Wiseep Terms of Service

1. Introduction

Welcome to Wiseep.

These Terms of Service ("Terms", "Terms of Service", or "Agreement") govern your access to and use of Wiseep's online cybersecurity, vulnerability assessment, scanning, and related services (collectively, the "Services").

Wiseep provides security assessment services designed to help customers identify potential security vulnerabilities and security weaknesses affecting their authorized digital assets.

By creating an account, purchasing a Service, submitting a scope, initiating a scan, uploading materials, or otherwise accessing or using the Services, you acknowledge that you have read, understood, and agreed to these Terms.

If you are using the Services on behalf of a company, organization, or other legal entity, you represent and warrant that you have the authority to bind that entity to these Terms. In such circumstances, "you", "your", and "Customer" refer to that entity.

If you do not agree to these Terms, you must not access or use the Services.

2. Description of Services

Wiseep provides security assessment services that may include, depending on availability, selected service, scope, and pricing plan:

  • Red Team Scan

  • Wildcard Domain Scan

  • Single Domain Scan

  • Credentialed or Credential Scan

  • Mobile Application Scan

  • Desktop Application Scan

  • Code Review

  • Infrastructure Scan and

  • Other security assessment services that Wiseep may make available from time to time.

Wiseep may use automated, manual, hybrid, AI-assisted, and other technical security assessment methods depending on the Service, target, scope, technology, and applicable testing methodology.

The exact tests, depth, techniques, payloads, technologies, assets, and assessment coverage may vary depending on the selected Service, pricing plan, scope, technical characteristics of the target, and Wiseep's methodology.

Wiseep may modify, improve, replace, suspend, or discontinue any Service or component of a Service at any time.

3. Nature and Limitations of Security Assessments

Wiseep Services are designed to assist customers in identifying potential security vulnerabilities and security weaknesses.

No security assessment, vulnerability scanner, penetration test, automated system, manual assessment, or combination thereof can guarantee the identification of every vulnerability or security weakness.

Wiseep does not warrant or guarantee that the Services will identify:

  • Every vulnerability

  • Every exploitable condition

  • Every configuration issue

  • Every business logic vulnerability

  • Every authentication or authorization weakness

  • Every zero-day vulnerability

  • Every vulnerability introduced after the assessment

  • Every vulnerability that is inaccessible due to technical, authentication, network, application, or environmental limitations

  • Every security risk affecting the assessed environment.

The absence of a reported vulnerability does not constitute a representation or warranty that the assessed system is secure or free from vulnerabilities.

Wiseep findings are based on the information, access, scope, technology, evidence, and conditions available to Wiseep during the applicable assessment.

Wiseep may update, modify, reclassify, merge, split, suppress, or otherwise correct a finding where additional evidence, validation, technical analysis, duplicate detection, changes in vulnerability intelligence, or other relevant information becomes available.

4. Customer Authorization and Scope

4.1. Authorization

You represent and warrant that you own, operate, control, or otherwise have sufficient legal authorization to test every asset, application, domain, IP address, infrastructure component, mobile application, source code repository, system, account, or other target submitted to Wiseep.

You are solely responsible for obtaining all permissions, approvals, consents, and authorizations required to conduct the requested security assessment.

You must not use Wiseep to test third-party systems without appropriate authorization.

4.2. Scope Accuracy

You are solely responsible for ensuring that all information submitted to Wiseep regarding the assessment scope is accurate, complete, and authorized.

Where Wiseep requires ownership or authorization verification, you agree to complete the applicable verification process before testing begins.

Verification may include DNS records, authentication, technical configuration, domain verification, written authorization, or other reasonable verification mechanisms.

4.3. Scope Changes

Any additional asset or target that is not included within the authorized scope must not be intentionally tested unless it becomes part of the authorized scope through an applicable Wiseep process.

Wiseep may suspend a scan where the scope appears ambiguous, unauthorized, technically unsafe, or otherwise inappropriate for testing.

