Terms of Service
Last updated: March 20, 2026
1. Acceptance of Terms
By accessing or using the vul.ninja platform operated by VulNinja LLC ("Company," "we," "us," or "our"), you agree to be bound by these Terms of Service ("Terms"). If you do not agree, do not use the platform.
2. Description of Service
vul.ninja is a cloud security scanning and analysis platform that helps organizations identify and remediate security vulnerabilities in their AWS, Azure, and GCP cloud environments. The platform includes:
- Cloud security scanning and configuration assessment
- Vulnerability detection and prioritization
- AI-native security investigation and remediation assistance
- Compliance framework mapping
- Security reporting and monitoring
3. Account Registration
You must provide accurate information when creating an account. You are responsible for maintaining the confidentiality of your account credentials and for all activities under your account. You must notify us immediately of any unauthorized use.
4. Cloud Account Access
To use our scanning services, you grant us read-only access to your cloud environments through IAM roles (AWS), service principals (Azure), or service accounts (GCP) that you configure. You are responsible for:
- Ensuring you have authority to grant access to the cloud accounts you connect
- Configuring appropriate least-privilege permissions
- Revoking access when no longer needed
We will only access your cloud environments using the permissions you explicitly grant. We do not access application data, customer data, or workload contents.
5. AI Features
Our AI agent features (investigation, remediation, red teaming, monitoring) are optional and operate under the following terms:
- Human approval required: AI agents cannot make changes to your cloud infrastructure without your explicit approval.
- Rollback available: Changes applied through AI remediation can be rolled back within 30 days.
- Data sanitization: Security findings are sanitized before AI processing. Sensitive identifiers are redacted automatically.
- No guarantees: AI analysis and recommendations are provided as guidance only. You are responsible for reviewing and approving any actions.
6. Subscription and Payment
Paid subscriptions are billed monthly or annually through Stripe. Prices are as listed on our pricing page at the time of purchase. We may change pricing with 30 days' notice. Refunds are handled on a case-by-case basis.
Free trial accounts may have feature or usage limitations. We reserve the right to modify or discontinue free tiers with notice.
7. Acceptable Use
You agree not to:
- Use the platform to scan cloud accounts you do not own or have authorization to scan
- Attempt to exploit or attack the platform or other users
- Use AI chat features for purposes unrelated to security analysis
- Reverse engineer, decompile, or disassemble the platform
- Resell or redistribute the platform without written permission
- Exceed reasonable usage limits or abuse API endpoints
8. Data Ownership
You retain all rights to your cloud security data. Scan results, reports, and findings belong to you. We retain the right to use aggregated, anonymized data for service improvement and industry benchmarking.
9. Limitation of Liability
THE PLATFORM IS PROVIDED "AS IS" WITHOUT WARRANTIES OF ANY KIND. TO THE MAXIMUM EXTENT PERMITTED BY LAW:
- We do not guarantee that all security vulnerabilities will be detected
- We are not liable for security incidents in your cloud environments
- AI recommendations are guidance only and may contain errors
- Our total liability shall not exceed the fees paid in the prior 12 months
10. Indemnification
You agree to indemnify and hold harmless VulNinja LLC from any claims arising from your use of the platform, your cloud account configurations, or your violation of these Terms.
11. Termination
Either party may terminate the agreement at any time. Upon termination:
- Your access to the platform will be revoked
- You may export your data before termination
- We will delete your data within 30 days (unless legally required to retain)
- Cloud credentials are deleted immediately
12. Governing Law
These Terms are governed by the laws of the United States. Any disputes shall be resolved in the courts of the state in which VulNinja LLC is incorporated.
13. Changes to Terms
We may update these Terms from time to time. We will notify you of material changes by email or through the platform. Continued use after changes constitutes acceptance.
14. Contact
Questions about these Terms? Contact us at legal@vul.ninja.