Terms of Service
Last updated: 2 June 2026
1. Acceptance
By accessing or using DoksOps ("the Service"), you agree to these Terms of Service. If you are using the Service on behalf of an organization, you represent that you have the authority to bind that organization.
2. Description of Service
DoksOps is an automated infrastructure documentation platform. The Service scans AWS accounts using read-only API calls and generates documentation, architecture diagrams, cost analysis, and compliance reports.
3. Account & Access
- You must provide accurate registration information
- You are responsible for maintaining the security of your account credentials
- You are responsible for all activity under your account
- You must be at least 18 years old to use the Service
4. AWS Credentials & Permissions
To use the Service, you grant DoksOps temporary read-only access to your AWS account. You acknowledge that:
- You have the authority to grant this access to the AWS account(s) being scanned
- The IAM role or credentials you provide should follow the principle of least privilege
- DoksOps will only use
Describe*,List*, andGet*API calls - DoksOps will never modify, create, or delete resources in your account
- You can revoke access at any time by deleting the IAM role or credentials
5. Shared Responsibility & Accuracy
DoksOps generates documentation automatically from the AWS API responses your read-only credentials are permitted to read, at the time of each scan. Accuracy and completeness therefore depend on factors under your control. Responsibilities are shared.
DoksOps is responsible for:
- Reporting accurately what the granted credentials expose, from live AWS API data
- Distinguishing API-sourced facts from AI-generated analysis
- Time-stamping each scan and keeping your credentials encrypted and read-only
You are responsible for:
- Granting complete, correct read-only permissions so resources are not hidden — an under-permissioned scan silently omits findings and can make your posture look better than it is
- Scanning all relevant accounts and regions; un-scanned scope is not reflected
- Re-scanning after infrastructure changes — each report is a point-in-time snapshot
- Validating and remediating findings with a qualified engineer
You further acknowledge that the documentation is provided for informational purposes and that it is:
- Access-scoped — resources the credentials cannot read are omitted without notice
- Point-in-time — findings reflect only the moment of the scan
- Estimates, not invoices — cost figures are calculated from public AWS pricing, not your actual AWS bill
- Evidence, not certification — compliance and SOC 2 / ISO 27001 output is supporting evidence to assist a qualified auditor; it is not a certification, audit opinion, or legal attestation
The Service does not replace professional security, compliance, financial, or legal advice. See also Limitation of Liability below.
6. Plans & Billing
- Paid plans: Starter, Pro, and Enterprise, billed monthly or annually via Stripe
- Free trial: New accounts start with a 14-day free trial of the Starter plan — no payment method required to begin. During the trial, document and diagram downloads/exports are disabled and scan usage is capped; a paid subscription is required to continue using the Service after the 14 days end
- Plan limits (scan frequency, team size, features) are enforced automatically
- Downgrades take effect at the end of the current billing period
- We may change pricing with 30 days notice to existing customers
7. Your Data
You retain ownership of:
- Your AWS infrastructure metadata collected during scans
- All generated documentation, diagrams, and reports
You grant DoksOps a limited license to process your infrastructure metadata solely for the purpose of providing the Service. See our Privacy Policy for details on data handling.
8. Acceptable Use
You may not:
- Use the Service to scan AWS accounts you do not own or have authorization for
- Attempt to gain unauthorized access to the Service or its infrastructure
- Reverse-engineer, decompile, or disassemble the Service
- Resell or redistribute generated content as a competing documentation service
- Use the Service for any illegal purpose
9. AI-Generated Content
Certain features use AI (an EU-only Mistral LLM — AWS Bedrock or self-hosted) to enrich documentation with analysis, recommendations, and compliance assessments. AI-generated content is provided "as-is" and should be reviewed by qualified personnel before being used for compliance certification, audit, or regulatory purposes.
10. Limitation of Liability
DoksOps provides the Service "as is" without warranty of any kind. We are not liable for any indirect, incidental, or consequential damages arising from use of the Service, including but not limited to inaccuracies in generated documentation, cost estimates, or compliance assessments. Our total liability is limited to the fees you paid in the 12 months preceding the claim.
11. Termination
Either party may terminate at any time. You can delete your account from the Settings page. We may suspend or terminate accounts that violate these terms with reasonable notice. Upon termination, your data will be deleted within 30 days per our Privacy Policy.
12. Changes
We may update these terms from time to time. Material changes will be communicated via email with at least 30 days notice. Continued use after changes take effect constitutes acceptance.
13. Contact
Questions about these terms? Email legal@doksops.com.