HatTest
Scan a siteFAQContact

Terms of Service

Last updated: 30 June 2026

These Terms of Service (“Terms”) govern your use of HatTest at hattest.ai (the “Service”), operated by HatTest LLC (“we”, “us”). By using the Service you agree to these Terms. If you do not agree, do not use the Service.

1. What the Service is

HatTest performs automated, strictly-passive security reconnaissance of a website or its public backend and reports what an attacker could already reach. A free severity scoreboard (issue counts by severity) is available for any URL; the detailed findings are released only after a one-time payment and verification that you own the target domain.

The Service is informational and automated. It is not a penetration test, audit, or certification, it does not find every issue, and it may produce false positives or false negatives. The absence of findings is not a guarantee of security. We never claim that a site is “secure.” The Service does not replace professional security review.

2. Authorized use only

You may use the Service only on targets you own or are otherwise lawfully authorized to test. The detailed report is released only for domains whose ownership you have verified. You must not use the Service to access, attack, probe, disrupt, or test any system you are not authorized to test. You are solely responsible for ensuring you have all necessary authorization, and you represent that you do for every target you submit beyond a passive, public scoreboard request.

3. Acceptable use

  • Do not abuse, overload, or attempt to circumvent rate limits or bot protection.
  • Do not perform bulk or automated scanning of third-party targets through the Service.
  • Do not use findings to attack, extort, or harm any person or system.
  • Do not resell, scrape, reverse-engineer, or interfere with the Service.

4. Payment

The full report costs US$100, one-time, per report. Your card is authorized when you pay but is charged only after domain ownership is verified; if verification does not complete, the authorization is released and you are not charged. Payments are processed by Stripe; we do not store your card details. If something goes wrong with a paid report, contact support@hattest.ai and we will make it right.

5. No warranty

The Service is provided “as is” and “as available,” without warranties of any kind, express or implied, including merchantability, fitness for a particular purpose, accuracy, or non-infringement, to the maximum extent permitted by law.

6. Limitation of liability

To the maximum extent permitted by law, HatTest LLC will not be liable for any indirect, incidental, special, consequential, or punitive damages, or for any loss arising from your use of (or inability to use) the Service or from any action you take based on its output. Our total aggregate liability is limited to the amount you paid us for the report giving rise to the claim.

7. Indemnification

You agree to indemnify and hold harmless HatTest LLC from any claim, loss, or liability arising from your use of the Service, including any unauthorized scanning or any breach of these Terms.

8. Your data

Our handling of data is described in our Privacy Policy. Scan evidence and metadata are automatically deleted after 30 days.

9. Changes

We may update these Terms from time to time. Continued use of the Service after a change means you accept the updated Terms.

10. Governing law

These Terms are governed by the laws of the State of California, USA, without regard to its conflict-of-laws principles. You agree to the exclusive jurisdiction of the state and federal courts located in California for any dispute arising from these Terms or the Service.

11. Contact

Questions about these Terms: support@hattest.ai.

Terms · Privacy · support@hattest.ai