Terms of Service
Last updated: July 15, 2026
1. Acceptance of Terms
By accessing or using Pentone (the "Service"), you agree to be bound by these Terms of Service ("Terms"). If you are using the Service on behalf of an organization, you represent that you have the authority to bind that organization to these Terms. If you do not agree to these Terms, please do not use the Service.
2. Description of Service
Pentone is a collaborative platform for security teams that provides:
- Knowledge workspace: A Notion-style documentation space for security methodologies, finding templates, checklists, and internal notes
- Template-native VAPT reporting: Upload client DOCX templates, auto-generate dynamic finding forms, and export completed deliverables as DOCX/PDF
- Vulnerability management: Structured finding creation with CVSS v3.1 scoring, evidence attachment, and remediation tracking
- AI-assisted drafting (optional): Content generation for vulnerability fields using your own API keys (BYOK)
- Team collaboration: Workspaces, projects, roles, and real-time collaboration features
3. Account Registration & Security
You are responsible for maintaining the confidentiality of your account credentials and for all activity that occurs under your account. You agree to:
- Provide accurate, current, and complete information during registration
- Maintain and promptly update your account information
- Use strong passwords and enable MFA when available
- Notify us immediately of any unauthorized use of your account
- Not share your account credentials with unauthorized users
4. Acceptable Use
You agree to use Pentone only for lawful purposes and in accordance with these Terms. You agree not to:
- Use the Service for any illegal purpose or in violation of any applicable laws
- Attempt to bypass rate limits, access controls, or security measures
- Upload malicious files, malware, or content that could harm the platform or other users
- Use the Service to store or process data in violation of applicable data protection laws
- Interfere with or disrupt the integrity or performance of the Service
- Attempt to access another tenant's data or bypass multi-tenant isolation
- Use AI features to generate content for illegal purposes or in violation of AI provider terms
5. Workspaces, Projects & Data Ownership
5.1 Workspace Structure
A workspace represents your organization on Pentone. Each workspace has its own template library, knowledge base, member directory, and settings. Data is strictly isolated between workspaces.
5.2 Projects
Projects represent individual client engagements within a workspace. Each project contains its own assets, vulnerability findings, and generated reports. Projects inherit the workspace's template library.
5.3 Data Ownership
You retain full ownership of all data, content, and materials you upload, create, or process on Pentone ("Your Content"). We claim no intellectual property rights over Your Content. You grant us a limited license to process Your Content solely for the purpose of providing the Service to you.
6. Roles & Permissions
Access is controlled through hierarchical roles:
- Owner - Full control including billing, workspace deletion, and member management
- Collaborator - Manage members, create projects, configure workspace settings
- Member - Work on assigned projects, create and edit content
- Guest - Read-only access to shared resources
You are responsible for managing role assignments within your workspace. We are not liable for actions taken by users you have authorized.
7. AI Features
AI-assisted drafting is an optional feature. Key terms:
- You must provide your own API keys for AI providers (BYOK). We do not provide shared API keys.
- AI-generated content is provided "as-is" without warranty. You are responsible for reviewing and validating all generated content before use in deliverables.
- Data sent to AI providers is governed by your agreement with that provider. We are not responsible for how AI providers process your data.
- AI usage counts against your plan's credit limits.
- We are not liable for errors, omissions, or inaccuracies in AI-generated content.
8. Service Levels & Availability
We strive to maintain high availability but do not guarantee uninterrupted or error-free service. We reserve the right to perform maintenance, updates, and upgrades that may temporarily affect availability. We are not liable for any damages arising from service interruptions.
9. Beta Features
Pentone is currently in beta. Beta features are provided "as-is" and may contain bugs or incomplete functionality. We may modify or discontinue beta features at any time without notice.
10. Limitation of Liability
To the maximum extent permitted by law, Pentone shall not be liable for any indirect, incidental, special, consequential, or punitive damages, including but not limited to loss of profits, data, or business opportunities, arising out of or related to your use of the Service. Our total liability for any claim arising from these Terms shall not exceed the amount you have paid us in the 12 months preceding the claim.
11. Termination
You may terminate your account at any time. We may suspend or terminate your access if you violate these Terms or engage in conduct that could harm the platform or other users. Upon termination, your data will be handled according to our data retention policy (see Privacy Policy, Section 5).
12. Changes to Terms
We may modify these Terms at any time. Material changes will be communicated via email or through the platform. Continued use of Pentone after changes take effect constitutes acceptance of the new Terms.
13. Governing Law
These Terms shall be governed by and construed in accordance with the laws of the United Arab Emirates. Any disputes arising from these Terms shall be subject to the exclusive jurisdiction of the courts of Abu Dhabi.
14. Contact
For questions about these Terms, contact us at:
Email: [email protected]
Pentone Systems Inc.