Terms — VibeDiligence
VibeDiligence ('Service', 'we', 'us', 'our') is an AI-powered technical audit service accessible at vibediligence.com.
PLEASE READ THESE TERMS CAREFULLY. BY ACCESSING OR USING VIBEDILIGENCE, OR BY CLICKING 'I AGREE', YOU AGREE TO BE LEGALLY BOUND BY THESE TERMS. IF YOU DO NOT AGREE, DO NOT USE THIS SERVICE.
What VibeDiligence Is
VibeDiligence provides automated, AI-generated technical review reports on public GitHub repositories. Customers submit a repository URL and receive a scored PDF report covering security patterns, production readiness indicators, code quality signals, and scalability considerations.
1.1 Nature of the Service
VibeDiligence is an automated AI-generated review tool. It is expressly NOT:
- A professional security audit, penetration test, or vulnerability assessment
- A certification that your application is secure, production-ready, or fit for any purpose
- Legal, financial, investment, or professional advice of any kind
- A guarantee of accuracy, completeness, or correctness of any finding
- A substitute for a qualified security engineer, software architect, or legal professional
- An exhaustive analysis of every file, dependency, or configuration in your codebase
- A statement that your application complies with any regulatory, legal, or industry standard
AI-generated reports may contain errors, false positives, false negatives, outdated recommendations, or inapplicable findings. The accuracy of findings depends on the code submitted, the quality of AI analysis at the time, and many factors outside our control. You acknowledge this limitation before purchasing.
- Reports reflect a snapshot of the submitted repository at the time of analysis.
- They do not account for changes made after submission, dependencies updated after analysis, or threats that emerge after the report is generated.
1.2 No Reliance
You acknowledge that you will not rely solely on a VibeDiligence report to make security, deployment, investment, or business decisions without independent verification. VibeDiligence reports are a tool to assist — not replace — your own judgement and qualified professional advice.
1.3 Service Availability
We do not guarantee that the Service will be available at any specific time, uninterrupted, error-free, or free from technical issues. We may suspend, modify, restrict, or discontinue the Service or any part of it at any time, with or without notice, for maintenance, updates, legal reasons, or any other reason. We are not liable for any loss or damage arising from service unavailability or changes to the Service.
Eligibility
By using VibeDiligence, you represent and warrant that:
- You are at least 18 years of age
- You have full legal capacity to enter into a binding contract
- You are not prohibited from receiving or using services under applicable law
- You are not located in, or acting on behalf of an entity in, a country subject to international sanctions or embargoes
- If using VibeDiligence on behalf of an organisation, you have full authority to bind that organisation to these Terms
Your Responsibilities
3.1 Repository Submission
By submitting a GitHub repository, you represent and warrant that:
- You are the legal owner of the repository, or you have obtained explicit written authorisation from the owner to submit it for analysis
- The repository does not contain code, data, or intellectual property that you are prohibited from sharing with third-party AI services (including OpenAI)
- You understand that submitting a repository transmits a portion of its contents to OpenAI's API for analysis, and you consent to this transmission
- You have reviewed the repository for sensitive data (credentials, API keys, personal data, confidential business information) and accept full responsibility for any such content that may be transmitted as part of the audit process
3.2 Acceptable Use
You agree not to:
- Submit repositories you do not own or have authorisation to submit
- Attempt to circumvent rate limits, payment requirements, or any access controls
- Submit repositories for the purpose of competitive analysis of VibeDiligence's methodology
- Use the Service to analyse code containing content that is illegal, harmful, or in violation of third-party rights
- Attempt to manipulate, inject, or override AI instructions through code comments or repository content
- Reverse-engineer, decompile, or extract proprietary methodology from the Service
- Use the Service in any manner that violates applicable laws or regulations
- Resell, sublicense, or offer the Service to third parties as your own product
3.3 Accuracy of Information
You agree to provide accurate information in the audit submission form. VibeDiligence is not responsible for reduced report accuracy resulting from inaccurate stack information you provide.
