Legal

Terms of Service

Last updated: July 16, 2026

These Terms of Service govern your access to and use of the RedStrike platform and website. Because our product actively probes systems for weaknesses, these terms place special emphasis on your authorization to test only assets you own or are permitted to assess. Please read them carefully.

Acceptance of terms

These Terms of Service (“Terms”) form a binding agreement between you and Encyfr Technologies Private Limited (“RedStrike”, “we”, “us”). By accessing or using our website or platform, creating an account, or clicking to accept, you agree to these Terms. If you are entering into them on behalf of an organization, you represent that you have authority to bind that organization.

If you do not agree to these Terms, you may not use the service. Additional order forms, plan terms, or a negotiated master agreement may supplement these Terms; where they conflict, the signed agreement controls.

The service

RedStrike provides an AI-driven continuous penetration testing and cloud security posture management platform. The service orchestrates reconnaissance, web and network testing, vulnerability matching, and cloud configuration analysis, then verifies and prioritizes findings and generates reports. Features and modules may evolve over time.

You can review current capabilities on our platform and pricing pages. We may modify, add, or discontinue features, but we will not materially reduce the core functionality of a paid plan during its term without notice.

Accounts

You are responsible for the accuracy of your account information and for maintaining the confidentiality of your credentials. You must promptly notify us of any unauthorized use of your account. You are responsible for all activity that occurs under your account and for your authorized users’ compliance with these Terms.

We strongly recommend enabling multi-factor authentication and following least-privilege practices when granting access to teammates. You must be at least 18 years old and legally able to enter into contracts to use the service.

Acceptable use & authorization to test

You may only configure RedStrike to scan, test, or assess assets that you own or that you are expressly authorized to test. By adding a target, domain, IP range, or cloud account to the platform, you represent and warrant that you have all necessary rights and permissions to authorize security testing of it. Unauthorized scanning of third-party systems may violate law and is strictly prohibited.

You also agree not to:

  • Use the service to attack, disrupt, or gain unauthorized access to systems you do not control.
  • Reverse engineer, resell, or provide the service to third parties except as permitted in writing.
  • Interfere with the integrity or performance of the platform, or attempt to bypass usage limits.
  • Upload malware or use the service in violation of export controls or applicable law.

We may suspend activity that we reasonably believe is unauthorized, unsafe, or in breach of these Terms. You are solely responsible for the consequences of tests you run against systems you are not authorized to assess.

Fees & billing

Paid plans are billed in advance according to the plan and billing cycle you select or the order form you sign. Unless stated otherwise, fees are non-refundable, exclusive of taxes, and due upon invoice. We may update pricing for future terms with reasonable notice.

If payment is overdue, we may suspend the service after notice. Subscriptions renew automatically for successive terms unless cancelled before the renewal date, as described on our pricing page.

Intellectual property

We and our licensors own all rights in the platform, including its software, models, templates, and documentation. We grant you a limited, non-exclusive, non-transferable right to use the service during your subscription. You retain all rights in the data and content you provide.

You grant us a limited license to process your content solely to provide and improve the service, subject to our Privacy Policy and Data Processing Addendum. We may use aggregated or de-identified data to operate and enhance our products.

Confidentiality

Each party may receive confidential information from the other, including security findings, product plans, and pricing. The receiving party will protect that information with at least reasonable care, use it only to exercise its rights and meet its obligations under these Terms, and not disclose it except to personnel and advisors bound by confidentiality.

Confidentiality obligations do not apply to information that is public through no fault of the receiving party, independently developed, or lawfully obtained from a third party. Security findings you generate are your confidential information.

Warranties & disclaimers

We will provide the service with reasonable skill and care. Except as expressly stated, the service is provided “as is” and “as available.” To the maximum extent permitted by law, we disclaim all other warranties, whether express or implied, including merchantability, fitness for a particular purpose, and non-infringement.

Security testing is inherently probabilistic. While we verify findings to reduce false positives, we do not warrant that the service will detect every vulnerability or that your systems will be secure. The service is a tool to support — not replace — your security program and judgment.

Limitation of liability

To the maximum extent permitted by law, neither party will be liable for indirect, incidental, special, consequential, or punitive damages, or for lost profits, revenue, data, or goodwill, arising out of these Terms, even if advised of the possibility of such damages.

Except for your payment obligations and breaches of the acceptable-use section, each party’s total aggregate liability arising out of or relating to these Terms will not exceed the amounts you paid to us for the service in the twelve months preceding the event giving rise to the claim.

Termination

Either party may terminate for material breach that remains uncured 30 days after written notice. We may suspend or terminate immediately for unauthorized testing, non-payment, or use that poses a risk to the platform or others. You may stop using the service at any time.

On termination, your right to use the service ends and we will make your data available for export for a limited period before deletion, as described in our Data Processing Addendum. Provisions that by their nature should survive — including IP, confidentiality, and liability — will survive termination.

Governing law

These Terms are governed by the laws of the State of Delaware, United States, without regard to its conflict of laws rules. The parties submit to the exclusive jurisdiction of the state and federal courts located in Delaware for any dispute not subject to arbitration, and waive any objection to venue there.

If any provision of these Terms is held unenforceable, the remaining provisions will remain in full effect. Our failure to enforce a right is not a waiver of that right.

Contact us

Questions about these Terms can be sent to Encyfr Technologies Private Limited at hello@encyfr.ai or through our contact page.

Questions about our policies?

Our team is happy to walk security and legal reviewers through how RedStrike handles data.