codqual
Docs
ES
English Español
Iniciar sesión Comenzar
Terms of Service
Last updated August 2026 — draft, pending legal review (see note at the end)

Agreement

These terms are a contract between you (and the organization you act for) and [OPERATOR LEGAL NAME], [REGISTERED ADDRESS] ("codqual", "we"). You accept them by creating an account, signing in through an identity provider, installing the codqual GitHub App, or purchasing a plan — whichever happens first. If you use codqual on behalf of an organization, you represent that you have authority to bind it. The service is offered to businesses and professional users; if you use it as a consumer, nothing in these terms limits rights that consumer law does not allow to be limited.

The service

codqual is a GitHub App with exactly two features: PR review (a diff-scoped pass/warn/fail check posted on a pull request or a push to a managed branch) and scan (a whole-repository health score and maturity rubric, run on demand or on a weekly schedule). Both only ever run against repositories your GitHub organization has explicitly granted the app access to — installing the app does not enroll anything automatically. The REST API and any connected coding-agent skill are read-only: they return existing findings and record your feedback on them, and cannot trigger a new review or scan.

Accounts and access

You need a GitHub account and org-level permission to install the codqual GitHub App to use the service. Whoever installs the app on an organization is responsible for that organization's use of codqual, including who else on the org gets a seat. You can revoke the app's access from your GitHub organization settings at any time, which stops all future analysis immediately.

Your code, our output

Your code stays yours. You retain all rights in the repositories and code you enroll; we claim none, and we use code content only to provide the service, as described in the Privacy Policy. We do not train our own models on your code and we do not sell it.

The output is yours too. To the extent we hold any rights in the findings, verdicts, scores, and explanations the service generates for you, we assign them to you. Two honest caveats: AI-generated output may not be protectable by copyright, and the service may generate the same or similar output for other customers whose code raises the same issues.

You warrant that you may submit the code. You are responsible for having the rights needed to submit enrolled repositories for analysis — including any third-party code they contain — and you will indemnify us against claims that code you submitted infringed someone else's rights.

If you send us feedback about the product, we may use it to improve the product without obligation to you.

AI processing

Analysis is performed by large language models operated by third-party providers (named, per plan, in the Privacy Policy). On the free plan, analysis runs on free-tier open-source models whose hosts may log prompts and use them to improve their models under their own terms; on paid plans, analysis runs on commercial APIs under commercial terms. By enrolling a repository you authorize this processing for the plan you are on.

Plans, quotas, and add-ons

codqual is priced on named monthly plans (currently: free, squad, team, business, and enterprise by custom contract), each with its own PR-review quota, repo-scan quota, and seat limit — the current numbers are published on the pricing page. Quotas reset monthly and do not carry over. A scan or review that fails for a reason on our side (an internal error, not a problem with your repository) refunds the quota unit it consumed. Add-on review and scan credits can be purchased on any paid plan to go beyond the plan's included quota.

Billing and payment

Plan upgrades and add-on purchases are invoiced through your organization's billing dashboard. Today, payment is by bank transfer: you pay the invoice and upload a proof of payment, and a codqual team member manually reconciles it before the invoice is marked paid and the plan or credits activate. This is manual, not instant — expect a delay between uploading proof of payment and the plan taking effect. There is no automatic card-based subscription or auto-renewal today, so there is nothing to "cancel" in that sense: a plan simply is not renewed if no new invoice is paid before the current one expires, and your organization reverts to the free plan.

All prices are quoted in USD. Downgrades, refunds for unused plan time, and disputed charges are handled case by case — contact hello@codqual.com with your organization name and invoice reference.

No warranty on findings

codqual's reviews and scans are generated by automated analysis, including large language models, and are provided to help you catch issues faster — they are not a guarantee that your code is secure, correct, or free of defects, and they are not a substitute for your own review or professional judgment. A "pass" verdict does not mean no problems exist; a "fail" or a specific finding may itself be a false positive. You are responsible for the code you ship regardless of what codqual reports.

THE SERVICE AND ALL OUTPUT ARE PROVIDED "AS IS" AND "AS AVAILABLE", WITHOUT WARRANTIES OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, NON-INFRINGEMENT, ACCURACY, OR COMPLETENESS. OUTPUT MAY BE INCOMPLETE, INACCURATE, OR UNEXPECTED.

Acceptable use

  • Don't use the service to analyze code you don't have the right to submit for analysis.
  • Don't attempt to circumvent plan quotas, seat limits, or spend limits.
  • Don't use the API or agent-facing endpoints to do anything beyond reading results and recording feedback — they are structurally read-only and attempts to abuse them may result in the key or account being revoked.
  • Don't resell or provide the service to third parties without our agreement.
  • Don't use the service in violation of export-control or sanctions laws that apply to you.

Confidentiality

We treat your repository contents and analysis results as your confidential information: we access them only to provide and secure the service, and we disclose them only to the service providers listed in the Privacy Policy or where the law requires it. Where your organization needs a signed data-processing agreement (for example under GDPR Article 28), contact hello@codqual.com.

Termination

You can stop using codqual at any time by uninstalling the GitHub App. We may suspend or terminate access for non-payment, abuse, or violation of these terms, with notice to the organization's billing contact where practical. On termination, stored results and account data are deleted on request, as described in the Privacy Policy; invoices already due remain payable.

Limitation of liability

To the maximum extent permitted by law: codqual is not liable for indirect, incidental, special, or consequential damages, or lost profits, revenue, or data, arising from your use of the service — including damages resulting from a missed or incorrect finding. Our total liability for all claims in any 12-month period is capped at the greater of the fees your organization paid us in the 12 months before the claim or US$100. Nothing here excludes liability that cannot be excluded by law (such as for willful misconduct or gross negligence).

Governing law

These terms are governed by the laws of [JURISDICTION], and disputes go to the courts of [VENUE] — except that if you are a consumer, you keep the protection of the mandatory rules and courts of your place of residence.

Changes to these terms

We may update these terms as the product changes. Material changes will be reflected here with an updated date and notified to your organization's billing contact; continued use of codqual after a change means you accept the updated terms.

Contact

Questions about these terms, copyright complaints, or legal notices: hello@codqual.com.

Note on this draft

This page describes what the product actually does today (plans, quotas, the bank-transfer/manual-reconciliation payment flow, the read-only API) — it is not legal advice. The bracketed operator name, address, and governing-law placeholders must be filled in, and the whole page reviewed by a lawyer, before treating it as a binding contract.