Effective Date: 1 September 2026
Terms of Service
These Terms of Service (“Terms”) govern your access to and use of the PandaOne website (pandaone.dev), developer utilities, autonomous penetration testing engines, and vulnerability assessment services.
1. Agreement to Terms
By accessing or using PandaOne(“we”, “us”, “our”), signing up for early access, utilizing our web tools, or triggering automated security scans, you agree to be bound by these Terms of Service. If you are using PandaOne on behalf of a company or organization, you represent that you have the legal authority to bind that entity to these Terms.
If you do not agree to these Terms, you must immediately refrain from using the platform and its services.
2. Description of Services & Platform
PandaOne operates an autonomous security engineering and penetration testing platform. Our software discovers attack surfaces, simulates adversarial interactions to verify exploitable vulnerabilities with non-destructive proof, and generates remediation recommendations and code pull requests.
We may introduce new features, update scanning methodologies, or modify developer tools at any time to enhance detection accuracy and security coverage.
3. Target Authorization & Lawful Security Testing
As a condition of using PandaOne, you make the following binding representations and warranties:
- Ownership or Explicit Permission: You own the targets (domains, hostnames, IP ranges, applications, source code repositories) submitted for scanning, or you have received explicit written permission from the legitimate owner to conduct active offensive security assessments.
- Understanding of Active Testing: You acknowledge that vulnerability assessments involve sending automated network packets, simulated exploits, and security probes to the target application. While PandaOne designs tests to be safe and non-destructive, you remain responsible for maintaining backups and testing in staging environments where appropriate.
- Compliance with Computer Misuse Laws: You will not use PandaOne to violate any national, federal, state, or international laws, including the U.S. Computer Fraud and Abuse Act (CFAA), the UK Computer Misuse Act 1990, and applicable regional cybercrime regulations.
4. Acceptable Use Policy (AUP)
You agree not to engage in, facilitate, or attempt any of the following prohibited activities:
- Submitting scan targets belonging to third parties without verified, written consent.
- Using PandaOne to launch Denial of Service (DoS/DDoS) attacks, deploy persistent malware, or cause malicious destruction of data.
- Using automated bots to scrape, overload, or bypass rate limits on PandaOne public infrastructure or web tools.
- Attempting to reverse engineer, decompile, disassemble, or extract the detection algorithms or source code of PandaOne scanning engines.
- Reselling, sublicensing, or providing PandaOne as an unauthorized white-labeled service without a separate commercial agreement.
- Impersonating any person or entity or misrepresenting your affiliation with PandaOne.
5. User Accounts & Responsibilities
When creating an account or requesting access to PandaOne, you agree to provide accurate and complete information. You are solely responsible for maintaining the confidentiality of your credentials and API tokens and for all activities occurring under your account.
If you suspect unauthorized access or compromised credentials, you must notify us immediately at security@pandaone.dev.
6. Intellectual Property Rights
6.1 Platform Ownership
PandaOne, including all software, autonomous scanning engines, heuristics, vulnerability signatures, user interfaces, documentation, logos, and trademarks, is and remains the exclusive intellectual property of PandaOne and its licensors.
6.2 Customer Ownership & Scan Reports
You retain all ownership rights to your proprietary applications, target assets, and source code.PandaOne grants you a perpetual, worldwide right to use, download, share, and remediate from the vulnerability reports and pull requests generated specifically for your authorized targets.
7. Subscriptions, Fees & Billing
Certain advanced capabilities, continuous scanning swarms, and enterprise integrations may require a paid subscription or license.
- Pricing & Tiers: Fees are shared during early access onboarding or in a mutually agreed order form.
- Payment Processing: Payments are processed via authorized third-party billing providers. You agree to provide current, valid billing information.
- Cancellations: You may cancel your subscription at any time via your account settings. Subscriptions remain active until the conclusion of the prepaid billing cycle.
8. Disclaimer of Warranties
Without limiting the generality of the foregoing:
- No Guarantee of Total Flaw Detection: While PandaOne employs cutting-edge automated intelligence, cybersecurity is adversarial and continuously evolving. We do not warrant that our services will identify every vulnerability, flaw, or zero-day weakness in your infrastructure.
- No Guarantee of Flawless Operation: We do not guarantee that platform operations will be uninterrupted, error-free, or entirely bug-free.
9. Limitation of Liability
To the maximum extent permitted by applicable law, in no event shall PandaOne, its developers, affiliates, contractors, or licensors be liable for:
- Any indirect, incidental, consequential, special, punitive, or exemplary damages;
- Loss of profits, business revenue, data, goodwill, or operational downtime; or
- Damages arising from security breaches or attacks conducted by independent malicious third parties against your systems.
In any event, our total aggregate liability arising out of or related to these Terms or your use of PandaOne shall not exceed the greater of USD $100 or the total amounts paid by you to PandaOne in the twelve (12) months preceding the claim.
10. Indemnification
You agree to defend, indemnify, and hold harmless PandaOne, its contributors, affiliates, and representatives from and against any claims, liabilities, losses, damages, and expenses (including reasonable legal fees) arising out of or in connection with:
- Your breach of these Terms or violation of applicable laws;
- Security assessments or scans triggered on targets for which you lacked proper authorization; or
- Your misuse of generated vulnerability findings, exploits, or proof-of-concept materials.
11. Account Suspension & Termination
We reserve the right to suspend or terminate your access to PandaOne immediately, without prior notice, if we determine in our sole discretion that you have violated these Terms, conducted unauthorized testing, or posed a security risk to third parties or our infrastructure.
12. Governing Law & Dispute Resolution
These Terms shall be governed by and construed in accordance with generally recognized commercial contract principles without giving effect to conflicts of law rules. The parties agree to first attempt in good faith to resolve any dispute, controversy, or claim arising out of these Terms through informal negotiation by contacting legal@pandaone.dev.
13. Modifications to Terms
We may modify these Terms at any time. When we make updates, we will revise the “Effective Date” at the top of this document. Continued access or use of the platform after revised Terms become effective constitutes acceptance of the modified Terms.
14. Contact Information
For questions or notices regarding these Terms, please reach out to:
PandaOne Legal & Inquiries
General Inquiries: info@pandaone.dev
Legal & Compliance: legal@pandaone.dev
Platform: pandaone.dev