Last updated: 1970-01-01

Terms of Service

1. The service

StackShield provides AI-assisted vulnerability scanning and remediation for connected Supabase, GitHub, and Vercel projects, using the user's own connected AI provider API key (Anthropic or OpenAI). StackShield does not include AI usage costs in any plan.

2. User approval required for every fix

StackShield only applies a fix after you have reviewed the exact proposed change and explicitly confirmed it. StackShield does not take autonomous action without your approval for each individual finding.

3. "As is" — no warranty

The service is provided as is, without warranty of any kind. We do not warrant that all vulnerabilities will be detected, or that every fix will be correct or complete.

4. Limitation of liability

To the maximum extent permitted by law, StackShield and its operators are not liable for damages, data loss, downtime, or security incidents resulting from use of the service, scan results, or any fix that you reviewed, approved, and confirmed.

5. Your responsibility

You are solely responsible for reviewing the exact change shown before confirming it, and for testing fixes in a non-production environment before deploying to production.

6. Bring Your Own Key (BYOK)

You are solely responsible for your own AI provider costs, usage, and compliance with that provider's terms of service. StackShield is not responsible for charges incurred on your connected API key.

7. Required third-party access

You grant StackShield permission to access your connected Supabase, GitHub, and Vercel accounts via the OAuth or API tokens you provide, solely to perform the scans and approved fixes you request.

8. Subscriptions and billing

Paid plans are billed through our payment processor (Stripe). Subscriptions renew automatically until cancelled. You may cancel at any time; cancellation takes effect at the end of the current billing period.

9. Termination

We may suspend or terminate accounts that violate these Terms, abuse the service, or attempt to compromise its integrity.

10. No guarantee of complete security

No security tool can guarantee complete protection. StackShield is one layer of defence and should be combined with code review, manual security audits, and other controls.

11. Governing law

These Terms are governed by the laws of [jurisdiction].