Terms of Service
Effective date: April 10, 2026. Last updated: May 6, 2026.
1. Acceptance
By accessing or using the Kevros Runtime Enforcement Gateway, API, or website at taskhawktech.com (collectively, the "Service"), you agree to be bound by these Terms of Service ("Terms"). If you are using the Service on behalf of an organization, you represent that you have authority to bind that organization to these Terms. These Terms incorporate by reference our Privacy Policy, which you should read before using the Service.
2. Service Description
Kevros provides a cryptographic runtime enforcement gateway. The Service issues signed release tokens, maintains a hash-chained evidence ledger, and provides policy decision APIs for autonomous AI, software automation, and operational systems. The Service operates on a fail-closed model: verification failures result in denial, not degradation. The Service is designed to support AI risk management aligned with the NIST AI Risk Management Framework (NIST AI RMF) functions of Govern, Map, Measure, and Manage.
3. API Usage
- API keys are issued per account and must not be shared or published.
- Trial-period accounts are limited to 1,000 API calls per month and 10 calls per minute.
- Paid-tier limits are defined by your subscription plan.
- Automated key provisioning is rate-limited. Abuse of the signup endpoint may result in IP-level and device-level blocking.
- You are responsible for all activity under your API key.
4. Acceptable Use
You agree not to use the Service to:
- Facilitate any unlawful activity or violate applicable law or regulation.
- Attempt to circumvent the runtime enforcement mechanism or forge release tokens.
- Reverse-engineer, decompile, or disassemble TaskHawk Systems, LLC proprietary technology, including subject matter covered by pending patent applications and other intellectual property protections.
- Submit false or misleading enforcement attestation requests.
- Use the Service in a manner that degrades service quality for other users.
- Resell or redistribute API access without written authorization from TaskHawk from an authorized corporate signatory official.
- Generate, distribute, or facilitate content that is illegal, harmful, threatening, abusive, harassing, defamatory, or otherwise objectionable.
- Generate or facilitate child sexual abuse material (CSAM) or any content that sexually exploits minors.
- Facilitate violence, terrorism, or hate speech targeting individuals or groups based on protected characteristics.
- Promote or facilitate the development, acquisition, or use of weapons of mass destruction (biological, chemical, nuclear, or radiological).
- Engage in unauthorized collection or processing of personal data in violation of applicable privacy law.
- Use the Service to process payment transactions outside of the authorized payment channels described in these Terms.
The foregoing list is illustrative, not exhaustive. TaskHawk reserves the right to determine in its sole discretion whether use of the Service violates these Terms.
5. Automated System Acceptable Use
The Service is designed to enforce policy for AI agents, software services, workflows, and other automated systems. When deploying automated systems that use the Service:
- You are responsible for the policy configuration governing your systems' permitted actions.
- You must ensure your systems operate within the scope of your configured enforcement policy and do not attempt to circumvent or bypass enforcement decisions.
- Automated systems may not be configured to extract, exfiltrate, or disclose data in violation of applicable law or your organization's data handling policies.
- Automated systems may not be used to impersonate individuals, organizations, or other systems in a manner intended to deceive users or downstream systems.
- Automated systems using the Service may not accept payment card numbers, banking credentials, or full financial account information directly from users through any chat, messaging, or conversational interface. Payments must be directed to the secure payment interfaces described in Section 6.
- The Service's enforcement decisions (ALLOW, CONSTRAIN, DENY) are final for each request. You may not design automated logic that treats a CONSTRAIN or DENY decision as an ALLOW.
6. Payment
All subscription fees and API access charges are collected exclusively through secure, purpose-built payment interfaces. No financial transaction data is collected or transmitted through the Kevros runtime enforcement API, any AI agent, software automation, chatbot, bot, or conversational interface.
- Hosted checkout: Standard subscriptions may be billed monthly or annually through a secure hosted checkout or invoice path. Subscription fees are non-refundable except as required by applicable law. Price changes will be communicated 30 days in advance.
- Cloud marketplace procurement: Subscriptions purchased through a supported cloud marketplace are billed by the applicable marketplace provider through the customer's marketplace account and are governed by the applicable marketplace terms in addition to these Terms.
- Programmatic billing channels: Approved programmatic billing channels may be made available for developer API access only. They are separate from the Kevros enforcement API and are not available through any AI agent, software automation, or conversational interface.
