Authorized scope
Only review what the client has the legal and organizational right to include.
RESPONSIBLE INTELLIGENCE
Every Chameleon Eye engagement operates within agreed, authorized, and legally compliant boundaries. These are not policies added after the fact — they are built into how every engagement is scoped, conducted, and delivered.
Important
Chameleon Eye does not provide tools or services for unauthorized surveillance, intrusion, credential access, or covert collection outside lawful and approved scope.
OPERATING PRINCIPLES
Only review what the client has the legal and organizational right to include.
Use information only for the agreed business question and scope.
Request only what is necessary.
Limit access according to role and engagement needs.
Agree secure methods before sensitive information is shared.
Distinguish verified facts, supported indications, missing facts, assumptions, and limitations.
Technology may assist, but responsible professionals remain accountable for interpretation and recommendations.
No location, employee, customer journey, or process is reviewed outside agreed legal and ethical boundaries.
Do not present indications as established wrongdoing.
Do not replace legal, accounting, compliance, cybersecurity, or licensed audit advice.
The client controls approved scope and report distribution, subject to law and contractual obligations.
SCOPE AND LIMITATIONS
Chameleon Eye works only with authorized data, systems, locations, people, and processes. All engagements must follow applicable laws, internal policies, contracts, consent requirements, and agreed scope.
Findings are based on the evidence and scope available at the time of review. Chameleon Eye does not replace legal, accounting, compliance, cybersecurity, or licensed audit advice.