4.4. Red Team and Asset Discovery Services

Certain Wiseep Services may involve discovering publicly accessible assets associated with a customer-provided organization or other authorized identifier.

Where such a Service is used, the Customer represents that it has the necessary authority to request the assessment and that the requested assessment is lawful.

Wiseep may limit or refuse testing of assets where ownership, authorization, legal status, or scope cannot reasonably be established.

5. Customer Responsibilities

The Customer is responsible for:

  • The legality and authorization of the requested assessment

  • The accuracy of the submitted scope

  • Obtaining required permissions

  • Maintaining appropriate backups

  • Maintaining appropriate monitoring and recovery mechanisms

  • Providing accurate technical information

  • Providing valid credentials where required

  • Ensuring that supplied credentials have appropriate minimum privileges

  • Informing relevant personnel and third parties where required

  • Ensuring that testing is permitted under applicable contracts and policies and

  • Reviewing and appropriately responding to security findings.

The Customer should ensure that production systems are appropriately prepared before testing.

The Customer acknowledges that security testing can generate network traffic, requests, payloads, authentication activity, resource consumption, or other technical activity that may trigger security controls, logging systems, WAFs, IDS/IPS systems, monitoring systems, rate limits, or other defensive mechanisms.

6. Non-Invasive Testing and Potential Impact

Wiseep designs its Services with reasonable measures intended to reduce unnecessary disruption.

However, security testing inherently involves interacting with target systems.

Wiseep does not guarantee that testing will have no impact on the target environment.

To the maximum extent permitted by applicable law, Wiseep shall not be responsible for loss, corruption, unavailability, performance degradation, interruption, or other damage resulting from:

  • The Customer's target environment

  • Inadequate system configuration

  • Insufficient backups

  • Third-party infrastructure

  • Customer-provided credentials

  • Customer-provided scope

  • Existing vulnerabilities

  • Defensive security mechanisms

  • Third-party services

  • Actions of the Customer or third parties

  • Circumstances outside Wiseep's reasonable control.

Nothing in these Terms excludes liability that cannot legally be excluded.

7. Accounts

7.1. Registration

Customers may be required to create an account to access certain Services.

You agree to provide accurate, current, and complete information and to keep such information updated.

7.2. Account Security

You are responsible for maintaining the confidentiality of your account credentials and for activities conducted through your account, except where unauthorized activity results from Wiseep's breach of its applicable obligations.

You must promptly notify Wiseep if you suspect unauthorized access to your account.

7.3. Authorized Users

The Customer is responsible for ensuring that its employees, contractors, consultants, and other authorized users comply with these Terms.

The Customer is responsible for activity conducted through its account by its authorized users.

8. Fees and Wiseep's Pay-Per-Vulnerability Model

8.1. Scan Fees

Certain Services require the payment of a scan or service fee before an assessment begins.

The applicable fee will be displayed or otherwise communicated during the purchase process.

Unless expressly stated otherwise, scan fees compensate Wiseep for performing the requested security assessment and are not contingent upon the discovery of a vulnerability.

8.2. Vulnerability Fees

Depending on the selected pricing plan, customers may be charged separately for access to detailed information relating to identified vulnerabilities.

Such fees may vary according to factors including vulnerability severity, Service type, pricing plan, scope, or other applicable commercial terms.

8.3. Vulnerability Detail Access

Wiseep may initially provide a summary of identified vulnerabilities, including information such as severity, category, affected asset, or potential impact.

Detailed vulnerability information may be made available only after the applicable vulnerability fee has been paid or the applicable access condition has otherwise been satisfied.

Detailed information may include, where applicable:

  • Technical description

  • Proof of concept

  • Evidence

  • Affected parameters or components

  • Exploitation details

  • Impact

  • Remediation guidance and

  • Other technical information.

8.4. Payment Obligations

The Customer agrees to pay all applicable fees displayed or communicated at the time of purchase.

The Customer is responsible for providing accurate payment and billing information.

Unless expressly stated otherwise, all fees are exclusive of applicable taxes, duties, VAT, or similar governmental charges.

