Warden by VeritAi
What we doExample reportFor agenciesPricingNewsContact
Log inGet started
Contents
  • 1. Scope and authorisation
  • 2. What the service is
  • 3. Non-destructive testing and inherent risk
  • 4. Your responsibilities
  • 5. Test credentials and access
  • 6. Confidentiality and data handling
  • 7. Findings and the report
  • 8. Fees
  • 9. Warranties and limitation of liability
  • 10. Indemnity
  • 11. Suspension
  • 12. Governing law and contact
Effective2026-06-25
JurisdictionEngland & Wales
→ Privacy Policy
Legal

Penetration Testing Terms

These terms apply to any penetration-testing engagement you book through Warden. They set out what the service is, your responsibilities, and the limits of our liability. Please read them before you authorise a test.

Last updated 2026-06-25

01

Scope and authorisation

These terms govern the penetration-testing engagement you book through Warden by VeritAi. Testing is limited to the specific site, systems and scope you identify when booking. You warrant that you own the target, or are duly authorised by its owner to authorise testing, and that you have obtained any consent required from your hosting, CDN, or other third-party providers. You are responsible for confirming that testing does not breach any agreement you hold with such providers.

02

What the service is

A penetration test is a time-boxed, best-effort security assessment carried out by a qualified tester, assisted by our tooling. It is not a guarantee that every vulnerability will be found, and a report that identifies no issues does not certify that the site is secure or free of vulnerabilities. The assessment reflects the state of the target during the testing window only.

03

Non-destructive testing and inherent risk

We exclude destructive techniques and denial-of-service attacks. Nevertheless, security testing interacts with live systems and carries a small inherent risk of unexpected behaviour, degraded performance, or data changes made through the application under test. By booking, you confirm that you hold a recent, working backup of the site and its data, and you accept this residual risk.

04

Your responsibilities

You agree to provide accurate scope information, to keep any test accounts you supply isolated from production data where practical, to allow-list our testing sources where a firewall or WAF would otherwise block them, and to inform your own stakeholders that testing is taking place. You must not ask us to test systems, data, or third parties that fall outside the authorised scope.

05

Test credentials and access

Where authenticated testing is required, you are responsible for providing valid test-account credentials through the secure channel we specify. Never send credentials in the booking form or by other insecure means. We use such credentials solely for the engagement and do not retain them beyond it.

06

Confidentiality and data handling

During testing the tester may view data that is accessible to the accounts and scope you provide. Both parties agree to keep the engagement, its findings, and any information disclosed confidential. We store findings and evidence securely, redact secrets where we can, and share the report only with your account.

07

Findings and the report

Findings are provided for your internal remediation. We may withhold release of the report until it has passed our internal review. Advice and remediation guidance are provided in good faith; how you act on them is your decision and responsibility.

08

Fees

The engagement is charged as the one-off fee shown at checkout. Once testing has commenced, fees are non-refundable except where required by law.

09

Warranties and limitation of liability

The service is provided on a best-effort, as-is basis, without warranty that it will identify all vulnerabilities or that the target is secure. To the fullest extent permitted by law, we are not liable for any indirect, incidental, or consequential loss, nor for loss of profit, revenue, or data, arising from the engagement; and our total liability for any claim is limited to the fee paid for that engagement. Nothing in these terms limits liability that cannot be limited by law.

10

Indemnity

You agree to indemnify us and hold us harmless against any claim, loss, or expense arising from testing you authorised without the necessary rights, or from your direction to test systems, data, or third parties outside the authorised scope.

11

Suspension

We may pause or stop testing if we reasonably believe it is causing harm, if authorisation is in doubt, or if a critical issue requires your immediate attention. We will contact your nominated emergency contact where appropriate.

12

Governing law and contact

These terms are governed by the laws of England & Wales. Questions about these terms can be raised through the contact page.

warden

Automated web security scanning with plain-English, graded reports.

Product
What we doExample reportPricingFor agencies
Company
NewsContactTermsPrivacy
© 2026 Veritai · warden.veritai.ch