Skip to content

Commit 52a2143

Browse files
[Cache] Updates CSAM scanning terms (#19595)
* Updates CSAM scanning terms * Apply suggestions from code review Co-authored-by: Pedro Sousa <[email protected]> --------- Co-authored-by: Pedro Sousa <[email protected]>
1 parent 3af18e5 commit 52a2143

File tree

2 files changed

+18
-31
lines changed

2 files changed

+18
-31
lines changed
-62.3 KB
Binary file not shown.

src/content/docs/cache/reference/csam-scanning.mdx

Lines changed: 18 additions & 31 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ title: CSAM Scanning Tool
77

88
The Child Sexual Abuse Material (CSAM) Scanning Tool allows website owners to proactively identify and take action on CSAM located on their website. By enabling this tool, Cloudflare will compare content served for your website through the Cloudflare cache to known lists of CSAM. These lists are provided to Cloudflare by leading child safety advocacy groups such as the National Center for Missing and Exploited Children (NCMEC).
99

10-
Remember, by enabling the Service, you agree to the [Supplemental Terms](https://www.cloudflare.com/supplemental-terms/) for the CSAM Scanning Tool. You agree to use this tool solely for the purposes of preventing the spread of CSAM.
10+
Remember, by enabling the Service, you agree to the [Service-Specific Terms](https://www.cloudflare.com/service-specific-terms-application-services/#csam-scanning-tool-terms) for the CSAM Scanning Tool. You agree to use this tool solely for the purposes of preventing the spread of CSAM.
1111

1212
***
1313

@@ -21,64 +21,51 @@ Because knowingly distributing or viewing CSAM is illegal, the owner of the webs
2121

2222
To enable the tool:
2323

24-
1. Log into the [Cloudflare dashboard](https://dash.cloudflare.com).
24+
1. Log into the [Cloudflare dashboard](https://dash.cloudflare.com/).
2525
2. Select your account and zone.
2626
3. Go to **Caching** > **Configuration**.
2727
4. For **CSAM Scanning Tool**, select **Configure**.
2828

29-
When enabling the tool, you must provide an email address and NCMEC CyberTipline credentials for reporting purposes.
30-
31-
This email address will be used to both notify you in the event Cloudflare detects a positive match, and to provide NCMEC in case they or law enforcement need more information about the content reported to them.
32-
33-
In order to get CyberTipline API credentials, you can email the [[email protected]](mailto:[email protected]) to get an application started. Go to the [NCMEC website](https://www.missingkids.org/theissues/csam) for more information. Cloudflare will use the credentials you provide in order to create reports to NCMEC when potential CSAM is identified on your zones. 
34-
35-
Once you’ve verified your reporting email and entered your NCMEC credentials, scanning to identify potential CSAM will begin.
29+
You must provide an email address, which will be used to notify you in the event Cloudflare detects a positive match.
3630

3731
***
3832

3933
## What happens when a match is detected?
4034

41-
Three things happen when a potential match is detected with the tool:
42-
43-
1. A report is filed to NCMEC. This report includes the following:
44-
* The email address you provided when setting up the tool so that NCMEC can reach out for further information if required
45-
* The url of the matched content
46-
* The date and time the content was identified by the tool
35+
When a potential match is detected with the tool:
4736

48-
2. An email is sent to you to inform you of the detection and the report. This email will include:
49-
* The file path of the content that was matched
50-
* The ID of the report that was filed with NCMEC
51-
* The date and time the report was filed 
52-
53-
3. If possible, a firewall block is placed to prevent further serving of the matched content. If a firewall block fails, we will indicate that the content has not been blocked in the email.
37+
1. An email is sent to you once per day to inform you of any detections made in the past 24 hours. This email will include the file paths of any content that was matched.
38+
2. If possible, a block is placed to prevent further serving of the matched content. If a block fails, we will indicate that the content has not been blocked in the email.
5439

5540
***
5641

5742
## What action should I take when a match is detected?
5843

5944
You are responsible for understanding and complying with any legal obligations you have as a website owner when made aware of any potential CSAM. Although legal obligations vary based on the provider and the jurisdiction, website owners often have obligations to report apparent CSAM, to remove content, and to preserve records. Some of those possible obligations are as follows:
6045

61-
* You may need to preserve and securely store a copy of the content and related data in the case NCMEC or law enforcement reach out for additional details.
46+
- You likely have an obligation to report apparent CSAM to the appropriate authorities. You can file a report to NCMEC with additional information via NCMEC's CyberTip reporting form or find the preferred reporting portal for your jurisdiction via the INHOPE website.
47+
48+
<br/>
6249

63-
You likely have an obligation to securely preserve certain information related to your report for at least 90 days in the case of an investigation. To ensure that access to the content is limited, take care not to store this information anywhere accessible to anyone but those within your organization responsible for legal requests.
50+
- You may need to preserve and securely store a copy of the content and related data in the case NCMEC or law enforcement reach out for additional details.
51+
- You likely have an obligation to securely preserve certain information related to your report for at least 90 days in the case of an investigation. To ensure that access to the content is limited, take care not to store this information anywhere accessible to anyone but those within your organization responsible for legal requests.
6452

65-
* You should remove the content and notify Cloudflare of the removal.
53+
<br/>
6654

67-
Once any preservation obligations have been fulfilled, you should remove the content from your website. This is especially important if Cloudflare’s notice to you indicates that our block was unsuccessful.
55+
- You should remove the content and notify Cloudflare of the removal.
56+
- Once any preservation obligations have been fulfilled, you should remove the content from your website. This is especially important if Cloudflare's notice to you indicates that our block was unsuccessful.
6857

6958
***
7059

7160
## How do I have a block removed from my website?
7261

73-
To disable a block, either because you have determined that the blocked content is not CSAM (a false positive) or because you have taken down the blocked content, go to the Cloudflare dashboard for your zone and request reviews on the relevant blocks. A request to remove a block must be accompanied by a representation from you confirming that the blocked content is not CSAM or has been removed.  If applicable, we will notify NCMEC when a false positive has been identified on the reported URL.
74-
75-
![Example error message for a domain with blocked content.](~/assets/images/support/csam-blocked-content.png)
62+
To disable a block, either because you have determined that the blocked content is not CSAM (a false positive) or because you have taken down the blocked content, view [Blocked Content in the Security Center](/security-center/blocked-content/) in the Cloudflare Dashboard and request reviews on the relevant blocks. A request to remove a block must be accompanied by a representation from you confirming that the blocked content is not CSAM or has been removed.
7663

7764
These actions are available to users with the following roles:
7865

79-
* Admin
80-
* Super Admin
81-
* Trust & Safety
66+
- Admin
67+
- Super Admin
68+
- Trust & Safety
8269

8370
***
8471

0 commit comments

Comments
 (0)