Terms of Use
These Terms of Use ("Terms") set out the conditions governing access to and use of the Bugtri website, platform, AI triage systems, and related services (collectively, the "Services"). By accessing or using the Services, you agree to be legally bound by these Terms.
Bugtri provides an AI-powered email triage platform for vulnerability disclosure and bug bounty programmes. We recognise that the Services facilitate security-related decision-making for your organisation. Accordingly, these Terms apply to all individuals and organisations accessing or using the Services.
1. Definitions
"Bugtri", "we", "us", or "our" refers to Bugtri Ltd and any related entities operating the Services. "You" or "User" refers to any person or entity that accesses, registers for, or uses the Services.
"Services" includes the Bugtri website, triage platform, dashboard, APIs, AI triage systems, email processing pipeline, auto-response features, and any related tools, communications, and support channels.
"AI Systems" refers to any artificial intelligence, automation, scoring, classification, summarisation, or triage functionality made available through the Services.
"Content" includes text, graphics, logos, designs, software, data, materials, and other information displayed on or made available through the Services, including vulnerability report content processed through the triage pipeline.
2. Eligibility
You may only use the Services if you are legally capable of forming a binding contract with Bugtri in your jurisdiction. The Services are intended for professional and commercial use by organisations operating vulnerability disclosure or bug bounty programmes.
- You are at least 18 years old (or the age of majority where you live).
- You have the legal capacity to enter into these Terms.
- If using the Services on behalf of an organisation, you have authority to bind that organisation to these Terms.
We may refuse access, suspend accounts, or restrict features where we reasonably believe a user is not eligible or is attempting to use the Services in a manner inconsistent with these Terms or applicable law.
3. Account Registration
To use the Services, you must create an account and provide accurate, current, and complete information. You are responsible for maintaining the confidentiality of your login credentials and for all activity that occurs under your account.
- Do not share passwords or authentication tokens.
- Use strong authentication where available.
- Ensure only authorised personnel within your organisation access your account.
- Promptly notify Bugtri if you suspect unauthorised access or credential compromise.
Bugtri may suspend or terminate accounts where we identify fraud, suspicious behaviour, or policy violations.
4. Nature of the Service
Bugtri operates as a technology platform that processes incoming vulnerability reports on behalf of your organisation. We connect to your shared mailbox via OAuth, sanitise report content, submit it to an AI provider for analysis (using your own API key), and deliver a triage summary email to your inbox.
Bugtri does not provide security consulting, penetration testing, or vulnerability remediation services. The triage output is intended as a decision-support tool and does not constitute professional security advice.
5. Acceptable Use
You agree to use the Services responsibly, lawfully, and in a manner that does not compromise the security, availability, or integrity of the Services or third parties.
You agree not to:
- Use the Services for unlawful purposes or to violate any applicable law or regulation.
- Submit fabricated, fraudulent, or misleading vulnerability reports through the platform.
- Attempt to bypass, disable, or interfere with security controls, access restrictions, or authentication mechanisms.
- Use the Services to harass, threaten, or abuse security researchers who submit reports to your programme.
- Reverse engineer, scrape, or attempt to extract source code or proprietary logic from the platform.
- Share, resell, or sublicence access to the Services without written permission from Bugtri.
6. AI System Usage
The Services include AI Systems that generate outputs such as triage decisions (Auto-Decline, Queue, Fast-Track, Urgent), severity scores, confidence ratings, and written summaries. AI outputs are probabilistic by nature and may be incomplete, inaccurate, or inappropriate for a particular situation.
You acknowledge and agree that AI outputs do not constitute professional security advice or a substitute for human judgement. You remain solely responsible for verifying outputs, validating triage decisions, and determining the appropriate response to any vulnerability report.
To the maximum extent permitted by law, Bugtri disclaims liability for decisions, actions, or outcomes taken in reliance on AI-generated triage outputs.
7. Fees & Payments
Access to the Services may require a paid subscription. Fees and billing terms will be presented during registration or in your account settings.
Unless otherwise stated, fees are exclusive of taxes. You are responsible for any applicable taxes associated with your use of the Services.
Bugtri reserves the right to modify pricing with reasonable notice. Continued use after a fee change takes effect constitutes acceptance of the revised pricing.
8. Intellectual Property
The Services, including all underlying software, architecture, AI Systems, designs, branding, and platform content, are owned by or licensed to Bugtri and are protected by intellectual property laws. Except as expressly permitted, you may not copy, modify, distribute, or create derivative works from any part of the Services.
Vulnerability report content processed through the Services remains your property. Bugtri processes this content solely to provide the triage service and does not claim ownership of your data.
9. Confidentiality
During use of the Services, you may encounter confidential information relating to Bugtri (including platform features, pricing, and technical architecture). You agree to protect such information and not disclose it except where you have lawful basis to do so.
Bugtri treats the content of your connected mailbox and triage results as confidential and will not disclose them except as required to operate the Services or as compelled by law.
10. Data Protection
Bugtri processes personal information in accordance with our Privacy Policy and applicable data protection and privacy laws, including UK GDPR, EU GDPR (where applicable), relevant US state privacy laws, and the Australian Privacy Act 1988.
You are responsible for ensuring you have appropriate legal basis to connect your organisation's mailbox and allow Bugtri to process incoming email content on your behalf.
11. Limitation of Liability
The Services are provided on an "as is" and "as available" basis. Bugtri does not warrant that the Services will be uninterrupted, error-free, or that triage outputs will be accurate or complete.
- Bugtri shall not be liable for indirect, incidental, consequential, special, or punitive damages (including loss of profit, revenue, data, goodwill, or business interruption).
- Bugtri is not liable for security incidents, breaches, or damages arising from a vulnerability report that was incorrectly triaged by the AI system.
- Bugtri's aggregate liability will not exceed the total amount paid by you for the Services in the twelve (12) months preceding the event giving rise to the claim.
Nothing in these Terms excludes liability that cannot be excluded under applicable law, including liability for death or personal injury caused by negligence, fraud, or fraudulent misrepresentation.
12. Indemnification
You agree to indemnify, defend, and hold harmless Bugtri, its directors, officers, employees, and affiliates from claims, liabilities, damages, losses, and expenses arising out of:
- Your breach of these Terms.
- Your misuse of the Services or use in violation of law.
- Actions taken in reliance on AI triage outputs.
- Your organisation's handling of vulnerability reports after triage.
13. Termination
You may stop using the Services at any time by cancelling your subscription. Bugtri may suspend or terminate your access immediately where we reasonably believe you have breached these Terms or where required to comply with law.
Upon termination, your right to use the Services will cease. Data retention and deletion will be handled in accordance with your configured retention policy and our Privacy Policy.
14. Governing Law
Unless otherwise required by mandatory local law, these Terms are governed by the laws of England and Wales, and the courts of England and Wales will have jurisdiction over disputes.
If you are a consumer resident in another jurisdiction, you may also benefit from mandatory consumer protection laws in your country of residence.
15. Dispute Resolution
If a dispute arises, the parties agree to first attempt to resolve it in good faith through informal discussions. Where legally permissible, Bugtri may elect to resolve certain disputes through arbitration or alternative dispute resolution mechanisms.
16. Force Majeure
Bugtri will not be liable for any delay or failure to perform resulting from events beyond its reasonable control, including natural disasters, acts of government, internet or hosting outages, power failures, or cyber incidents.
17. Changes to Terms
Bugtri may update these Terms from time to time. Material changes will be communicated where reasonably practicable. Your continued use of the Services after an update takes effect constitutes acceptance of the updated Terms.