Legal Center
Effective date: April 26, 2026 · Last updated: April 26, 2026
This page is the single source for AI Malware Guardian legal terms. It is written for a US-focused service model and reflects current product behavior, current integrations, and current support posture. This page is informational and contractual, but not legal advice to you.
Terms of Service
1. Acceptance and Eligibility
By purchasing, downloading, installing, or using AI Malware Guardian (the "Service"), you agree to these Terms. You must be legally able to form a binding contract and use the Service only where lawful.
The Service is currently offered under a US-focused operating model. Checkout and service availability may be restricted by geography, sanctions, fraud controls, legal requirements, or operational limits.
2. Accounts and Security
You are responsible for maintaining the confidentiality of your account credentials and activation token. You agree to notify us promptly at support@aimalwareguardian.com if you believe your account is compromised.
You are responsible for activity occurring through your account unless caused by our breach of this agreement.
3. Subscription, Billing, and Renewal
- Subscriptions are processed through Stripe.
- Monthly plans renew automatically until canceled.
- Annual plans are prepaid for a fixed term.
- Taxes may apply depending on billing location and legal requirements.
Payment disputes, invoices, and payment methods are managed via Stripe and associated account emails.
4. Cancellations and Refunds
You may cancel renewal at any time. Cancellation generally applies at the end of the paid term. Refunds are governed by the checkout disclosures and applicable law. If any conflict exists between checkout-specific disclosures and this section, the more specific checkout disclosure controls to the extent permitted by law.
5. Service Use and Restrictions
You may not use the Service for unlawful activity, unauthorized monitoring of third-party systems, reverse engineering beyond rights provided by law, or to interfere with service integrity and security controls.
6. Service Changes and Availability
We may update features, models, interfaces, and supporting systems. We may suspend access for maintenance, abuse prevention, legal compliance, security response, or infrastructure incidents.
7. Disclaimer
THE SERVICE IS PROVIDED "AS IS" AND "AS AVAILABLE." NO SECURITY PRODUCT CAN GUARANTEE 100% DETECTION OR PREVENTION. YOU ARE RESPONSIBLE FOR YOUR FINAL REMEDIATION DECISIONS, INCLUDING FILE QUARANTINE, RESTORE, OR DELETION ACTIONS.
8. Limitation of Liability
TO THE MAXIMUM EXTENT PERMITTED BY LAW, WE ARE NOT LIABLE FOR INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, EXEMPLARY, OR PUNITIVE DAMAGES, OR FOR LOST PROFITS, REVENUE, OR DATA. OUR TOTAL LIABILITY FOR CLAIMS ARISING FROM THE SERVICE IS LIMITED TO THE FEES PAID BY YOU TO US IN THE 12 MONTHS BEFORE THE CLAIM EVENT.
9. Indemnification
You agree to indemnify and hold us harmless from third-party claims arising from your misuse of the Service, your unlawful conduct, or your breach of these terms.
10. Dispute Resolution and Governing Law
Before formal action, parties agree to attempt informal resolution by contacting operations@aimalwareguardian.com. If unresolved, disputes are governed by Missouri law, excluding conflicts principles, and resolved in the agreed venue unless applicable law requires otherwise.
11. Changes to Terms
We may revise these terms. Material changes may be communicated by website notice, app notice, or account email. Continued use after effectiveness constitutes acceptance.
Privacy Policy
1. Privacy Posture
AI Malware Guardian is designed with local-first detection. Core malware detection inference runs on-device. We do not require cloud-hosted behavioral inference for core endpoint scoring in normal operation.
2. Personal Data We Process
- Account data: email address, password hash, account status metadata.
- Subscription data: Stripe-linked customer and subscription identifiers, invoice metadata.
- Activation data: activation token metadata and machine identifier hash used for device registration workflows.
- Support data: contact form submissions, optional attached images, operational anti-abuse metadata.
- Security/abuse controls: rate-limit and request-security logs needed to protect service integrity.
3. Data We Do Not Intentionally Collect for Cloud Processing
- Raw local process telemetry used for core local detection inference.
- File contents from endpoint scanning workflows as part of normal subscription verification operations.
- Continuous behavioral event streams for hosted scoring as a required service path.
4. Purposes of Processing
We process personal data for account management, subscription and billing operations, product access control, support handling, abuse prevention, security monitoring, legal compliance, and business recordkeeping.
5. Legal Bases (US-Focused Notice)
For US operations, we process data based on contract necessity, legitimate business interests, legal obligations, and consent where required. If non-US laws apply, we align controls where feasible but do not claim full jurisdictional compliance outside our supported service scope.
6. Processors and Vendors
- Stripe: payment processing and billing infrastructure.
- Cloudflare: website hosting, edge/API infrastructure, and database services.
- Resend: transactional email delivery.
These providers act under their own terms and privacy notices. We select providers based on operational and security requirements.
5a. Creator / affiliate program
If you apply to our creator referral program, we collect the information you submit (such as business or channel name, professional email, platform URLs, and optional slug preference) to review your application. Approved affiliates receive referral links and may complete Stripe Connect onboarding for payouts; Stripe processes payout identity and banking data under Stripe's privacy notice. See Affiliate Program Terms and the Cookie Policy referral section above.
7. Retention
Retention follows operational runbooks and legal/business necessity. We retain data for as long as needed to provide service, prevent abuse, satisfy tax/accounting obligations, and resolve disputes. Time-bound cleanup operations are documented in internal retention procedures.
