Terms of Service

Effective Date: January 23, 2026

1. Introduction and Acceptance

Agreement to Terms: By accessing or using the SecureZona SPM platform ("Service"), you agree to be bound by these Terms of Service ("Terms"). If you do not agree to these Terms, do not use the Service.

Company Information

Definitions

  • "Service" - The SecureZona SPM platform, including web application, API, and related services
  • "Customer" or "You" - The organization or entity using the Service
  • "User" - Individual authorized by Customer to access the Service
  • "We" or "SecureZona" - SecureZona, Inc.
  • "Content" - Data, findings, reports, and other information generated by the Service

2. Service Description

What SecureZona SPM Provides

SecureZona SPM is a cloud-native security posture management platform that:

  • • Connects to cloud providers (AWS, Azure, GCP)
  • • Connects to SaaS platforms (Okta, GitHub, Salesforce, Microsoft 365, Google Workspace, etc.)
  • • Performs automated security scans and compliance checks
  • • Generates security findings and compliance reports
  • • Monitors third-party product and vendor security
  • • Provides risk scoring and remediation guidance

Service Availability

  • • Target uptime: 99.9%
  • • Scheduled maintenance announced 48 hours in advance
  • • Emergency maintenance may occur without notice

Service Limitations

  • • Read-only access to customer systems
  • • Dependent on third-party API availability
  • • Subject to rate limits and usage quotas
  • • Features may vary by subscription tier

3. Account Registration and Access

3.1 Account Creation

  • • Accounts created by SecureZona administrators
  • • One organization per account
  • • Default admin user created during setup
  • • Organization name must be unique

3.2 User Management

  • • Customer Admin users can invite additional users
  • • Users must have valid email addresses
  • • Email uniqueness enforced per organization
  • • Three user roles: Admin, Auditor, Owner

3.3 Account Security

  • • Customers responsible for user access management
  • • Passwordless authentication via email magic links
  • • Session timeout after 30 minutes of inactivity
  • • Customers must notify us of unauthorized access immediately

3.4 Account Suspension

We may suspend or terminate accounts for:

  • • Non-payment
  • • Violation of these Terms
  • • Fraudulent or illegal activity
  • • Security threats
  • • Abuse of the Service

4. Acceptable Use Policy

4.1 Permitted Use

  • ✅ Use Service for legitimate security and compliance purposes
  • ✅ Connect only systems you own or have authorization to scan
  • ✅ Comply with all applicable laws and regulations
  • ✅ Use Service in accordance with documentation

4.2 Prohibited Activities

You may NOT:

  • ❌ Use Service to scan systems you don't own or have permission to scan
  • ❌ Attempt to bypass security controls or access restrictions
  • ❌ Reverse engineer, decompile, or disassemble the Service
  • ❌ Use Service for illegal purposes or to violate laws
  • ❌ Interfere with or disrupt the Service or servers
  • ❌ Transmit viruses, malware, or harmful code
  • ❌ Scrape, crawl, or harvest data from the Service
  • ❌ Resell or redistribute the Service without authorization
  • ❌ Use Service to compete with SecureZona
  • ❌ Share account credentials with unauthorized parties

4.3 Consequences of Violation

  • • Immediate account suspension or termination
  • • No refund of fees paid
  • • Legal action if necessary
  • • Reporting to law enforcement for illegal activities

5. Subscription and Payment

5.1 Subscription Plans

  • • Custom pricing based on organization needs
  • • Contact sales for pricing: sales@securezona.com
  • • Subscription tiers may include usage limits
  • • Features vary by subscription tier

5.2 Payment Terms

  • • Payment due according to invoice terms
  • • Accepted payment methods: Bank transfer, Credit card, Wire transfer
  • • Automatic renewal unless cancelled
  • • Prices subject to change with 30 days notice

5.3 Refund Policy

  • • No refunds for partial months
  • • Annual subscriptions: Pro-rated refund if cancelled within 30 days
  • • No refunds after 30 days of annual subscription
  • • Refunds processed within 30 days

5.4 Late Payment

  • • Late fees: 5% per month or maximum allowed by law
  • • Service suspension after 15 days of non-payment
  • • Account termination after 30 days of non-payment
  • • Customer responsible for collection costs

5.5 Free Trials

  • • Free trials subject to availability
  • • Limited features and usage
  • • No credit card required for trial
  • • Automatic expiration (no auto-billing)

6. Data and Privacy

6.1 Customer Data

  • • Customer retains all rights to their data
  • • We do not claim ownership of customer data
  • • Customer grants us license to process data to provide Service
  • • We will not use customer data for purposes other than providing Service

6.2 Privacy

See our Privacy Policy for details on how we collect, use, and protect your information.