8.5. Non-Refundable Scan Fees

Unless expressly stated otherwise or required by applicable law, scan and service fees are non-refundable once Wiseep has commenced or performed the requested Service.

The absence of a vulnerability does not entitle the Customer to a refund of a scan fee.

8.6. Payment Disputes

Customers must raise billing disputes with Wiseep promptly and provide sufficient information to allow Wiseep to investigate the dispute.

A customer must not initiate an unjustified chargeback or payment reversal to avoid a valid payment obligation.

Wiseep reserves the right to suspend access to Services or vulnerability details where valid fees remain unpaid or where a payment is reversed or disputed without sufficient justification.

8.7. Pricing Changes

Wiseep may change its pricing, pricing plans, Service fees, or vulnerability fees for future purchases.

A price change will not retroactively modify fees that have already been validly charged unless otherwise required by law.

9. Free, Trial, and Limited Services

Wiseep may offer free, trial, promotional, quick-scan, or otherwise limited Services.

Such Services may have reduced testing depth, limited payloads, limited scope, limited reporting, or other restrictions.

Free or trial Services are provided on an "as is" and "as available" basis and do not constitute a comprehensive security assessment unless expressly stated otherwise.

Wiseep may discontinue or modify free or trial Services at any time.

10. Vulnerability Findings and Reports

All findings are generated according to Wiseep's applicable methodologies, testing processes, and vulnerability classification system.

Wiseep may use its own taxonomy and severity methodology to classify findings.

A severity classification represents Wiseep's assessment based on the available evidence and applicable methodology and does not constitute a guarantee of actual business impact.

The Customer is responsible for independently evaluating the business, legal, regulatory, operational, and security impact of a finding.

Wiseep does not provide legal, regulatory, compliance, financial, or business advice through vulnerability findings.

11. Security Risk Escalation

Wiseep's Services are intended to help customers identify and address security vulnerabilities affecting their digital assets.

Where Wiseep identifies a vulnerability or security issue that, in its reasonable professional judgment, presents a material, critical, or otherwise significant risk to the Customer, its systems, users, data, or other parties, Wiseep reserves the right to take reasonable steps to ensure that the relevant risk is appropriately communicated to responsible personnel within the Customer's organization.

Where Wiseep reasonably believes that a material or critical security vulnerability is being intentionally ignored, suppressed, concealed, improperly dismissed, or prevented from reaching personnel who have responsibility or authority for cybersecurity, information security, risk management, compliance, technology, legal matters, or executive oversight, Wiseep may escalate the relevant security information to appropriate representatives of the Customer organization.

This right may apply regardless of whether the Customer, an account holder, employee, contractor, or other person acting on behalf of the Customer has decided:

  • Not to purchase the relevant vulnerability

  • Not to access its technical details

  • Not to remediate the vulnerability

  • To request deletion or suppression of the finding

  • To discontinue the Service or

  • Otherwise not to proceed with the finding.

Wiseep may determine, based on the circumstances and severity of the identified risk, the appropriate level of escalation and the information reasonably necessary to communicate the risk.

Such information may include the existence of the vulnerability, severity, affected asset, potential impact, technical description, evidence, proof of concept, remediation guidance, or other information reasonably necessary for the recipient to understand and assess the risk.

Wiseep will make reasonable efforts to communicate such information only to individuals or organizational representatives who have a legitimate responsibility or need to receive it.

Wiseep will not intentionally make such vulnerability information publicly available under this provision except where required by applicable law, legal process, or where reasonably necessary to protect Wiseep, its customers, users, or other persons from a material security risk.

This provision does not authorize Wiseep to disclose customer information beyond what Wiseep reasonably determines is necessary for the legitimate purpose of communicating or addressing the relevant security risk.

12. Confidentiality

Wiseep will handle customer information in accordance with its Privacy Policy and applicable security practices.

Customers must treat Wiseep's non-public technical information, methodologies, scanning techniques, proprietary technologies, vulnerability detection logic, pricing information, and other confidential Wiseep information as confidential.

