Terms of service
The service
ToolGuard is a SaaS that monitors MCP server contracts (schema, security, drift) over time. The CLI and GitHub Action are open source under MIT and are not covered by these terms.
Your account
You are responsible for activity under your GitHub identity and for keeping the credentials (OAuth session cookie, API tokens) confidential. Tell us immediately if you suspect compromise.
Acceptable use
Point ToolGuard only at servers you are authorised to scan. We enforce a per-IP rate limit on public scans (5 per 10 minutes) and reject private/loopback/metadata addresses at the protocol level. Reverse engineering the service to bypass limits or to extract non-public data is not allowed.
Billing
Plans are billed monthly by our merchant of record (Polar). Cancellations take effect at the end of the current period; you keep paid entitlements until then. Refunds are at our discretion for service outages we cause.
Service availability
We target 99.5% monthly uptime, excluding scheduled maintenance. We do not promise that drift detection is exhaustive — false negatives are possible. Use ToolGuard as one signal among others; do not rely on it as the sole control on a regulated workflow.
Intellectual property
We own the SaaS, the database, the brand, and the documentation. You own the data you put in. Aggregated, anonymous metrics that do not identify you may be derived from usage for product improvement.
Liability
To the maximum extent permitted by law, our aggregate liability is capped at the fees you paid in the 12 months preceding the claim. We are not liable for indirect, incidental, or consequential damages.
Governing law and contact
These terms are governed by the laws of Spain. Disputes are resolved by the courts of Madrid. For everything else, write to [email protected].
Questions about these terms? Contact [email protected].