  • • We comply with GDPR, CCPA, and applicable privacy laws
  • • Data encrypted at rest and in transit
  • • Data Processing Agreements (DPAs) available upon request

6.3 Data Security

See our Security Page for detailed security practices.

  • • Industry-standard security measures
  • • Regular security audits and testing
  • • Incident response procedures

6.4 Data Retention

  • • Active account data retained indefinitely
  • • Deleted account data purged within 30 days
  • • Backups retained for 30 days
  • • Legal/compliance data retained as required by law

6.5 Data Export

  • • Customers can export their data at any time
  • • Export available via API or UI
  • • Data provided in JSON or CSV format

7. Intellectual Property

7.1 SecureZona IP

  • • Service, software, and documentation are proprietary to SecureZona
  • • Protected by copyright, trademark, and other IP laws
  • • Customer receives limited license to use Service
  • • No transfer of ownership or IP rights

7.2 Customer License

  • • Non-exclusive, non-transferable license to use Service
  • • License valid during subscription period
  • • License terminates upon account termination
  • • No right to sublicense or redistribute

7.3 Feedback

  • • Customer may provide feedback and suggestions
  • • SecureZona may use feedback without obligation or compensation
  • • Feedback does not create IP rights for Customer

7.4 Trademarks

  • • "SecureZona" and logos are trademarks of SecureZona, Inc.
  • • Customer may not use our trademarks without written permission
  • • Customer grants us permission to use their name/logo as a customer reference (unless opted out)

8. Warranties and Disclaimers

8.1 Service Warranty

We warrant that:

  • • Service will perform substantially as described in documentation
  • • We will use commercially reasonable efforts to maintain Service availability
  • • We will use industry-standard security practices

8.2 Disclaimer of Warranties

THE SERVICE IS PROVIDED "AS IS" AND "AS AVAILABLE" WITHOUT WARRANTIES OF ANY KIND, EITHER EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO:

  • ❌ No warranty of uninterrupted or error-free operation
  • ❌ No warranty that Service will meet your specific requirements
  • ❌ No warranty that security findings are complete or accurate
  • ❌ No warranty that third-party integrations will remain available
  • ❌ No warranty of merchantability or fitness for particular purpose

8.3 Third-Party Services

  • • Service depends on third-party APIs (AWS, Azure, GCP, SaaS platforms)
  • • We are not responsible for third-party service availability or changes
  • • Third-party API changes may affect Service functionality
  • • Customer responsible for maintaining valid third-party credentials

8.4 Security Findings

  • • Security findings are informational only
  • • Not a guarantee of complete security
  • • Customer responsible for validating and remediating findings
  • • We are not liable for undetected security issues

12. Modifications to Service and Terms

12.1 Service Modifications

  • • We may modify, update, or discontinue features at any time
  • • Material changes announced with 30 days notice
  • • Continued use constitutes acceptance of changes
  • • No liability for modifications or discontinuation

12.2 Terms Modifications

  • • We may update these Terms from time to time
  • • Material changes notified via email
  • • Changes effective 30 days after notification
  • • Continued use constitutes acceptance
  • • If you don't agree, you must terminate your account

12.3 Notification

  • • Email notification to account admin
  • • In-app notification
  • • "Last Updated" date at top of Terms
  • • Previous versions available upon request

13. Governing Law and Dispute Resolution

13.1 Governing Law

These Terms governed by laws of the United States, without regard to conflict of law provisions.

13.2 Jurisdiction

Exclusive jurisdiction in courts of the United States.

13.3 Dispute Resolution Process

Step 1: Informal Resolution (Required)

  • • Parties must attempt good-faith informal resolution
  • • Written notice to legal@securezona.com
  • • 30-day negotiation period

Step 2: Mediation (Optional)

  • • Non-binding mediation if informal resolution fails
  • • Mutually agreed mediator
  • • Costs split equally

Step 3: Binding Arbitration

  • • Binding arbitration under AAA Commercial Arbitration Rules
  • • Single arbitrator mutually agreed or appointed by AAA
  • • Arbitration location: United States
  • • Arbitrator's decision final and binding
  • • Each party bears own costs unless arbitrator decides otherwise

13.4 Class Action Waiver

Customer agrees to resolve disputes individually, not as part of class action or representative proceeding.

13.5 Injunctive Relief

Either party may seek injunctive relief in court for:

  • • Intellectual property infringement
  • • Breach of confidentiality
  • • Unauthorized access or use
  • • Other irreparable harm

14. General Provisions

14.1 Entire Agreement

These Terms, Privacy Policy, and any Order Forms constitute the entire agreement and supersede all prior agreements.