Neither party shall disclose the other party's confidential information except:

  • To authorized personnel who have a legitimate need to know

  • To service providers subject to appropriate confidentiality obligations

  • Where required by law or legal process or

  • Where otherwise permitted under these Terms or a separate written agreement

The obligations in this section do not apply to information that:

  • Is publicly available without breach of these Terms

  • Was lawfully known before disclosure

  • Is independently developed without use of confidential information or

  • Is lawfully received from a third party without confidentiality restrictions.

13. Customer Data and Privacy

Wiseep may collect, process, store, and otherwise use information necessary to provide, maintain, secure, improve, and support the Services.

Such information may include:

  • Account information

  • Contact information

  • Scan scope information

  • Domains and IP addresses

  • Scan results

  • Vulnerability findings

  • Source code

  • Mobile application files

  • Credentials or authentication information

  • Logs

  • Technical metadata and

  • Payment and billing information

Wiseep's processing of personal data is governed by its Privacy Policy.

Where Customer data contains personal information belonging to individuals other than the Customer's authorized users, the Customer is responsible for ensuring that it has an appropriate legal basis and authorization to submit such information to Wiseep.

14. Credentials and Authentication Information

Where the Customer provides credentials for a credentialed assessment, the Customer represents that it is authorized to provide and use such credentials for the requested security assessment.

Customers should use credentials with the minimum privileges reasonably necessary for testing.

Wiseep will use credentials provided for credentialed assessments only as reasonably necessary to perform the applicable Service, subject to its security practices.

The Customer remains responsible for managing, rotating, and revoking credentials after testing where appropriate.

15. Data Retention and Deletion

Wiseep may retain information for as long as reasonably necessary to:

  • Provide Services

  • Maintain account records

  • Maintain security

  • Investigate incidents

  • Prevent fraud or abuse

  • Resolve disputes

  • Enforce contractual rights

  • Comply with legal obligations or

  • Protect Wiseep's legitimate business interests

Different categories of information may have different retention periods.

A request to delete data does not require Wiseep to delete information that Wiseep is legally required or reasonably entitled to retain.

Deletion from active systems may not result in immediate deletion from backup or archival systems.

Where appropriate, backup copies may remain until they are overwritten or securely deleted according to Wiseep's applicable retention processes.

16. Intellectual Property

Wiseep and its licensors retain all rights, title, and interest in and to:

  • The Wiseep platform

  • Software

  • Scanning engines

  • Algorithms

  • Detection logic

  • Security methodologies

  • Vulnerability taxonomies

  • Databases

  • Report formats

  • Documentation

  • Interfaces

  • Designs

  • Know-how

  • Proprietary technologies and

  • Other Wiseep intellectual property

Nothing in these Terms transfers ownership of Wiseep intellectual property to the Customer.

Subject to these Terms, the Customer may use vulnerability reports and other Service outputs for its internal security, remediation, compliance, and risk-management purposes.

The Customer must not commercially resell, redistribute, sublicense, reproduce, or use Wiseep's proprietary Service outputs or technology to create a competing service without Wiseep's prior written consent.

17. Restrictions and Prohibited Activities

You must not:

  • Reverse engineer, decompile, disassemble, or attempt to derive source code from the Wiseep platform

  • Circumvent Wiseep authentication, authorization, rate limits, payment mechanisms, or access controls

  • Attempt to extract or reproduce Wiseep's scanning engines, payloads, vulnerability databases, detection logic, or proprietary methodologies

  • Scrape the Wiseep platform or its vulnerability information using unauthorized automated means

  • Use Wiseep to attack, disrupt, damage, or gain unauthorized access to Wiseep systems

  • Upload malware or intentionally harmful content to Wiseep

  • Use Wiseep to conduct unauthorized security testing

  • Use Wiseep to test third-party systems without appropriate authorization

  • Attempt to bypass payment requirements to access paid vulnerability details

  • Use another person's account without authorization

  • Conduct fraud or payment abuse

  • Interfere with the operation of the Services or

  • Use the Services in violation of applicable law.

