Topscan

Terms and Conditions

Last Updated: 11 Feb 2026

These Terms and Conditions ("Terms") govern access to and use of the TopScan platform and related services ("Service") operated by MEETTY – FZCO, located at C01, Techno hub 1, Dubai Silicon Oasis, United Arab Emirates ("Company", "TopScan", "we", "our", or "us").

By accessing or using the Service, you agree to be bound by these Terms. If you do not agree, you must not use the Service.


1. The Service

TopScan is a scan-as-a-service cybersecurity platform designed to continuously discover internet-exposed assets, perform vulnerability scanning across infrastructure and web applications, and prioritize remediation so teams can address security risks efficiently.

The Service is delivered as a Software-as-a-Service (SaaS) platform primarily intended for DevOps, SRE, CTOs, engineering leaders, and organizations seeking to strengthen the security of their own infrastructure.

Key capabilities include:

  • External vulnerability management with automated perimeter discovery
  • Continuous asset monitoring and change detection
  • Web and API vulnerability scanning
  • Integrations for ticketing, CI pipelines, and ChatOps workflows

2. Eligibility and Accounts

To use the Service, you must:

  • Register using a valid corporate email address
  • Provide accurate and complete information
  • Maintain the confidentiality of your account credentials

You are responsible for all activity conducted under your account.


3. Acceptable Use

The Service may only be used to improve the security of infrastructure and assets that you own or are explicitly authorized to test.

You agree not to:

  • Scan or test assets belonging to third parties without authorization
  • Use the Service for unlawful, harmful, or abusive activities
  • Attempt to interfere with the integrity or performance of the platform

Violation of this section may result in immediate suspension or termination.


4. Security Testing Authorization and Safe Harbor

Customer acknowledges that the Service performs automated security testing techniques that may include network probing, vulnerability scanning, service identification, and simulated attack behaviors against designated assets.

By using the Service, Customer represents and warrants that:

  • Customer owns the assets submitted for scanning or has obtained explicit, verifiable authorization from the asset owner to conduct security testing
  • Such authorization remains valid for the duration of the testing
  • The requested scans comply with all applicable laws, regulations, contractual obligations, and internal policies

Customer is solely responsible for confirming that security testing is permitted within its hosting environments, cloud platforms, service providers, and jurisdictions.

TopScan does not verify ownership or authorization of targets submitted to the platform and expressly disclaims any liability arising from unauthorized testing.

Safe Harbor

TopScan authorizes security testing only against assets properly registered by the Customer within the Service and solely for legitimate security improvement purposes.

When conducted in accordance with these Terms, such testing is deemed authorized by TopScan.

This authorization does not extend to:

  • Third-party systems without permission
  • Activities that violate applicable law
  • Testing intended to cause disruption, denial of service, data destruction, or unauthorized access beyond standard vulnerability assessment techniques

TopScan reserves the right to suspend scanning activities that, in our reasonable judgment, pose a threat to infrastructure, violate law, or create material operational risk.

Customer agrees to indemnify and hold harmless TopScan from any claims, damages, losses, or expenses arising from unauthorized or unlawful testing initiated through the Customer’s account.


5. Acceptable Testing Load; Prohibited Disruptive Activities

Customer agrees to configure and use the Service responsibly and in a manner that does not intentionally degrade, disrupt, or harm systems, networks, or services.

Customer shall not:

  • Use the Service to conduct denial-of-service (DoS), distributed denial-of-service (DDoS), stress testing, or volume-based attacks
  • Generate excessive scan traffic intended to overwhelm target infrastructure
  • Attempt exploitation techniques designed to cause service interruption or data destruction
  • Circumvent scan safety controls implemented by TopScan

TopScan may enforce technical safeguards, including scan rate limiting, concurrency restrictions, or temporary suspension of scanning activities, where necessary to protect infrastructure or maintain platform stability.

We reserve the right to suspend testing that, in our reasonable judgment, presents operational, legal, or security risk.


6. Subscriptions, Billing, and Payments

The Service is offered under subscription-based pricing tiers billed on a monthly basis. Payments are processed via credit card through Stripe.

Refunds

If you cancel the Service:

  • Fees for unused licenses that have not been assigned to targets will be refunded
  • Charges for remaining subscription days will be prorated

Once a license has been used to perform a scan and attached to a target, it remains active for 30 days and is non-refundable.

Failure to process payment within three (3) calendar days after the billing date may result in service suspension.

Accounts remain recoverable for thirty (30) days following suspension. After this period, associated data may be permanently deleted.


7. Free Trial

TopScan may offer a fourteen (14) day free trial.

Trial licenses are limited to those included in the trial package. Purchasing additional licenses during the trial automatically converts the account to a paid subscription.

If no payment method is provided by the end of the trial, access to the Service will be suspended until billing information is supplied.