Payments may not be made through the Service for goods or services that violate applicable law, these Terms, or TaskHawk's Privacy Policy.
7. Marketplace Terms
When the Service is deployed through a supported cloud marketplace or private deployment channel, the following additional terms apply:
- Customer cloud deployment: The Service runs within the customer's cloud subscription or account according to the deployment model selected during procurement. Publisher access, if any, is scoped to software updates, incident response, and health monitoring as described in the Privacy Policy.
- Customer responsibility: You are responsible for ensuring the deployment environment meets your organization's security, identity, logging, data-residency, and compliance requirements.
- Marketplace subscriptions are subject to the applicable marketplace's terms in addition to these Terms. In the event of a conflict, the marketplace's terms govern with respect to the subscription and billing relationship; these Terms govern with respect to use of the Service.
8. Intellectual Property
The Kevros protocol, enforcement kernel, and associated software are proprietary to TaskHawk Systems, LLC. Your use of the Service does not grant you ownership of any intellectual property rights in the Service or its components. Governance Attestations (KGAs) issued to you are yours to use and share as verification artifacts.
9. Evidence and Provenance
The Service generates hash-chained provenance records as part of normal operation, consistent with the NIST AI RMF MEASURE function. These records are append-only and tamper-evident by design. You acknowledge that enforcement decisions and their metadata are logged in the evidence ledger as a core function of the Service, not incidental data collection. The integrity of the evidence chain is a prerequisite for using the Service as a compliance artifact.
10. Privacy
Our collection and use of personal information in connection with the Service is described in our Privacy Policy, which is incorporated into these Terms by reference. By using the Service, you agree to our Privacy Policy.
11. Disclaimers
THE SERVICE IS PROVIDED "AS IS" WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, OR NON-INFRINGEMENT. TASKHAWK DOES NOT WARRANT THAT THE SERVICE WILL BE UNINTERRUPTED OR ERROR-FREE.
Kevros is a runtime enforcement tool, not a safety guarantee. The Service operates within the scope of its configured policy and the integrity of its deployment environment. You are responsible for the correctness of your policy configuration and the isolation of your automated runtime. TaskHawk makes no representations regarding compliance with any specific regulatory framework, including but not limited to NIST AI RMF, the EU AI Act, or sector- specific AI regulations. You are responsible for determining whether the Service meets your compliance requirements.
12. Limitation of Liability
TO THE MAXIMUM EXTENT PERMITTED BY LAW, TASKHAWK SYSTEMS SHALL NOT BE LIABLE FOR ANY INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, OR PUNITIVE DAMAGES, OR LOSS OF PROFITS OR REVENUE, WHETHER INCURRED DIRECTLY OR INDIRECTLY, ARISING FROM YOUR USE OF THE SERVICE. OUR TOTAL LIABILITY SHALL NOT EXCEED THE AMOUNT YOU PAID US IN THE 12 MONTHS PRECEDING THE CLAIM.
13. Indemnification
You agree to indemnify and hold harmless TaskHawk Systems, LLC from claims, damages, or expenses arising from your use of the Service, your violation of these Terms, your violation of any third-party rights, or the actions of any automated system you deploy using the Service.
14. Termination
Either party may terminate the Service at any time. We may suspend or terminate your access immediately if you violate these Terms or if continued access poses a security risk. Upon termination, your API keys are revoked and access to the enforcement endpoint ceases. Provenance records generated during your subscription remain in the evidence ledger as required by the append-only integrity model.
15. Export Compliance
The Service includes cryptographic functionality subject to U.S. export control laws and regulations, including the Export Administration Regulations (EAR). You agree not to export, re-export, or transfer the Service or any technical data received from the Service in violation of applicable U.S. laws. You represent that you are not located in a country subject to a U.S. government embargo or designated as a terrorist-supporting country, and that you are not listed on any U.S. government list of prohibited or restricted parties.
16. Governing Law
These Terms are governed by the laws of the Commonwealth of Virginia, United States, without regard to conflict of law principles. Any disputes shall be resolved in the state or federal courts located in Charlottesville, Virginia.
17. Changes
We may update these Terms from time to time. Material changes will be communicated via email or a notice on our website at least 30 days before taking effect. Continued use of the Service after changes constitutes acceptance.
18. Contact
TaskHawk Systems, LLC
Charlottesville, VA
legal@taskhawktech.com