01
Responsibility and authorized use
NightFall systems are intended for lawful, authorized, and accountable use. Capability does not remove responsibility from the person or organization directing it.
Company-wide governance
One operating boundary for every NightFall product, platform, application, device, research system, development tool, API, network, and future technology.
The governing rule
NightFall supplies neutral technology. The owner determines how it behaves and what security rules it follows.
Purpose
Powerful systems require boundaries that remain stable as products evolve. This framework defines who controls a NightFall system, who remains responsible for its use, what NightFall may and may not do after installation, and how updates and managed deployments remain transparent.
Product-specific safety, privacy, and authorization rules continue to apply. This company-wide framework establishes the minimum governance boundary beneath all of them.
Public commitments
The company-wide boundary
01
NightFall systems are intended for lawful, authorized, and accountable use. Capability does not remove responsibility from the person or organization directing it.
02
NightFall supplies neutral technology. The owner determines how it behaves and what security rules it follows. NightFall does not impose a company-selected ideology, mandatory personality, or vendor worldview as objective truth.
03
The owner retains control over shutdown, configuration, update acceptance, rollback, data export and deletion, provider and network enablement, and local policy within lawful deployment boundaries.
04
Installed local systems must not contain a hidden NightFall kill switch, undisclosed inspection or extraction authority, secret reconfiguration control, or automatic vendor ownership over the system.
05
NightFall may provide authenticated updates, but the owner controls installation, deferral, refusal, and rollback except where a separately agreed managed deployment assigns that authority to an authorized administrator.
06
Fixed safeguards are limited to preserving ownership, authorization, bounded resource use, auditability, rollback, recovery, shutdown, revocation, and protection against unauthorized propagation or persistence.
07
NightFall does not terminate an installed local product by remotely disabling it. Ending a vendor relationship must not silently transfer control back to NightFall or make the owner’s lawful local system hostage to continued vendor access.
08
Enterprise and government deployments may assign controls to authorized local administrators through clear agreements. That delegated authority must remain attributable, bounded, reviewable, and distinct from hidden vendor control.
Disclosure boundary