3.4 Security of Your Systems
Acting on, or failing to act on, findings in a VibeDiligence audit report is entirely at your own risk. You are solely responsible for the security, stability, and integrity of your own systems and applications.
Payments
4.1 Pricing and Changes
The current price for a Basic Audit report is $49 USD as a one-time payment. Prices are subject to change at any time without prior notice. The price displayed on the website at the time of purchase is the price you will be charged. No price changes will affect purchases already completed.
4.2 Payment Processing — Paddle as Merchant of Record
All payments are processed by Paddle.com, which acts as the merchant of record for all transactions. This means Paddle — not VibeDiligence — is the seller of record on your payment statement. By completing a purchase, you also agree to Paddle's Terms of Service and their Privacy Policy.
VibeDiligence does not receive, store, or have access to your payment card details, bank information, or full payment credentials. We receive only a confirmation of successful payment and your email address from Paddle.
4.3 Taxes
As merchant of record, Paddle is responsible for calculating, collecting, and remitting applicable sales taxes, VAT, GST, and similar charges in all applicable jurisdictions. Tax amounts, if any, will be displayed at checkout before you confirm payment.
4.4 Currency and Exchange
All prices are quoted in US Dollars (USD). If your payment method is in a different currency, your bank or payment provider may apply a conversion rate and charge a conversion fee. VibeDiligence has no control over and is not responsible for exchange rates or fees applied by your financial institution.
4.5 Failed Payments
If a payment fails after you have submitted a repository for audit, no report will be generated or delivered. VibeDiligence is not responsible for failed payments caused by your payment provider, insufficient funds, or technical issues outside our control.
Refund Policy
5.1 Circumstances Where a Refund Will Be Issued
- The audit failed entirely to generate a report due to a confirmed technical error on our side, and we are unable to deliver the report within 72 hours of the original submission
- You were charged more than once for the same audit due to a billing error
- You completed payment but never received your report and our support team is unable to deliver it within 5 business days
5.2 Circumstances Where No Refund Will Be Issued
Refunds will not be provided in the following circumstances, and by purchasing you acknowledge and accept this:
- You disagree with, dislike, or wish to dispute the findings, scores, or recommendations in your report — AI-generated reports are not a guarantee of any specific finding
- You submitted the incorrect repository URL
- You provided inaccurate stack information that affected the report's relevance
- You changed your mind after the report was generated, whether or not you have downloaded it
- Your repository was private or inaccessible at the time of submission (the Service only supports public repositories, as clearly stated before purchase)
- The report did not identify an issue that was subsequently discovered — our reports are not exhaustive
- More than 30 days have passed since the date of purchase
- You found a cheaper or alternative service after purchasing
- Your use of the report did not produce the business outcome you expected
5.3 Refund Process
To request a refund under Section 5.1, email support@vibediligence.com with your purchase email address and audit ID (available in your Paddle receipt). We will respond within 5 business days. Approved refunds are issued back to the original payment method via Paddle, subject to Paddle's processing timelines (typically 5–10 business days).
Intellectual Property
6.1 Our Intellectual Property
All elements of VibeDiligence — including but not limited to the website, software, audit methodology, scoring system, report format, branding, copy, design, and all content we create — are the exclusive intellectual property of VibeDiligence and protected by applicable copyright, trademark, and other intellectual property laws. You may not reproduce, copy, distribute, reverse-engineer, or create derivative works from our content without our express prior written consent.
6.2 Your Audit Report
Upon full payment, you are granted a non-exclusive, non-transferable licence to use your purchased audit report for your own internal business purposes. You may share it with your team, investors, or developers in the context of your own project. You may not:
- Resell, sublicense, or distribute audit reports as a commercial product or service
- Represent an audit report as having been independently produced by a human security professional
- Use audit report content to train, fine-tune, or develop competing AI systems
6.3 Your Repository
We make no claim of ownership over any code, content, or intellectual property contained in your repository. Submitting a repository for analysis does not grant VibeDiligence any licence, ownership, or rights over your code beyond what is necessary to deliver the Service.