8. Your Rights
To request access, correction, or deletion of account-associated personal data, contact operations@aimalwareguardian.com. We may require verification and may retain limited records where legally required or operationally necessary.
9. Security
We use layered technical and operational controls, including transport encryption, anti-abuse controls, and role-scoped infrastructure practices. No method of transmission or storage is perfectly secure.
10. Children
The Service is not directed to children under 13, and we do not knowingly collect personal information from children under 13.
11. Updates
We may update this privacy section as product behavior or legal posture evolves.
Acceptable Use Policy
1. Prohibited Conduct
- Illegal, fraudulent, or abusive use of the Service.
- Unauthorized scanning, monitoring, or access against third-party systems.
- Attempts to bypass authentication, rate limiting, anti-automation, or security controls.
- Interference with website/API availability, including scraping or flooding that degrades service for others.
- Uploading malware, deceptive payloads, or content intended to exploit support tooling.
- Use of false identity or payment credentials to evade controls.
2. Enforcement
We may limit, suspend, or terminate access for policy violations, security risks, legal requests, or operational abuse. We may preserve evidence to investigate or respond to abuse.
Data Processing Addendum (DPA)
This DPA applies where you act as a business/controller and we act as a service provider/processor for personal data handled through the Service.
1. Scope
The DPA covers customer personal data processed by us on your behalf to deliver contracted services, including account, activation, support, and subscription operations.
2. Roles
- Customer: controller/business for customer-submitted personal data.
- AI Malware Guardian: processor/service provider for those datasets.
3. Processing Instructions
We process covered personal data only according to documented customer instructions, this DPA, and applicable law.
4. Confidentiality and Personnel
Access to covered data is restricted to personnel and contractors with a need to know and confidentiality obligations.
5. Security Controls
We maintain reasonable technical and organizational measures appropriate to the risk profile of covered processing, including access controls, transport security, and abuse protections.
6. Subprocessors
We use subprocessors for infrastructure and service delivery, including Cloudflare, Stripe, and Resend where applicable. We remain responsible for subprocessors to the extent required by law and contract.
7. Assistance and Data Subject Requests
Where applicable, we provide reasonable assistance for verified data-subject requests and privacy-rights workflows, subject to feasibility and legal constraints.
8. Incident Notification
We will notify affected customers without undue delay after confirming a security incident involving covered personal data, with available details sufficient for customer response obligations.
9. Deletion and Return
Upon request and where feasible, we delete or return covered data after service termination, except data we are legally required or operationally permitted to retain.
10. Cross-Border Considerations
This DPA is drafted for US-focused operations. If customer law requires additional transfer mechanisms, parties may execute a written addendum.
Service Level Agreement (SLA)
1. Scope and Nature of Commitment
This SLA describes commercially reasonable operations targets, not guaranteed uninterrupted availability. It applies to website/API surfaces needed for account, billing, and subscription lifecycle functions.
2. Availability Target
Target monthly availability for hosted website/API surfaces is 99.5% under normal operations, excluding planned maintenance, force majeure, upstream provider outages, abuse events, and customer-side network/device failures.
3. Support Response Targets
- Critical security or outage reports: best effort same-day acknowledgement.
- Standard support requests: generally within 1-2 business days.
Response targets are goals, not guarantees.
4. Remedies
No automatic credits are promised under this baseline SLA. Enterprise or custom commitments, if offered, require a separately executed written agreement.
End-User License Agreement (EULA)
1. License Grant
We grant you a limited, revocable, non-exclusive, non-transferable license to install and use the AI Malware Guardian desktop software on devices you own or control, consistent with your subscription plan and these legal terms.
2. Restrictions
- No resale, sublicense, or unauthorized redistribution.
- No unauthorized reverse engineering, decompilation, or tampering, except where non-waivable law permits.
- No use of software components to build competing malware-analysis products from protected internals.
3. Updates
Software updates may include security, stability, and model improvements. Some updates may be required to maintain compatibility with service controls.
4. Termination
License rights terminate when your subscription and lawful usage rights end, or if you materially breach these terms.
Cookie Policy
1. Cookies and Similar Technologies
The website may use strictly necessary cookies and storage mechanisms for session continuity, security controls, and basic site operations. We do not position this page as an ad-tech tracking policy.
2. Categories
- Strictly necessary: login/session continuity and security state.
- Functional: UX continuity settings where implemented.
- Referral attribution: first-party cookie
aimg_refwhen you arrive via a creator?ref=link. Stored in your browser for up to 30 days using a first-touch rule (a later creator link does not replace an existing cookie until it expires or is cleared). Clearing cookies, private browsing, or a different device may prevent referral attribution at checkout.
3. Browser Controls
You can manage cookies using browser settings. Blocking essential cookies can impact sign-in and account-related functionality.
Ownership and Feedback Terms
1. Our Intellectual Property
We retain all rights in the Service, software, models, documentation, branding, and related materials, except for rights explicitly granted to you in these legal terms.
2. Your Content and Submissions
You retain ownership of materials you submit through support channels. You grant us a limited license to use submitted content solely to provide support, troubleshoot, secure, and improve service operations.
3. Feedback License
If you provide suggestions or feedback, you grant us a perpetual, irrevocable, worldwide, royalty-free license to use that feedback without obligation to you, while respecting applicable law.
4. No Unrequested Assignment
These terms do not require users to assign their own intellectual property to us merely for using the Service.