3.1 You shall not, and shall not attempt to, engage in any of the following:
(a) Unauthorized Access. Accessing or attempting to access any portion of the Platform, systems, servers, databases, or networks that you are not authorized to access, including other users' accounts, administrative panels, or internal APIs;
(b) Reverse Engineering. Decompiling, disassembling, reverse engineering, or otherwise attempting to derive the source code, algorithms, trading engine logic, risk management systems, pricing mechanisms, or fill algorithms of the Platform;
(c) Scraping and Data Harvesting. Using automated tools, bots, crawlers, scrapers, spiders, or any other automated means to access, collect, extract, copy, or index any content, data, or information from the Platform without the Company's prior written consent;
(d) Interference and Disruption. Interfering with, disrupting, degrading, or impairing the operation, performance, or availability of the Platform or any connected systems, including through denial-of-service (DoS/DDoS) attacks, packet flooding, mail bombing, or deliberate overloading;
(e) Vulnerability Exploitation. Exploiting any bug, error, glitch, vulnerability, or unintended behavior in the Platform's software, trading engine, pricing system, or risk management systems for personal gain or to the detriment of the Company or other users;
(f) Circumvention. Bypassing, disabling, or circumventing any security, authentication, access control, rate-limiting, or technical protection measures implemented on the Platform;
(g) Injection and Manipulation. Introducing malicious code, viruses, trojans, worms, ransomware, spyware, keyloggers, or any other harmful software or code into the Platform or any connected systems;
(h) API Abuse. Accessing the Platform through any unauthorized application programming interface (API), protocol, or method not expressly provided by the Company. The Company's Agent API, accessed with API keys issued through the Platform, is an authorized interface when used within its published rate limits and scopes; and
(i) Load Testing. Conducting unauthorized load testing, stress testing, penetration testing, or security scanning of the Platform without the Company's prior written consent.