization Policy for Cybersecurity Assessment

Kintsubyte authorization policy: we only review systems you own or are explicitly authorized to submit, with clear scope and safety boundaries.

Canonical page: https://kintsubyte.com/authorization-policy/

## Direct answer

### What systems will Kintsubyte review?

Kintsubyte only reviews systems that you own or are explicitly authorized to submit. Scope is confirmed before assessment begins, and disruptive or third-party testing is not performed unless the responsible owner has clearly approved it in writing.

## Highlights

- Only owned or authorized systems
- Written scope before testing
- No destructive testing by default

## Required before assessment

Requests should identify the company, contact, assets, purpose, and confirmation that the requester has authority to submit the systems for review.

## Excluded by default

Denial-of-service testing, social engineering, physical testing, destructive exploitation, and third-party systems are excluded unless explicitly scoped and authorized.

## Contact

Request an assessment at https://kintsubyte.com/ or email bolarinwa@kintsubyte.com.
