02
Authorization Saqr AI only conducts assessments with explicit written authorization from the asset owner. List the assets you set on the slider above, then sign below. Your work email must be on one of the listed target domains.
Assets in scope (10)* 0 of 10 entered One per line. Domain or IPv4 address. Enter exactly 10 entries (e.g. acme.com, api.acme.com, app.acme.com).
Authorized signatory name * Your role at the company * Company name * Work email (on target domain) * Phone (optional)
Authorization statement
I confirm that I am authorized by your organisation to commission a security assessment of the assets listed above. I confirm that the company owns or operates these assets, and that I have authority to bind the company to this engagement. I authorize Saqr AI to perform reconnaissance, vulnerability identification, and adversarial simulation within the agreed scope, subject to a separately executed engagement agreement and applicable law.
Rules of Engagement (RoE)
This engagement is conducted under UAE Cyber Security Council (CSC) guidance and UAE Federal Decree-Law No. 34 of 2021. By proceeding you accept the four binding constraints below.
01 Authorization-bound testing Saqr AI's autonomous agents operate strictly against the assets you listed above, within the agreed engagement window. The AI will not pivot to assets that are not explicitly listed. New attack surface discovered during reconnaissance is reported to you for written approval before any further action.
02 Federal Decree-Law No. 34 of 2021 This Rules of Engagement satisfies Article 2 (lawful authorized access) and Article 44 (controlled use of offensive tooling). You confirm you have legal authority to grant the access being authorized under UAE federal cyber law. Saqr AI operates the offensive tooling under licensed control.
03 Data sovereignty Vulnerability data, configurations, evidence artifacts, and any AI prompts containing client material are processed inside UAE sovereign infrastructure. AI models used during testing run on-premise or within UAE-hosted sovereign cloud (e.g. G42, Khazna). No client data is sent to public or cross-border AI services.
04 Human-in-the-Loop supervision A licensed human cybersecurity professional from Saqr AI supervises every AI agent action. AI tools operate under safety boundaries that prevent denial-of-service or destabilisation of critical infrastructure during testing.
Reference: UAE Federal Decree-Law No. 34/2021 · UAE Cyber Security Council framework · UAE Personal Data Protection Law (PDPL).
I have read and agree to the authorization statement and the four Rules of Engagement above. By ticking this box and clicking pay, I create an electronic signature with the same legal effect as a handwritten one.