These Terms of Service ("Terms") constitute a legally binding agreement between you ("Customer", "you") and Sentinel Edge Networks LTD, a private limited company registered in England and Wales (company number 17150600, registered address 134a West Hendon Broadway, London, NW9 7AA, United Kingdom) ("Maskbreak", "we", "us"). By accessing or using any Maskbreak service, API, dashboard, or website, you agree to these Terms in full.
If you are entering into these Terms on behalf of a company or other legal entity, you represent that you have authority to bind that entity. If you do not have such authority, do not use our services.
The Services are offered only to persons aged 18 or over who use them wholly for business or professional purposes, not as consumers. If you are acting mainly outside your trade, business, craft, or profession, you may browse the public Website but must not create an account or use an API key without our written agreement.
1. Services
Maskbreak provides bot detection, VPN/proxy identification, antidetect browser detection, device intelligence, and fraud prevention services via a REST API and JavaScript SDK ("Services"). Account creation is available via email/password or Google or GitHub OAuth. Services are currently provided free during open beta with a rate limit of 1,000 API requests per hour. We reserve the right to modify, suspend, or discontinue any part of the Services with reasonable notice.
2. Account Registration
To access the Services you must create an account. You agree to:
- Provide accurate, current, and complete information during registration.
- Maintain the security of your account credentials and API keys.
- Notify us immediately at [email protected] of any unauthorized access.
- Not share your API key with third parties or use it across multiple unrelated projects without our written consent.
You are solely responsible for all activity that occurs under your account. We are not liable for any loss or damage arising from unauthorized account access where you failed to maintain credential security.
3. Acceptable Use
You agree to use the Services only for lawful purposes and in compliance with all applicable laws. You must NOT:
- Use the Services to engage in any activity that violates applicable local, national, or international law.
- Attempt to reverse-engineer, decompile, or extract the underlying algorithms or models of the Maskbreak API, except to the limited extent the restriction is prohibited by law or activity is expressly authorised by our Responsible Disclosure Policy.
- Use the Services to build a competing product or service.
- Resell or sublicense API access without our prior written approval.
- Conduct automated stress testing or load testing against the API without prior written permission.
- Use the Services to discriminate against individuals based on protected characteristics (race, gender, religion, nationality, disability, etc.).
- Circumvent, disable, or interfere with bot detection, rate limiting, or anti-scraping measures.
We reserve the right to suspend or terminate access immediately and without prior notice for violations of this section.
4. API Usage Limits & Fair Use
Maskbreak is currently in open beta with a free API plan. During beta:
- Developer Plan (Free): 1,000 API requests per hour. No monthly caps.
We have announced a paid Growth plan (€49/month founding price, locked for beta signups) and may introduce further paid plans with defined quotas. Billing for paid plans begins only at general availability, and we will provide at least 30 days' notice before any charges or pricing changes take effect. Requests that exceed fair-use thresholds may be rate-limited (HTTP 429). For enterprise-scale volumes, contact us at [email protected].
5. Pricing & Future Billing
All services are currently provided free of charge during the open beta period. When billing for paid plans begins (no earlier than general availability):
- We will provide at least 30 days' notice before requiring payment for any feature.
- Fees will be exclusive of VAT. UK VAT (20%) applies where required. EU VAT rules apply to customers in EU member states.
- Your free-tier access will not be retroactively charged.
6. Free Plan & Developer Access
The Developer (free) plan is provided "as-is" for evaluation, development, and production use during the open beta. We reserve the right to modify or discontinue the free plan at any time with 30 days' notice. Free-plan users have no SLA guarantees and may experience rate-limiting during high load periods.
7. Intellectual Property
All intellectual property rights in the Services, including but not limited to the Maskbreak API, SDK, dashboard, documentation, branding, and underlying machine learning models, remain the exclusive property of Sentinel Edge Networks LTD. These Terms do not grant you any ownership rights in the Services.
You retain all rights to the data you submit to the API. You grant us a limited, non-exclusive license to process that data solely for the purpose of providing the Services.
8. Confidentiality
Each party may receive confidential information from the other. Both parties agree to keep such information confidential using at least the same degree of care used for their own confidential information, and not to disclose it to third parties without prior written consent. This obligation does not apply to information that is publicly available, independently developed, or required to be disclosed by law.
9. Data Processing & GDPR
When you use the Services to evaluate your users, you normally act as controller and Maskbreak acts as processor under the UK GDPR and, where applicable, EU GDPR. Our Data Processing Addendum (DPA), including the Article 28 terms and applicable transfer safeguards, is published self-serve at maskbreak.com/dpa and forms part of these Terms when Maskbreak processes personal data on your behalf. A countersigned copy is available on request at [email protected].
You are responsible for ensuring you have a valid legal basis to submit your end-users' data to our API, and for informing your end-users of such processing in your own privacy policy.
Data Retention: Account data is retained for the duration of your account. Account deletion removes personal data and API keys from live systems promptly. Encrypted disaster-recovery backups expire on a rolling schedule within 60 days and are not used to restore a deleted account. Data may be retained longer only where required by law, to resolve a dispute, or to establish or defend legal claims.
