1. Acceptance
By creating an account or using the SolGuard service (“Service”) you agree to these Terms of Service (“Terms”) and our Privacy Policy. If you do not agree, do not use the Service.
The Service is provided by [ENTITY NAME — registration pending] (“SolGuard”, “we”, “us”).
2. Beta status and service availability
SolGuard is currently in invite-only beta. The Service may change substantially, be interrupted, or be discontinued at any time during the beta period without notice.
We make no uptime commitments during beta. We will endeavour to notify beta users of planned downtime via email where practicable.
Features, pricing tiers, and scan quotas described in the interface are subject to change before general availability.
3. AS-IS disclaimer and findings accuracy
Important — please read carefully
THE SERVICE IS PROVIDED “AS IS” WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, OR NON-INFRINGEMENT.
Scan findings are probabilistic, not exhaustive. SolGuard uses a combination of static analysis tools and an AI reasoning layer to surface likely vulnerabilities. Findings may include false positives (issues flagged that are not real vulnerabilities) and false negatives (real vulnerabilities not flagged).
SolGuard is not a substitute for a professional security audit. Reports generated by the Service are intended to help you prepare for and improve the efficiency of a manual audit — they do not replace the judgment of a qualified security researcher. You are solely responsible for reviewing and validating all findings before relying on them.
Severity scores are set by a deterministic policy engine based on finding characteristics; they reflect a mechanical assessment and not the professional opinion of a security auditor. The AI component contributes reasoning and explanation only — it does not set severity.
4. Confidentiality of findings
SolGuard treats your scan findings as confidential security data. We will not disclose your findings (including vulnerability descriptions, code excerpts, severity scores, or reasoning steps) to any third party except:
- as required by applicable law or court order;
- to the subprocessors listed in the Privacy Policy, strictly for the purpose of delivering the Service;
- with your explicit written consent.
Findings are visible only to the account that owns the scan. We do not share findings across accounts or use them to generate public reports about specific projects or organisations.
5. Intellectual property
Your code is yours. You retain all intellectual property rights in any source code, repository content, or other materials you submit to the Service. SolGuard claims no ownership over your code or findings derived from it.
Your findings are yours. Scan reports, vulnerability findings, and PDF reports generated from your scans are owned by you. We grant you a perpetual, royalty-free licence to use, copy, and share those reports.
Our platform is ours. The SolGuard platform, including the scanning engine, Semgrep rules, scoring algorithms, dashboard, and all associated software, are owned by SolGuard and protected by applicable IP laws.
6. Telemetry and anonymised data
We may use anonymised, aggregated data derived from scans (e.g. aggregate vulnerability frequency, framework distribution, false-positive rates) to improve the Service, train our detection rules, and publish industry research. This data will never be linked back to your account, your organisation, or any individual scan.
You may opt out of this anonymised data use at any time by contacting privacy@solguard.dev or by adjusting your settings in the dashboard (Settings → Privacy). Opting out does not affect your access to the Service.
7. Acceptable use policy
You may only use the Service to scan code that you:
- own or have developed yourself;
- have been explicitly authorised in writing to scan by the code owner; or
- are analysing as part of a disclosed responsible-disclosure or bug-bounty engagement where scanning is permitted.
You must not use the Service to:
- scan code you do not have rights to, including proprietary third-party code;
- probe, attack, or enumerate our infrastructure or that of any third party;
- circumvent billing controls, scan quotas, or rate limits;
- submit repositories containing deliberately malicious payloads intended to exploit SolGuard infrastructure;
- automate bulk scans in a way that degrades the Service for other users.
Violation of this policy may result in immediate account suspension and, where applicable, reporting to relevant authorities.
8. Billing and subscriptions
Paid subscriptions are billed monthly in advance via Stripe. Prices are shown in USD. SolGuard reserves the right to change prices with at least 30 days’ notice.
Scan quotas reset on the first day of each billing month. Unused scans do not carry over. During the invite-only beta, all pricing and quotas are subject to change.
Refunds are handled on a case-by-case basis. Contact hello@solguard.dev within 14 days of a charge to request a refund.
9. Limitation of liability
Liability cap
TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, SOLGUARD’S TOTAL AGGREGATE LIABILITY TO YOU ARISING OUT OF OR RELATED TO THESE TERMS OR THE SERVICE SHALL NOT EXCEED THE TOTAL FEES PAID BY YOU IN THE TWELVE (12) MONTHS IMMEDIATELY PRECEDING THE CLAIM.
IN NO EVENT SHALL SOLGUARD BE LIABLE FOR ANY INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, OR PUNITIVE DAMAGES, INCLUDING LOSS OF PROFITS, DATA LOSS, OR COST OF PROCUREMENT OF SUBSTITUTE GOODS, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
This limitation applies regardless of the theory of liability (contract, tort, statutory duty, or otherwise). Some jurisdictions do not allow the exclusion of implied warranties or limitation of liability for certain types of damages, so some of the above may not apply to you.
10. Termination and account deletion
You may delete your account at any time via Settings → Danger Zone. Account deletion cancels any active subscription (subject to the billing cycle), revokes all authentication tokens, and initiates deletion of your personal data in accordance with the retention schedule.
SolGuard may suspend or terminate your account with immediate effect if you violate the Acceptable Use Policy (§7) or these Terms, or if we reasonably believe continuation poses a risk to the Service or other users.
11. Open source components
SolGuard incorporates open source software. Key components and their licences include:
- Semgrep CLI — LGPL 2.1. Used as a subprocess for static analysis. SolGuard’s use as a server-side tool does not trigger copyleft obligations on our proprietary code. If Semgrep Pro rules are adopted in the future, the Semgrep Pro licence terms will apply to those rules specifically.
- cargo-clippy / cargo-audit — MIT / Apache 2.0. Used as analysis subprocesses.
A complete list of open source dependencies and their licences is available in the package manifests of the SolGuard codebase.
12. Governing law and disputes
These Terms are governed by and construed in accordance with the laws of the Czech Republic, without regard to conflict-of-law provisions. The courts of the Czech Republic shall have exclusive jurisdiction over any dispute arising out of these Terms.
If you are a consumer resident in another EU member state, you may also bring proceedings in your country of residence and benefit from the mandatory consumer protection provisions of your local law.
13. Changes to these terms
We may update these Terms at any time. Material changes will be notified by email at least 14 days before taking effect. Your continued use of the Service after the effective date constitutes acceptance. If you do not agree, you must stop using the Service and delete your account before the effective date.
14. Contact
For questions about these Terms:
Email: hello@solguard.dev
[ENTITY NAME — registration pending], Czech Republic