18. Suspension and Termination

Wiseep may suspend, restrict, or terminate access to an account or Service where Wiseep reasonably believes that:

  • These Terms have been violated

  • The Customer is conducting unauthorized security testing

  • The Service is being abused

  • Payment obligations are not being satisfied

  • The account presents a security risk

  • The Customer has provided materially inaccurate information

  • Continued use may harm Wiseep, another customer, a third party, or a target system or

  • Suspension is necessary to comply with applicable law or legal requirements.

Where reasonably possible, Wiseep may provide notice before suspension or termination. However, Wiseep may act without prior notice where immediate action is reasonably necessary to protect security or prevent harm.

Termination does not relieve the Customer of obligations accrued before termination.

19. Retesting

Where Wiseep offers a free or included retest, the retest is subject to the applicable Service terms and availability.

A retest may be limited to vulnerabilities previously identified by Wiseep and may not constitute a new or comprehensive security assessment.

Wiseep does not guarantee that a retest will identify all remaining or newly introduced vulnerabilities.

20. Disclaimer of Warranties

To the maximum extent permitted by applicable law, the Services are provided on an "AS IS" and "AS AVAILABLE" basis.

Wiseep disclaims all warranties, representations, and conditions, whether express, implied, statutory, or otherwise, including warranties of:

  • Merchantability

  • Fitness for a particular purpose

  • Non-infringement

  • Accuracy

  • Completeness

  • Availability

  • Uninterrupted operation and

  • Suitability for any particular security, compliance, regulatory, or business purpose

Wiseep does not warrant that:

  • The Services will be uninterrupted

  • The Services will be error-free

  • All vulnerabilities will be identified

  • Findings will never require correction or reclassification

  • The Customer's systems will be secure after an assessment or

  • The Services will satisfy a particular regulatory or compliance requirement.

21. Limitation of Liability

To the maximum extent permitted by applicable law, Wiseep shall not be liable for any indirect, incidental, special, exemplary, punitive, or consequential damages, including loss of profits, revenue, business opportunities, goodwill, data, or anticipated savings, arising out of or in connection with the Services or these Terms.

To the maximum extent permitted by applicable law, Wiseep's total aggregate liability arising out of or relating to the Services or these Terms shall not exceed the total amount actually paid by the Customer to Wiseep for the specific Service giving rise to the claim during the twelve (12) months preceding the event giving rise to the claim.

Where the Customer has paid no fees for the relevant Service, Wiseep's aggregate liability shall not exceed the amount permitted by applicable law.

Nothing in these Terms excludes or limits liability that cannot lawfully be excluded or limited under applicable law.

22. Indemnification

The Customer agrees to defend, indemnify, and hold harmless Wiseep and its affiliates, officers, directors, employees, contractors, and agents from claims, damages, liabilities, penalties, costs, and expenses, including reasonable legal fees, arising out of or relating to:

  • The Customer's unauthorized use of the Services

  • Testing assets without appropriate authorization

  • The Customer's breach of these Terms

  • The Customer's violation of applicable law

  • Claims arising from information or materials submitted by the Customer

  • The Customer's misuse of scan results or

  • Claims arising from the Customer's failure to obtain necessary permissions.

23. Third-Party Services

Wiseep may rely on third-party providers, including cloud hosting providers, infrastructure providers, payment processors, security providers, communication providers, and other technology providers.

Wiseep is not responsible for failures, interruptions, security incidents, or other events exclusively caused by third-party services to the extent such events are outside Wiseep's reasonable control.

Third-party services may be subject to their own terms and policies.

24. Availability and Service Modifications

Wiseep does not guarantee uninterrupted availability of the Services.

Wiseep may perform maintenance, updates, upgrades, security changes, infrastructure changes, or other modifications that may temporarily affect availability.

Wiseep may modify, improve, suspend, or discontinue any Service, feature, scanning methodology, pricing plan, or technical component.

