Terms of Service
Last updated July 15, 2026
Plain-language summary (not a substitute for the terms below): You pay once per scan. We read your code without running it, produce a report, and delete the code. The report tells you what our checks found; it is not a security certification, a penetration test, or legal advice. You must have the right to submit the code you submit. If the report isn't useful, you have 7 days to ask for your money back. Our liability is capped at what you paid us.
1. Who we are
Ascertify is operated by Adventure Software, registered in Romania, RO40601387, ("Ascertify", "we", "us"). Contact: vali@ascertify.io.
2. The service
Ascertify is a self-serve static code analysis service. You submit source code (by connecting a GitHub repository or uploading an archive), we analyze it without executing it, and we generate a report describing what our automated checks found, in plain language, with references to specific files and lines.
What the service is not. Ascertify is not a penetration test, a security audit in the professional-services sense, a code review by a human engineer, a certification of security or quality, or legal, financial, or professional advice. A report showing no findings means only that the specific automated checks we ran did not trigger; it is not a statement that your application is secure, complete, correct, or fit for any purpose.
3. Accounts and eligibility
You must be at least 18 years old and capable of entering a binding contract. You are responsible for the accuracy of your account information and for keeping your credentials secure. The service is offered to consumers and businesses; if you use it on behalf of a company, you confirm you have authority to bind that company.
4. Your code: authorization and license
4.1 Authorization. You represent and warrant that you have the legal right to submit the code you submit for analysis, as its owner, under a license, or with the authorization of whoever holds those rights. This includes code delivered to you by an agency, freelancer, or other contractor: if your contract with them restricts sharing or third-party review of the code, it is your responsibility to confirm you are permitted to submit it. You indemnify us against claims arising from your submission of code you were not authorized to submit.
4.2 License to us. You retain all rights to your code. You grant us a limited, non-exclusive license to copy, store, and process the submitted code solely to perform the analysis and generate your report. This license ends when the code is deleted (Section 5).
4.3 Prohibited submissions.You may not submit code (a) you have no right to submit; (b) that consists primarily of third parties' personal data (e.g., database dumps); (c) with the intent of analyzing someone else's systems without authorization; or (d) that is designed to attack, probe, or disrupt our service.
5. How we handle your code
- Code is transferred read-only into an isolated environment, analyzed without being executed, built, or having its dependencies installed, and deleted when the scan completes or fails, and in any case within 1 day.
- The generated report retains findings, metadata, and the specific code snippets that evidence each finding. The report, including those snippets, is retained so you can access it (Section 7).
- Parts of the analysis output (structured findings and short code excerpts, never your full codebase) are processed by third-party AI infrastructure to produce plain-language explanations. Our providers are listed in our Privacy Policy and are contractually restricted from using your data to train their models.
- GitHub access, where used, is limited to read-only repository contents and metadata. You can revoke it at any time via GitHub.
6. Payment, free preview, and refunds
6.1 The free preview shows summary-level results (e.g., a count of findings) at no charge. The full report is a one-time payment per scan at the price shown at checkout. Payments are processed by Stripe; we do not store your card details.
6.2 Refunds. If you are not satisfied with a purchased report, contact us within 7 days of purchase for a full refund. We may decline refunds in cases of abuse (e.g., repeated purchase-and-refund of scans of the same or substantially similar codebases).
6.3 EU/EEA consumers: right of withdrawal. The report is digital content delivered immediately. By purchasing, you request immediate performance and acknowledge that, once the report is delivered, the statutory 14-day withdrawal right for digital content no longer applies (Art. 16(m), Directive 2011/83/EU). This does not affect our voluntary 7-day refund policy above, which is more generous in practice.
6.4 Prices may change; changes never affect a scan you have already purchased.
7. The report
7.1 Ownership and use. You may use, copy, and share your report freely, including forwarding it to your developer, agency, or advisors. You may not resell reports as a service or misrepresent their origin.
7.2 Nature of findings.Findings are the output of automated static analysis. We aim for accuracy but do not warrant that any finding is correct, that severities are correctly assigned, or that the analysis found everything relevant. Findings describe observable facts in the code; they are not accusations, legal conclusions, or statements about any person's or company's conduct, competence, or intent. How you use the report in a commercial dispute with a third party is your decision and your responsibility.
7.3 Retention. Reports remain available in your account until you delete them or your account.
8. Acceptable use
You may not: reverse-engineer or scrape the service; probe or overload our infrastructure; submit archives designed to exploit extraction or parsing (e.g., decompression bombs, path traversal); use the service to analyze code for the purpose of attacking systems you do not control; or violate applicable law. We may suspend or terminate accounts for violations.
9. Disclaimers
THE SERVICE AND ALL REPORTS ARE PROVIDED "AS IS" AND "AS AVAILABLE", WITHOUT WARRANTIES OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING FITNESS FOR A PARTICULAR PURPOSE, ACCURACY, OR COMPLETENESS, TO THE MAXIMUM EXTENT PERMITTED BY LAW. WITHOUT LIMITING THE FOREGOING: WE DO NOT WARRANT THAT THE ANALYSIS WILL IDENTIFY ANY OR ALL DEFECTS, VULNERABILITIES, OR RISKS IN SUBMITTED CODE, OR THAT A REPORT WITH NO FINDINGS MEANS THE CODE IS FREE OF THEM.
Nothing in these terms excludes liability that cannot be excluded by law, including mandatory consumer protections in your country of residence.
10. Limitation of liability
To the maximum extent permitted by law, our total aggregate liability arising out of or relating to the service or any report is limited to the amount you paid us in the 12 months preceding the claim. We are not liable for indirect, incidental, or consequential damages, loss of profits, loss of data, or business interruption, including losses arising from decisions you make (payments made or withheld, contracts entered or terminated, disputes pursued) in reliance on a report.
11. Indemnity
You will indemnify us against third-party claims arising from (a) your breach of Section 4 (authorization), (b) your unlawful use of the service, or (c) your use of a report in a dispute with a third party.
12. Changes, termination
We may update these terms; material changes will be notified by email or in-product with reasonable notice, and continued use constitutes acceptance. You may close your account at any time. We may terminate or suspend accounts for breach, with a pro-rata or full refund of any undelivered purchased scan.
13. Governing law and disputes
These terms are governed by the laws of European Union, without prejudice to mandatory consumer protection rules of your country of residence if you are a consumer in the EU/EEA. Courts of Cluj-Napoca, Romania have jurisdiction, subject to the same consumer carve-out. EU consumers may also use the European Commission's ODR platform: ec.europa.eu/consumers/odr.
14. Contact
Adventure Software · vali@ascertify.io