Legal Disclaimer
1. Nature of the product
Secure Verification Services distributes a self-hosted, source-available security assessment platform ("the Software") consisting of scanning agents, an authorization/scope-enforcement layer, and reporting tooling. The Software is a tool for people who configure, run, and are accountable for their own security testing activity — it is not a managed service, not a substitute for professional penetration testing engagements, and not legal or compliance advice.
2. No warranty
THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, ACCURACY, AND NONINFRINGEMENT. We do not warrant that the Software will detect all vulnerabilities present in a target system, that its findings are complete or free of false positives/negatives, or that use of the Software will result in compliance with any regulatory framework, standard, or certification (including but not limited to OWASP, CIS Controls, or PCI DSS, which findings are merely mapped against for reference).
3. Limitation of liability
To the maximum extent permitted by applicable law, in no event shall Secure Verification Services, its operator, or its affiliates be liable for any indirect, incidental, special, consequential, or punitive damages, or any loss of profits, data, business, or goodwill, arising out of or in connection with your use or misuse of the Software — including, without limitation, damages resulting from scanning or exploiting a system without proper authorization, service disruption caused by running the Software's scanning or exploitation agents, or reliance on any report, finding, or AI-generated triage narrative the Software produces.
Our total aggregate liability arising from or relating to the Software or this Site shall not exceed the amount you actually paid for the Software.
4. Exploitation features carry extra risk
The Software includes an optional exploitation module intended only for use against disposable, resettable lab/test targets you control. Enabling and configuring this module — including declaring "known vulnerabilities" and target endpoints — is entirely your decision and your responsibility. We strongly recommend never pointing exploitation features at production systems, third-party infrastructure, or any target for which you lack clear written authorization.
5. AI-generated content
An optional feature of the Software sends evidence data to a third-party large language model provider to generate a human-readable triage narrative. Output from this feature is AI-generated, may contain inaccuracies, and should be independently reviewed before being relied upon for any security or compliance decision. Enabling this feature transmits data to that third party under its own terms; you are responsible for ensuring this is appropriate for your data and environment.
6. No professional relationship
Purchasing or using the Software does not create a consulting, professional-services, or attorney/auditor-client relationship between you and Secure Verification Services. If you need a certified penetration test, a compliance attestation, or legal advice about your security obligations, engage a qualified professional or firm for that specific purpose.
7. Trademarks
References to third-party frameworks, standards, and tools (including OWASP, CIS Controls, PCI DSS, DVWA, Kubernetes, and Gumroad) are for descriptive/interoperability purposes only. Secure Verification Services is not affiliated with, endorsed by, or sponsored by any of these organizations, and all trademarks remain the property of their respective owners.
8. Governing law
This disclaimer and your use of this Site and the Software are governed by the laws applicable in the seller's jurisdiction of operation, without regard to conflict-of-law principles, except where mandatory consumer-protection law in your jurisdiction provides otherwise.
9. Contact
Questions about this disclaimer can be sent to terminalvelocityai@gmail.com or via the contact form.