It's not impossible they are breaking Swedish law, as our computer security laws essentially requires you to have an explicit right to do something with regards to someone elses computing resources to be allowed to do so.
As far as I understand it, there doesn't have to be any circumvention of technical protections for the possibility of a crime to occur, but only accessing computing resources having lack of some equivalent of explicit authorization.
I'm unsure of a TOS that mentioned it would hold up, I would assume no as it's not something the average consumer would a) expect b) easily understand c) might not even be in the position to accept, ie when accessing a site from a computer they don't own, they might not have the authority to allow a port scan.
As far as I understand it, there doesn't have to be any circumvention of technical protections for the possibility of a crime to occur, but only accessing computing resources having lack of some equivalent of explicit authorization.
I'm unsure of a TOS that mentioned it would hold up, I would assume no as it's not something the average consumer would a) expect b) easily understand c) might not even be in the position to accept, ie when accessing a site from a computer they don't own, they might not have the authority to allow a port scan.