Your Right to Erasure: You may request deletion of your account and all associated personal data at any time by emailing [email protected] or using the account deletion feature in your dashboard settings. We will action your request within 30 days as required by GDPR Article 17.
10. Disclaimer of Warranties
THE SERVICES ARE PROVIDED "AS IS" AND "AS AVAILABLE" WITHOUT WARRANTIES OF ANY KIND, EITHER EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, ACCURACY, OR NON-INFRINGEMENT. MASKBREAK DOES NOT WARRANT THAT THE SERVICES WILL BE UNINTERRUPTED, ERROR-FREE, OR COMPLETELY SECURE.
Bot detection and fraud prevention are probabilistic by nature. Maskbreak does not guarantee that all bots will be detected or that no legitimate users will be flagged. You are responsible for how you act upon our risk scores in your application.
11. Limitation of Liability
Nothing in these Terms excludes or limits liability for death or personal injury caused by negligence, fraud or fraudulent misrepresentation, breach of title, or any other liability that cannot lawfully be excluded or limited. Subject to those carve-outs and to the maximum extent permitted by law, Maskbreak's total cumulative liability arising out of or related to these Terms or the Services shall not exceed the greater of (a) the fees paid by you to Maskbreak in the three months preceding the claim or (b) £100.
IN NO EVENT SHALL MASKBREAK BE LIABLE FOR ANY INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, OR PUNITIVE DAMAGES, INCLUDING LOSS OF PROFITS, DATA, BUSINESS, OR GOODWILL, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
12. Indemnification
You agree to defend, indemnify, and hold harmless Maskbreak and its officers, directors, employees, and agents from any claims, damages, losses, liabilities, and expenses (including reasonable legal fees) arising out of or related to: (a) your use of the Services in violation of these Terms; (b) your violation of any applicable law; (c) your infringement of any third-party rights.
13. Term & Termination
These Terms remain in effect as long as you use or access the Services. You may terminate your account at any time via the dashboard or by emailing [email protected]. We may suspend or terminate your account immediately for breach of these Terms, non-payment, or any activity we reasonably believe is harmful to Maskbreak or other users.
Upon termination, your right to access the Services ceases immediately. Provisions that by their nature should survive termination (including Sections 7, 10, 11, 12, and 15) shall survive.
Before terminating a non-suspended account, you may export the account and usage information made available in the dashboard. We may retain limited records after termination only as described in our Privacy Policy.
14. Changes to Terms
We may update these Terms from time to time. We will notify you of material changes by email to your registered address at least 14 days before they take effect. Your continued use of the Services after the effective date constitutes acceptance of the updated Terms.
15. Governing Law & Dispute Resolution
These Terms are governed by and construed in accordance with the laws of England and Wales, without regard to conflict-of-law principles.
Any dispute arising from or related to these Terms shall first be subject to good-faith negotiation. If unresolved within 30 days, disputes shall be submitted to the exclusive jurisdiction of the courts of England and Wales.
16. Miscellaneous
- Entire Agreement: These Terms, together with our Privacy Policy and Cookie Policy, constitute the entire agreement between the parties regarding the Services.
- Severability: If any provision is found invalid or unenforceable, the remaining provisions remain in full force.
- Waiver: Failure to enforce any provision shall not constitute a waiver of future enforcement rights.
- Assignment: You may not assign your rights under these Terms without our written consent. We may assign our rights freely.
- Language: These Terms are executed in English. In case of conflict between any translated version and the English version, the English version prevails.
- Order of precedence: an executed order form or MSA prevails over these Terms for its subject matter, followed by the DPA for personal-data processing and an executed SLA for service levels.
17. Procurement & Enterprise Contracts
For procurement, security, or legal review teams, the following documents are available — self-serve where linked, otherwise on request from [email protected]:
- Data Processing Agreement (DPA) aligned to UK GDPR / EU GDPR Article 28, including the applicable international-transfer terms — published self-serve at /dpa, with a countersigned copy available on request. The current named sub-processor list is supplied with the DPA and published at /sub-processors. Our Cookie Policy separately describes the providers used by the public website.
- Vendor security questionnaire responses (including answers to common SIG-Lite, CAIQ, and bespoke questionnaires).
- Master Services Agreement (MSA) for customers requiring contracting outside our standard click-through Terms.
- Beta service-level expectations. Our public service-level objectives are non-contractual during open beta. Contractual availability, support targets, and service credits are available only in an executed enterprise agreement. We will give 30 days' notice before any change to commercial terms.
- Sub-processor change notification: we will notify customers at least 30 days before adding a new sub-processor that processes customer data, with a right to object before the change takes effect.
- Audit posture: Maskbreak is pre-audit for SOC 2 Type II. We do not currently hold SOC 2, ISO 27001, HIPAA BAAs, or PCI DSS attestation, and we will not claim otherwise. Roadmap detail is shared on request under NDA.
- Vulnerability disclosure: see our Responsible Disclosure policy for how to report security issues, scope, and safe-harbour commitments.
18. Contact
134a West Hendon Broadway, London, NW9 7AA, United Kingdom · Company number: 17150600