Terms of Service
Last updated July 2026
These terms govern your use of FrameScan (“the Service”), an automated tool that checks websites you control for known framework vulnerabilities. By using the Service you agree to them.
1. Ownership verification is required
You may only scan a domain you have proven you control, via a DNS TXT record, a/.well-known file, or a homepage <meta> tag. Ownership is re-checked at scan time. Scanning a domain you do not control is a breach of these terms and of our Acceptable Use Policy, and may be unlawful.
2. What the Service does
Self-serve scans are detection-only: non-destructive probes and offline signature matching. They do not exploit, alter, or disrupt your systems. Findings are our best assessment from the outside and are not a guarantee that your site is or is not exploitable. Active penetration testing is a separate, manually contracted engagement under a signed Rules-of-Engagement and liability agreement.
3. Payment
Prices are shown at checkout in US dollars and processed by Stripe or PayPal. One-off scans are a single credit; subscriptions renew until cancelled. A scan credit is consumed when a scan completes; a scan that fails before running does not consume your credit.
4. No warranty; limitation of liability
The Service is provided “as is,” without warranty of any kind. Security scanning is inherently incomplete — a clean result does not guarantee you are not vulnerable, and you remain responsible for securing your systems. To the maximum extent permitted by law, our liability is limited to the amount you paid us in the preceding three months.
5. Termination
We may suspend or terminate access for any breach of these terms or the Acceptable Use Policy, including any attempt to scan or attack infrastructure you do not own.
Questions? Contact the operator of this instance. This document is a plain-language summary and not legal advice.