AI Disclaimer
VibeDiligence uses large language models (LLMs), specifically OpenAI's API, to generate audit findings. You acknowledge and accept the following:
- AI-generated content can be incorrect, misleading, incomplete, or hallucinated
- The same repository analysed twice may produce different results due to the probabilistic nature of AI
- AI models have knowledge cutoff dates and may not be aware of newly discovered vulnerabilities or best practices
- Findings described in specific technical language may not accurately reflect the actual issue in your codebase
- VibeDiligence does not manually review, verify, or validate AI-generated findings before delivery
- Acting on AI-generated recommendations without independent expert review is done entirely at your own risk
Note: The AI disclaimer in this section applies to all report content and is incorporated by reference into the Disclaimer of Warranties (Section 8) and Limitation of Liability (Section 9).
Disclaimer of Warranties
Without limiting the foregoing, VibeDiligence expressly disclaims:
- Any implied warranty of merchantability, fitness for a particular purpose, or non-infringement
- Any warranty that the Service will be uninterrupted, timely, error-free, or secure
- Any warranty that audit reports are accurate, complete, current, or suitable for any specific purpose
- Any warranty that implementing audit recommendations will improve the security, performance, or quality of your application
- Any warranty that the Service will identify all vulnerabilities, issues, or risks present in your codebase
- Any warranty regarding the suitability of the Service for regulated industries, compliance requirements, or legal obligations
Security Protocol Disclosure
TO THE FULLEST EXTENT PERMITTED BY APPLICABLE LAW, VIBEDILIGENCE AND ALL CONTENT, REPORTS, AND SERVICES PROVIDED THROUGH IT ARE OFFERED ON AN 'AS IS' AND 'AS AVAILABLE' BASIS, WITHOUT ANY WARRANTY OF ANY KIND, EXPRESS OR IMPLIED.
Note: Some jurisdictions do not permit the exclusion of certain implied warranties. In such jurisdictions, the above exclusions apply to the maximum extent permitted by law.
Limitation of Liability
- Any indirect, incidental, special, consequential, exemplary, or punitive damages of any kind
- Loss of profits, revenue, business, contracts, data, goodwill, or anticipated savings
- Security breaches, data loss, system failures, downtime, or damages to your application or infrastructure — whether or not a VibeDiligence report identified, failed to identify, or made recommendations related to the issue
- Any loss or damage arising from your reliance on or use of AI-generated report content
- Any decision, action, or omission made on the basis of a VibeDiligence report
- Any third-party claims arising from the content of your repository or your use of the Service
- Any loss arising from your failure to independently verify audit findings with qualified professionals
Security Protocol Disclosure
TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, IN NO EVENT SHALL VIBEDILIGENCE BE LIABLE FOR:
Note: IN ALL CASES, VIBEDILIGENCE'S TOTAL CUMULATIVE LIABILITY TO YOU ARISING OUT OF OR RELATED TO THESE TERMS OR YOUR USE OF THE SERVICE SHALL NOT EXCEED THE AMOUNT YOU ACTUALLY PAID FOR THE SPECIFIC AUDIT REPORT GIVING RISE TO THE CLAIM.
Indemnification
You agree to defend, indemnify, and hold harmless VibeDiligence from and against any and all claims, damages, losses, liabilities, costs, and expenses (including reasonable legal fees) arising out of or relating to:
- Your use or misuse of the Service
- Your breach of any provision of these Terms
- Your violation of any applicable law or regulation
- Your violation of any third-party rights, including intellectual property rights or privacy rights
- Any content, code, or data contained in repositories you submit for analysis
- Any claim by a third party arising from actions you took or failed to take based on a VibeDiligence audit report