i
iotascan

Terms of Use

1. Acceptance of Terms

By creating an account, logging in, or utilizing the security scanning capabilities of iotascan, you agree to comply with and be bound by these Terms of Use. If you do not agree to these terms, you are not authorized to use the platform.

2. License & Services

We grant you a non-exclusive, non-transferable, revocable license to access our platform and run automated code scanners (including secret leak detection, dependency vulnerability audits, container audits, and threat modeling simulations) in accordance with these Terms and your active subscription tier.

3. Acceptable Use Policy

As a user of iotascan, you agree that you will only integrate and scan code repositories that you own, or for which you have received explicit, written authorization to analyze. You must not:

  • Scan repositories or infrastructure to locate exploits for malicious purposes.
  • Attempt to bypass, overload, or degrade iotascan's scanning microservices.
  • Inject deliberate exploits or obfuscated malware in order to reverse-engineer our scanner heuristics.

4. Intellectual Property

  • Your Code & Credentials: You retain full and exclusive ownership of all source code, API keys, configurations, and data scanned by our system.
  • Iotascan Assets: Iotascan retains all right, title, and interest in and to our scanning logic, algorithms, databases, design elements, logo, and generated audit report formats.

5. Disclaimers & Limitations of Liability

Iotascan provides automated static and configuration security audits. While we continuously refine our scanner rules, we do not warrant that our tools will find 100% of all security flaws or secrets leaks, or that our recommendations will guarantee absolute immunity from cyber threats.

Services are provided "as-is". In no event shall iotascan be liable for any direct, indirect, incidental, or consequential damages resulting from code audits, missed security flaws, or deployment issues.

6. Account Termination

We reserve the right to suspend or terminate accounts that violate our Acceptable Use Policy, exceed api rate limits, or present a security risk to other users on our system.