25. Security Measures and Incident Response

Wiseep maintains technical and organizational measures intended to protect its systems and customer information.

Wiseep may monitor activity within its platform for security, fraud prevention, abuse detection, troubleshooting, service reliability, and legal compliance.

Where Wiseep identifies a security incident affecting Customer information and notification is required by applicable law or contractual obligations, Wiseep will provide notification in accordance with those requirements.

Wiseep may immediately suspend or restrict affected Services where reasonably necessary to contain or mitigate a security incident.

26. Compliance and Regulatory Requirements

Wiseep seeks to operate its Services in accordance with applicable laws and regulations.

However, use of Wiseep does not by itself constitute compliance certification for GDPR, PCI DSS, HIPAA, ISO 27001, SOC 2, or any other regulatory framework or standard.

The Customer is responsible for determining its own legal, regulatory, contractual, and compliance requirements.

Wiseep does not provide legal or regulatory advice.

27. Force Majeure

Wiseep shall not be liable for delay, interruption, or failure to perform caused by circumstances beyond its reasonable control, including:

  • Natural disasters

  • War

  • Terrorism

  • Government actions

  • Internet or telecommunications failures

  • Cloud infrastructure failures

  • Major cyberattacks

  • Power failures

  • Labor disputes

  • Epidemics or pandemics

  • Third-party service failures or

  • Other events beyond Wiseep's reasonable control.

28. Changes to These Terms

Wiseep may update these Terms from time to time.

The updated version will be published through the Wiseep website or otherwise communicated through appropriate channels.

Unless otherwise required by law, changes will become effective when published.

Your continued use of the Services after the effective date of an updated version constitutes acceptance of the updated Terms.

Changes will not retroactively modify obligations that have already accrued unless required by law.

29. Governing Law and Jurisdiction

These Terms shall be governed by and interpreted in accordance with the laws of laws of England and Wales, without regard to conflict-of-law principles.

Any dispute arising out of or relating to these Terms or the Services shall be subject to the exclusive jurisdiction of the courts located in laws of England and Wales, unless applicable law requires otherwise.

30. Notices

Wiseep may provide notices to Customers through:

  • The Wiseep platform

  • Email

  • The Customer's registered account

  • The Wiseep website or

  • Other reasonable communication methods

Customers are responsible for maintaining accurate contact information.

31. Assignment

The Customer may not assign or transfer its rights or obligations under these Terms without Wiseep's prior written consent.

Wiseep may assign or transfer its rights and obligations under these Terms in connection with a merger, acquisition, corporate restructuring, sale of assets, or similar transaction.

32. Severability

If any provision of these Terms is found to be invalid, illegal, or unenforceable, that provision shall be enforced to the maximum extent permitted by law and the remaining provisions shall remain in full force and effect.

33. Waiver

Failure by Wiseep to enforce any provision of these Terms shall not constitute a waiver of its right to enforce that provision in the future.

34. Survival

Any provision that by its nature should survive termination shall survive termination of these Terms, including provisions relating to:

  • Payment

  • Intellectual property

  • Confidentiality

  • Data retention

  • Indemnification

  • Limitation of liability

  • Dispute resolution and

  • Other provisions intended to survive termination.

35. Entire Agreement

These Terms, together with Wiseep's Privacy Policy, Security Policy, applicable pricing terms, Service-specific terms, and any separately executed written agreement, constitute the agreement between Wiseep and the Customer concerning the Services.

If there is a conflict between these Terms and a separately executed written agreement, the separately executed written agreement shall prevail to the extent expressly stated in that agreement.

36. No Waiver of Security Rights

Nothing in these Terms prevents Wiseep from taking reasonable action necessary to protect its systems, customers, users, or other persons from a material security risk.

This includes suspending Services, restricting access, preserving relevant security information, investigating suspected abuse, or escalating material security vulnerabilities in accordance with Section 11.

37. Contact

Questions regarding these Terms of Service may be directed to: support@wiseep.com

By accessing or using Wiseep Services, you acknowledge that you have read, understood, and agreed to these Terms of Service.