8. Customer Data and Confidentiality

We collect and process limited information necessary to operate the Service, including:

  • User names, roles, and email addresses
  • Customer billing details
  • Infrastructure targets submitted for scanning
  • Access parameters required to perform scans

Data is used solely to deliver and improve the Service.

We do not sell or share customer data with third parties. Information may only be disclosed when required by law or governmental authority.

Customer data is retained while actively used within the platform. Deleted accounts, targets, and scan results are permanently removed after thirty (30) days.


9. Intellectual Property

All rights, title, and interest in the Service remain the exclusive property of MEETTY – FZCO, excluding third-party open-source components licensed under their respective terms.

Customers retain ownership of all data submitted to the platform.


10. Warranties Disclaimer

THE SERVICE IS PROVIDED "AS IS" AND "AS AVAILABLE," WITHOUT WARRANTIES OF ANY KIND, WHETHER EXPRESS OR IMPLIED.

TopScan does not guarantee the identification of all vulnerabilities. Security scanning relies on available tools and continuously updated databases; however, no solution can detect 100% of security issues. Responsibility for remediation remains with the customer.


11. Security Findings Disclaimer; No Warranty of Remediation Effectiveness

The Service is designed to assist Customers in identifying potential security vulnerabilities and misconfigurations across designated assets. Security findings, risk scores, recommendations, and related outputs are provided for informational and prioritization purposes only.

Customer acknowledges that:

  • No automated security solution can detect every vulnerability or security risk
  • Findings are based on available data, scan configurations, environmental conditions, and continuously evolving threat intelligence
  • The absence of a reported vulnerability does not guarantee that an asset is secure

TopScan makes no representation or warranty that:

  • All vulnerabilities will be identified
  • Any identified issue can be fully remediated
  • Implementation of recommended actions will prevent security incidents or breaches
  • The Service will render Customer systems compliant with any regulatory or certification requirements

Customer is solely responsible for:

  • Evaluating the accuracy and relevance of security findings
  • Determining appropriate remediation strategies
  • Implementing security controls
  • Maintaining its overall security posture

TopScan shall not be responsible for any security incident, breach, data loss, or operational disruption arising from Customer’s failure to remediate identified issues or from reliance on the Service as a substitute for a comprehensive security program.

Nothing in these Terms creates a guarantee of security or establishes TopScan as a provider of legal, compliance, or cybersecurity certification services.


12. Limitation of Liability

To the maximum extent permitted by law, TopScan shall not be liable for any indirect, incidental, consequential, special, or punitive damages, including loss of profits, data, or business opportunities.

Our total liability arising out of or related to the Service shall not exceed the amount paid by you for the Service during the twelve (12) months preceding the claim.


13. Service Availability; SLA Disclaimer

TopScan continuously works to maintain the availability, reliability, and performance of the Service. However, unless expressly set forth in a separate written Service Level Agreement ("SLA") executed between the parties, the Service is provided without any guaranteed uptime or availability commitment.

Customer acknowledges that the Service may be temporarily unavailable due to:

  • Scheduled maintenance
  • Emergency updates
  • Infrastructure or network failures
  • Third-party service disruptions
  • Events beyond TopScan’s reasonable control

TopScan will use commercially reasonable efforts to minimize service interruptions but does not warrant that the Service will be uninterrupted, error-free, or immune from delays.

This section does not create any service credits or refund rights unless explicitly stated in a separately executed SLA.


14. Suspension and Termination

We may suspend or terminate access to the Service if:

  • Payment cannot be collected
  • These Terms are violated
  • Use of the Service creates legal or security risk

Service may be restored upon settlement of outstanding balances within thirty (30) days of suspension.


15. Export Controls and Sanctions Compliance

The Service may be subject to export control and economic sanctions laws of the United Arab Emirates, the United States, the European Union, and other applicable jurisdictions.

Customer represents and warrants that:

  • Customer is not located in, organized under the laws of, or ordinarily resident in any country or region subject to comprehensive trade sanctions
  • Customer is not listed on any government-issued restricted or denied parties list
  • Customer will not use the Service in violation of applicable export control or sanctions laws
  • Customer will not permit access to the Service by prohibited persons or entities

TopScan reserves the right to suspend or terminate access to the Service where required to comply with applicable laws or governmental directives.


16. Governing Law and Dispute Resolution

These Terms are governed by the laws of the United Arab Emirates.

We aim to resolve disputes through good-faith discussions. If resolution cannot be reached, disputes shall be submitted to the competent courts of the UAE.


17. Changes to These Terms

We may update these Terms from time to time. Updated versions will be posted on our website and become effective upon publication.

Continued use of the Service constitutes acceptance of the revised Terms.


18. Entire Agreement; Severability

These Terms constitute the entire agreement between you and TopScan regarding the Service and supersede all prior agreements.

If any provision is found unenforceable, the remaining provisions will remain in full force and effect.


19. Contact

MEETTY – FZCO
C01, Techno hub 1
Dubai Silicon Oasis, UAE

legal@topscan.me