14.2 Severability

If any provision is found invalid or unenforceable, remaining provisions remain in full effect.

14.3 Waiver

Failure to enforce any provision does not waive our right to enforce it later.

14.4 Assignment

Customer may not assign these Terms without our written consent. We may assign these Terms to affiliates or in connection with merger/acquisition.

14.5 Force Majeure

Neither party liable for delays or failures due to circumstances beyond reasonable control.

14.6 Independent Contractors

Parties are independent contractors. No partnership, joint venture, or agency relationship created.

14.7 Export Compliance

Customer must comply with all export control laws. Service may not be used in embargoed countries or by prohibited parties.

14.8 Government Users

If Customer is U.S. Government entity, Service is "Commercial Computer Software" subject to standard commercial license terms.

14.9 Notices

Legal notices to: legal@securezona.com. Customer notices to: Account admin email. Notices effective when sent.

14.10 Language

These Terms are in English. Any translations are for convenience only. English version controls in case of conflict.

15. Contact Information

General Inquiries

Support Response Times:

  • • Priority 1 (Critical): 4 hours
  • • Priority 2 (High): 24 hours
  • • Priority 3 (Normal): 72 hours

Specialized Contacts

9. Limitation of Liability

9.1 Liability Cap

TO THE MAXIMUM EXTENT PERMITTED BY LAW, SECUREZONA'S TOTAL LIABILITY FOR ALL CLAIMS ARISING FROM OR RELATED TO THE SERVICE SHALL NOT EXCEED THE AMOUNT PAID BY CUSTOMER IN THE 12 MONTHS PRECEDING THE CLAIM.

9.2 Excluded Damages

IN NO EVENT SHALL SECUREZONA BE LIABLE FOR:

  • • Indirect, incidental, special, or consequential damages
  • • Loss of profits, revenue, data, or business opportunities
  • • Cost of substitute services
  • • Damages resulting from security breaches of customer systems
  • • Damages from third-party actions or services

9.3 Exceptions

Liability limitations do not apply to:

  • • Gross negligence or willful misconduct
  • • Death or personal injury caused by our negligence
  • • Fraud or fraudulent misrepresentation
  • • Violations of applicable law that cannot be limited

9.4 Customer Responsibility

Customer is solely responsible for:

  • • Implementing security recommendations
  • • Remediating identified security issues
  • • Maintaining security of their own systems
  • • Compliance with applicable laws and regulations

10. Indemnification

10.1 Customer Indemnification

Customer agrees to indemnify, defend, and hold harmless SecureZona from claims arising from:

  • • Customer's use of the Service
  • • Customer's violation of these Terms
  • • Customer's violation of applicable laws
  • • Customer's infringement of third-party rights
  • • Unauthorized access to customer systems
  • • Customer's negligence or willful misconduct

10.2 SecureZona Indemnification

SecureZona will indemnify Customer from third-party claims that the Service infringes intellectual property rights, provided:

  • • Customer promptly notifies us of the claim
  • • Customer gives us control of defense and settlement
  • • Customer cooperates with our defense

10.3 Remedies for IP Infringement

If Service is found to infringe, we may:

  • • Obtain license for Customer to continue using Service
  • • Modify Service to be non-infringing
  • • Replace Service with non-infringing alternative
  • • Terminate Service and refund pro-rated fees

11. Term and Termination

11.1 Term

  • • Agreement begins when Customer first accesses Service
  • • Continues until terminated by either party
  • • Subscription renews automatically unless cancelled

11.2 Termination by Customer

  • • Cancel subscription at any time via account settings or email
  • • Cancellation effective at end of current billing period
  • • No refunds for partial periods (except as specified in Section 5.3)
  • • Data export available for 30 days after termination

11.3 Termination by SecureZona

We may terminate for:

  • • Non-payment (after notice and cure period)
  • • Material breach of Terms (after notice and opportunity to cure)
  • • Illegal activity or fraud (immediate termination)
  • • Abuse of Service (immediate termination)
  • • Business closure or Service discontinuation (with 90 days notice)

11.4 Effect of Termination

Upon termination:

  • • Access to Service immediately revoked
  • • Customer data retained for 30 days for export
  • • After 30 days, all customer data permanently deleted
  • • Outstanding fees immediately due and payable
  • • Sections that should survive termination remain in effect

11.5 Survival

The following sections survive termination:

  • • Payment obligations
  • • Intellectual Property
  • • Warranties and Disclaimers
  • • Limitation of Liability
  • • Indemnification
  • • Governing Law and Dispute Resolution

Last Updated: January 23, 2026