Last updated: August 29, 2026
These Terms of Service (“Terms”) govern your access to and use of ShipSafe (the “Service”), a security-scanning product operated by Ring Zero Security (“we”, “us”, or “our”). By creating an account or running a scan, you agree to these Terms. If you do not agree, do not use the Service.
ShipSafe probes web applications the way an attacker would — but read-safe — to surface security issues such as missing access control, exposed secrets, and known vulnerabilities, and to suggest fixes. A scan may sign in with credentials you provide to test authenticated behaviour. ShipSafe is a diagnostic tool, not a guarantee of security.
You may use the Service only against applications and systems that you own or that you have explicit, current authorization to test. You attest to that authorization each time you start a scan, and that attestation is a condition of the scan running. Scanning a target you are not authorized to test may be illegal under computer-misuse and data-protection laws (including, without limitation, the Indian Information Technology Act, 2000, and equivalent laws in other jurisdictions). You are solely responsible for ensuring you have authorization, and you will indemnify us against claims arising from scans you were not permitted to run. We may suspend or terminate any account we reasonably believe is scanning unauthorized targets.
By default the Service performs read-only and non-destructive probes: it does not intentionally create, modify, or delete your data. Certain optional checks (for example, canary write tests) run only when you explicitly enable them, and are designed to clean up after themselves. You acknowledge that security testing of a live system carries inherent risk, and you authorize us to perform the checks described in the Service against the targets you submit.
You are responsible for the activity under your account and for keeping your credentials secure. You must provide accurate information and be at least the age of majority in your jurisdiction. You may not share, resell, or provide access to the Service except as expressly permitted.
Scan results, findings, and suggested fixes generated for your targets are yours to use. They may describe real, exploitable weaknesses, so you should treat them as confidential and use them only to improve the security of the systems you are authorized to test — never to attack a third party.
You agree not to:
The Service is provided “as is” and “as available” without warranties of any kind. A clean scan or a passing grade does not mean an application is secure, and we do not warrant that the Service will find every vulnerability or that fixes will be complete or error-free. Security is your ongoing responsibility.
To the maximum extent permitted by law, we will not be liable for any indirect, incidental, special, consequential, or punitive damages, or for lost profits or data, arising from your use of the Service. Our total liability for any claim relating to the Service will not exceed the amount you paid us for the Service in the twelve months before the claim.
We may suspend or terminate access if you breach these Terms, use the Service unlawfully, or create risk for us or others. You may stop using the Service at any time; certain provisions (authorization, confidentiality, disclaimers, and liability limits) survive termination.
We may update these Terms from time to time. We will post the updated version with a new effective date and, where required, notify you. Continued use after changes take effect constitutes acceptance.
These Terms are governed by the laws of India, without regard to conflict-of-laws rules, and the courts of India will have jurisdiction, except where mandatory local law provides otherwise.
Questions about these Terms? Contact us at abhijit@ringzerosecurity.com.