1. The service
AwareClick provides security awareness training modules, quizzes, certificates, behavioural risk assessments, phishing simulations, reporting and related features. Organisations ("clients") subscribe and enrol their employees; employees use AwareClick to complete the training their organisation assigns.
2. Accounts
- Give accurate information and keep it up to date.
- Keep your password confidential and do not share your account. You are responsible for activity on it.
- Tell us immediately at [email protected] if you suspect unauthorised access.
- For security, sessions end automatically after 15 minutes of inactivity.
3. Acceptable use
You must not:
- use AwareClick for anything unlawful, harmful or fraudulent;
- use phishing simulation features against anyone other than your own organisation's personnel, or without your organisation's authorisation — real phishing, credential harvesting or impersonation of other organisations is strictly prohibited;
- attempt to access accounts, organisations or data you are not authorised to access;
- probe, scan or test the security of AwareClick without our prior written permission;
- interfere with or overload the service, or bypass its security, rate limits or access controls;
- copy, resell, or redistribute AwareClick content outside your organisation's training programme;
- reverse engineer the platform, except where the law expressly allows it.
Found a vulnerability? Please report it privately to [email protected]. We welcome responsible disclosure and will not pursue good-faith researchers who follow this approach.
4. Client responsibilities
Organisations using AwareClick are responsible for:
- having a lawful basis to enrol their employees and process their training data;
- informing employees that they will receive training, assessments and phishing simulations, and how results will be used;
- managing which people have coordinator access within their organisation;
- the accuracy of the employee information they provide.
Our processing of client personal data is governed by our Data Processing Agreement.
5. Content and ownership
- Our content. Training modules, quizzes, videos and other materials provided by AwareClick remain ours (or our licensors'). Subscribing clients receive a non-exclusive, non-transferable licence to use them for their internal training during their subscription.
- Your data. Clients retain ownership of their organisation's data. We use it only to provide and secure the service, as described in our Privacy Policy.
- Certificates confirm completion of AwareClick training. They are not a professional qualification.
6. Subscriptions and payment
- Paid plans are billed in advance for the chosen billing period through our payment provider.
- If a payment is overdue, we may send reminders and then suspend access until payment is made.
- Refunds are handled under the client's agreement with us or as required by law.
- Prices and plans may change; changes take effect from the next billing period after notice.
7. Pilot and early-access features
Some features may be offered as a pilot or early access. They are provided "as is", may change or be withdrawn, and may not have the availability or support of generally available features.
8. Compliance reports and benchmarks
Compliance reports map training activity to cybersecurity directives and international standards, and benchmarks compare a programme with aggregated peer data. Both are informational. They are not an audit, certification or legal advice, and do not by themselves establish compliance with any law, regulation or standard.
9. Availability and changes
We work to keep AwareClick available and secure, but do not guarantee uninterrupted or error-free operation. We may perform maintenance and improve, change or discontinue features, giving reasonable notice of significant changes that affect clients.
10. Disclaimers
Security awareness training reduces risk but cannot eliminate it. To the extent the law allows, AwareClick is provided without warranties of any kind, express or implied, including fitness for a particular purpose. We are not responsible for security incidents at a client's organisation.
11. Limitation of liability
To the extent the law allows, we are not liable for indirect, incidental, special or consequential losses, or for loss of profits, revenue or data. Our total liability arising from AwareClick in any 12-month period is limited to the amount the client paid us for AwareClick in that period. Nothing in these terms limits liability that cannot be limited by law.
12. Suspension and termination
- We may suspend or close accounts that breach these terms or put the service or other users at risk.
- Clients may stop using AwareClick at the end of their subscription period.
- After a subscription ends, client data is deleted or anonymised within 90 days. Clients may request an export of their data before then.
13. Changes to these terms
We may update these terms. The current version is always on this page with its effective date. Continuing to use AwareClick after a change takes effect means you accept the updated terms.
14. Governing law
These terms are governed by the laws of the jurisdiction in which ParoCyber is established. Where possible, we will try to resolve any dispute informally first — please contact us.
15. Contact
Questions about these terms: [email protected].