DRAFT — not reviewed by a lawyer. This page describes Vigilo's actual practices but has not been given a legal review.
← Back to Vigilo

Terms of Service

Last updated: September 2026

The service

Vigilo scans web applications for security and compliance issues and reports what it finds. By submitting a URL or creating an account, you agree to these terms.

Two tiers of scanning

Passive tier is available to anyone: it makes only the kind of requests an ordinary visitor or search-engine crawler would make against a publicly reachable URL. Active tier — including endpoint enumeration and deeper probing — is only performed once you have proven, via a DNS record, a well-known file, or a meta tag, that you control the target. Requesting active tier without a valid proof does not fail your scan; it is silently run at passive tier instead.

You may only request active-tier scanning of sites you own or are authorized to test. Passive-tier scanning of a third-party site does not require the site owner's consent, but a site owner may have their site excluded from scanning at any time — see our Acceptable Use Policy.

Plans and billing

Vigilo offers a free plan with limited scans and targets, and paid plans with higher limits and additional features. Paid plans are billed by our merchant-of-record payment provider on a recurring basis until canceled. Downgrading or canceling takes effect at the end of the current billing period; your account's entitlements are updated automatically once the change is confirmed by our billing provider.

No warranty

Vigilo is provided on an "as is" basis. A passing report is not a guarantee that a site is free of security or compliance issues — our checks detect a defined set of known patterns and are one input into your own judgment, not a substitute for it. We are not liable for actions you take, or fail to take, based on a report.

Acceptable use

You agree not to use Vigilo to scan targets you are not authorized to test at active tier, to attempt to circumvent rate limits or authorization checks, or to use the service in a way that disrupts it for other users. See our Acceptable Use Policy for the full policy.

Changes to these terms

We may update these terms as the service evolves. Material changes will be reflected on this page with an updated date.

Contact

Questions about these terms can be sent to support@vigilo.io.