MINDFORT AI, INC. – CLOUD SERVICE AGREEMENT (CSA)
Supersedes all prior versions of the MindFort Terms of Service. If Customer has executed a separate cover page or master agreement that is still in force, that agreement controls; otherwise, the following governs.
This CSA consists of (i) this Cover Page ("Order Form"), (ii) the Key Terms below, and (iii) the Common Paper Cloud Service Agreement Standard Terms, Version 2.1 (https://commonpaper.com/standards/cloud-service-agreement/2.1/) (the "Standard Terms"). Defined terms in the Standard Terms retain the same meaning here unless modified. In the event of conflict, this Cover Page prevails over the Standard Terms and any earlier MindFort terms.
Cover Page (Order Form)
Cloud Service: MindFort: a cloud‑based autonomous penetration‑testing platform that deploys AI agents to continuously discover, validate, risk‑score, and provide remediation guidance for vulnerabilities in Customer‑authorized web applications and external networks.
Order Date: The Effective Date (defined below).
Subscription Period: One (1) calendar month, renewing automatically unless terminated in accordance with Section 4.4 of the Standard Terms.
Cloud Service Fees
Pro Plan USD 99 per user seat per month and USD 399 per designated target per month. Each target includes six (6) automated assessments per monthly cycle; additional assessments are USD 99 each. Pro fees are invoiced monthly in advance; assessment overages are invoiced in arrears.
Enterprise Plan and Pay‑as‑You‑Go Plan Fees are custom‑negotiated case‑by‑case based on (i) number of seats, (ii) number and complexity of targets, (iii) annual volume of assessments, (iv) size and architecture of each target, and (v) any additional requirements (e.g., SSO, support tiers). Minimum annual spend and overage rates will be stated in the applicable Order Form or Master Service Agreement.
Payment Process: Customer authorises Provider to charge the payment method on file automatically on the first day of each billing period for fees then due. Overages are charged without further approval.
Non‑Renewal Notice Period: At least thirty (30) days before the end of the current Subscription Period.
Use Limitations: Customer may use the Cloud Service only to test targets that (a) it owns or (b) it is expressly authorised in writing by the owner to test. MindFort may impose reasonable usage caps on any plan marketed as "unlimited" to prevent excessive or abusive consumption. The Service may not be used in any manner that interferes with Provider’s infrastructure, degrades service for others, or exceeds normal good‑faith usage.
Key Terms
Customer: The company or person who accesses or uses the Cloud Service. If an individual accepts this CSA on behalf of a company, "Customer" means that company.
Provider: MindFort AI, Inc.
Effective Date: The earlier of (a) the date Customer clicks to accept or (b) the date Customer first accesses or uses the Cloud Service.
Governing Law: State of Delaware, U.S.A.
Chosen Courts: State or federal courts located in Delaware.
Covered Claims
Provider Covered Claim Any claim that the Cloud Service, when used as permitted, infringes a third party’s intellectual‑property or proprietary rights.
Customer Covered Claim Any claim (i) that Customer Content infringes third‑party rights or (ii) arising from Customer’s breach of Section 2.1 (Restrictions on Customer).
General Cap Amount: An amount equal to the fees paid or payable by Customer to Provider during the twelve (12) months immediately preceding the event giving rise to the claim.
Notice Address
Provider: founders@mindfort.ai
Customer: The primary e‑mail address associated with Customer’s account.
Attcahments & Supplements
Security Policy: Provider employs commercially reasonable safeguards—including encryption in transit and at rest, MFA, role‑based access control, continuous vulnerability management, and a documented incident‑response plan—to protect the Cloud Service against unauthorised access, alteration, or use. Provider undergoes annual SOC 2 Type I and Type II audits. A detailed policy is available upon request under NDA.
Beta: MindFort’s products, services, and it’s various features remain in beta until otherwise specified in these terms.
Data Retention & Machine‑Learning Use
Testing data (logs, payloads, exploit artefacts, vulnerability metadata) is retained indefinitely unless Customer requests deletion of its account or specific data.
Source code supplied solely for an assessment is retained only for the duration of that assessment and is deleted upon completion; derivative findings persist.
Provider may use de‑identified data to train machine‑learning models and improve the Service. Customer may request exclusion at any time; Provider will comply within thirty (30) days.
Definitions (Suplemental)
"Seat" A named user licence that grants an individual login to the platform.
"Target" A single web application or external network asset designated for testing.
"Assessment" One complete autonomous security test run against a Target.
This Cover Page, together with the incorporated Standard Terms, forms the entire agreement between Customer and Provider regarding the Cloud Service and supersedes any prior or contemporaneous terms covering the same subject matter.
Contact Us
Questions or requests? E‑mail founders@mindfort.ai or write to:
© 2025 MindFort AI, Inc. All rights reserved.