| name | Acceptable Use |
| description | Behavioral expectations, professional standards, and responsible technology use |
| license | Apache-2.0 |
| version | 1.0 |
| author | Hack23 AB |
| tags | ["acceptable-use","professional-standards","system-usage"] |
| category | security |
| frameworks | ["ISO 27001:2022","NIST CSF 2.0"] |
| related_policies | ["Acceptable_Use_Policy.md"] |
✅ Acceptable Use Skill
🎯 Purpose
Enforce behavioral expectations and professional standards for information technology use, based on Acceptable Use Policy.
Key Principle: "Clear expectations create secure behaviors."
📚 Scope
- 💻 System Access & Authentication
- 📊 Data Handling & Privacy (GDPR)
- 💾 Software & Application Use
- 🌐 Internet & Network Use
- 📱 Mobile Device & Remote Work
- 📢 Communication & Social Media
⚙️ Security Rules
MUST Requirements
acceptable_practices:
authentication:
- strong_unique_passwords: per_access_control_policy
- mfa_enabled: all_business_critical_systems
- password_managers: approved_tools_only
- no_credential_sharing: never_share_passwords
data_handling:
- classify_data: per_classification_framework
- encrypt_sensitive: cryptography_policy_standards
- gdpr_compliance: privacy_policy_requirements
- secure_disposal: shred_or_wipe_sensitive_data
software_use:
- licensed_software: valid_commercial_or_oss_licenses
- security_updates: vulnerability_management_sla
- approved_apps: