Terms of Service
Last updated 3 October 2026.
1. Who you are contracting with
SafeGrd (the “Service”, at safegrd.dev) is provided by Kush Kumar Sharma, a sole proprietor trading as SafeGrd, of Bengaluru, India - 560048 (“we”, “us”). When you use the Service you are contracting with us.
Our order process is conducted by our online reseller Paddle.com. Paddle.com is the Merchant of Record for all our orders. Paddle provides all customer service inquiries and handles returns.
2. Accepting these terms
By creating an account, or by continuing to use the Service, you agree to these terms. If you use the Service for an organization, you confirm you may bind it, and “you” includes it. If you do not agree, do not use the Service.
3. What the Service does, and what stays yours
SafeGrd backs up PostgreSQL databases, file trees and IMAP mailboxes, encrypts them on your own machine, writes them to storage you own or, if you choose it, to storage we host for you, and records evidence that they can be restored. Two things follow, and you accept them by using the Service:
-
You choose who holds the key. Backups are encrypted with an age key generated on your
machine. You choose, for each organization, one of two modes, and the console and the CLI show which
one you chose:
- SafeGrd-managed key (the default). SafeGrd keeps your key sealed and releases it only to your enrolled hosts, so you can restore even after losing a host. The key is encrypted before we store it, is never released to anyone signed in to the console, to an access token or to SafeGrd’s administrator account, and every release is recorded.
- Customer-managed key. Only you can decrypt these backups. Keep a copy of the key file somewhere safe; SafeGrd holds the public key and nothing else, and keeping the private key is your responsibility.
- You choose the storage. By default backups are written to a bucket in your own cloud account. Its cost, its retention settings and its availability are between you and your storage provider. Where you enable object locking (for example S3 Object Lock in compliance mode), objects cannot be deleted before their retention ends, by you or by anyone else, and you remain liable for the storage they use.
- Or we host it. If you choose SafeGrd-hosted storage, we keep your backups, still encrypted with your key, in a bucket we rent from Backblaze. Each plan comes with included storage there. Section 6 says what happens above it. Each backup is locked until the date set when it was written and cannot be deleted before then by anyone, including us; it is deleted after its lock ends.
Your data, and the content of your backups, remain yours. We claim no rights in them.
4. Your account
Give accurate information, keep your password and access tokens secret, and tell us promptly at support@safegrd.dev if you believe your account has been used without permission. You are responsible for what is done with your account and tokens.
5. Acceptable use
You must not use the Service, or help anyone else use it:
- for anything unlawful, or to store or process data you have no right to hold;
- for fraud, spam, or to impersonate anyone;
- to infringe anyone’s intellectual property or privacy;
- to interfere with its security or operation — including introducing malware, probing, scanning or testing its vulnerability without our written permission, scraping, or circumventing rate limits, quotas or access controls;
- to overload it, or to build a competing service by copying it.
6. Plans, trial, payment and cancellation
Plans and prices are published on our pricing page. A new organization starts with a free 14-day trial; no card is needed. After that, an organization without a paid plan stays on our free plan, which keeps taking backups and tests one by restoring it in memory once a month.
Payments are processed by the Merchant of Record for your order, under its buyer terms: Paddle’s buyer terms, which govern billing, renewals, taxes, payment methods and invoices. Paid plans renew automatically each month or year until cancelled. In particular:
- Upgrades take effect at once; you are shown the prorated amount and confirm it before you are charged.
- Downgrades take effect at the end of the period you have paid for; nothing is charged when you schedule one, and you keep the higher plan until then.
- Cancellation can be done at any time from the billing page. You keep your plan until the end of the period you have paid for, and it does not renew.
- Hosted storage above your plan’s included storage is charged per GB-month at the price on the pricing page. Only paid plans are charged for it.
- Measuring it: we sample what you hold each day and average it over the billing period. The part above your included storage is rounded down to whole GB.
- Charging it: once, at the end of the billing period.
- Locked backups count until their lock ends, including after a downgrade or cancellation.
- On the free plan and during the trial, a backup that would pass your included storage is refused instead.
- After a subscription lapses, backups are accepted up to 10% above the last paid plan’s included storage, and refused past it. Backups already stored stay locked and downloadable.
- If a payment fails, your plan continues while the Merchant of Record retries. A subscription that finally lapses returns to the free plan: every surface already protected keeps being backed up, and no snapshot is touched.
Refunds are covered by our Refund Policy.
7. Our intellectual property
We (and our licensors) own the Service, its software, documentation and the SafeGrd name and branding.
These terms give you a right to use the Service while your account is active; they do not transfer any
ownership. The safegrd command-line tool is source-available and is licensed to you under its
own licence (Business Source License 1.1, with the use grant stated in it), which governs the tool itself.
8. Service level
We work to keep the Service available and correct, and we test that backups restore — that is the product. But the Service is provided “as is” and “as available”: we do not guarantee that it will be uninterrupted, error-free, or that every backup will succeed. Backups run on your own infrastructure and are stored in yours, where things outside our control can fail. Please keep checking the evidence the Service gives you, and run a restore of your own before you depend on one.
9. Liability
To the extent the law allows, we are not liable for indirect or consequential loss, lost profits, or loss of data, and our total liability for anything arising from the Service is limited to the amount you paid for it in the 12 months before the claim. Nothing in these terms limits liability that cannot be limited by law, or any rights you have as a consumer that cannot be waived.
10. Suspension and termination
You can stop using the Service and close your account at any time. We may suspend or end your access, with notice where practical, if you materially breach these terms, if payment is not made, if your use creates a security or fraud risk, or after repeated or serious violations of the acceptable-use rules. Backups in your own storage remain readable with your key whatever happens to your account. Backups in SafeGrd-hosted storage stay downloadable until their locks end while your account exists; we never refuse a download for non-payment.
11. Your data when your account ends
Backups in your own storage stay there, and remain readable with your key and the
safegrd tool whether or not you keep a SafeGrd account: its licence always permits restoring.
Backups in SafeGrd-hosted storage are kept until their locks end, which closing the account cannot
shorten, and are then deleted. You cannot download them once the account is closed, so download any you
want to keep first. When your account is
closed we delete the records we hold about it — account details, organization data and backup
evidence — within 30 days, as described in our Privacy Notice and
Data Processing Agreement. If you want to
keep the backup evidence (the attestation record), export it before you close the account.
The owner can delete an organization from the console. It leaves the Service at once: nobody can sign in to it, and its hosts can no longer report. We keep its records (organization details, projects, members and backup evidence) for 12 months so we can restore it if you ask, then erase them. To have them erased sooner, write to support@safegrd.dev and we erase them within 30 days. Deleting an organization removes no backup from storage.
12. Changes
We may update these terms. We will post the new version here with its date, and tell you by email or in the console before a material change takes effect. Continuing to use the Service after that means you accept the change.
13. Law
These terms are governed by the laws of India, and its courts have jurisdiction, without affecting any mandatory consumer protection you have where you live.
14. Contact
Questions about these terms: support@safegrd.dev, or see the contact page. Questions about an order, a charge or a refund can also go to the Merchant of Record, Paddle, at paddle.net.