Terms of Service

Last updated: July 30, 2026

These Terms of Service ("Terms") govern your access to and use of the CRWLR firewall audit platform ("Service"), operated by CRWLR Ltd. ("CRWLR", "we", "us"). By accessing or using the Service, you agree to be bound by these Terms.

1. Service Description

CRWLR provides automated firewall configuration analysis, compliance auditing, and security posture reporting. The Service analyzes firewall configurations uploaded by you, produces findings with severity classifications, and provides remediation guidance.

2. Your Account

You are responsible for maintaining the confidentiality of your account credentials and for all activities that occur under your account. You must notify us immediately of any unauthorized use.

3. Your Data

You own your data. You retain all rights, title, and interest in and to all configurations, network data, and other content you upload to the Service ("Customer Content"). We do not claim ownership of your Customer Content.

You grant us a limited license to process your Customer Content solely for the purpose of providing the Service to you. We process configurations in memory and store only normalized, non-sensitive analysis results. See our Privacy Policy for details on data handling.

4. Our Intellectual Property

CRWLR retains all right, title, and interest in and to the Service, including but not limited to:

  • Analysis engine, detection logic, and scoring algorithms
  • Finding descriptions, remediation guidance, and compliance mappings
  • Check catalog, severity classifications, and risk models
  • User interface design, report templates, and visualizations
  • All software, documentation, tools, methodologies, and know-how

The analysis results produced by the Service for your configurations are licensed to you for your internal business use. The underlying methodology, finding text templates, remediation logic, and scoring models remain our intellectual property.

5. Restrictions on Use

You agree that you will not, and will not permit any third party to:

  • Reverse engineer, decompile, or disassemble any part of the Service, including its analysis engine, detection rules, scoring algorithms, or remediation logic
  • Build a competitive product or service based on the Service, or access the Service for competitive analysis, benchmarking, or to copy any ideas, features, functions, or content
  • Resell, redistribute, or sublicense the Service output, findings, or reports to third parties as a standalone product or service, except as part of your professional services to your own clients (e.g., MSP audit reports delivered to your managed clients)
  • Systematically scrape, extract, or harvest finding descriptions, remediation text, check logic, or other Service content through automated means
  • Remove or alter any proprietary notices, watermarks, or attribution from Service output
  • Upload configurations that you do not own or do not have authorization to analyze
  • Use the Service to engage in any activity that violates applicable laws or regulations

6. MSP and Reseller Use

If you are a Managed Service Provider (MSP) or IT consultant, you may use the Service to analyze your clients' firewall configurations and deliver audit reports to those clients as part of your professional services. You may not:

  • White-label or rebrand the Service as your own product
  • Provide your clients with direct access to the Service without a separate CRWLR subscription
  • Use the Service output to build or enhance a competing analysis tool

7. Output and Findings

You own the specific results of analyzing your configurations. However:

  • The analysis methodology, finding templates, and remediation guidance are licensed, not transferred
  • Service output may contain digital watermarks for intellectual property verification purposes
  • We may anonymize and aggregate analysis data across all customers to improve the Service, develop benchmarks, and publish industry statistics. This aggregated data will never identify you, your organization, or your network configuration

8. Service Availability and Disclaimer

The Service is provided "as is" and "as available." We do not guarantee that the Service will detect all security issues in your configurations. The Service is a tool to assist security professionals — it does not replace professional security judgment.

We are not liable for security incidents that occur in your network, whether or not the Service identified relevant findings. Firewall configuration analysis is one component of a comprehensive security program.

Downloadable tools (including configuration sanitizers and upload scripts) are provided "as is," without warranty of any kind. Sanitization is best-effort pattern matching: we do not guarantee complete removal of secrets or sensitive data from any file, and a sanitized configuration still describes your network structure. You are responsible for reviewing any file before sharing it, for treating sanitized configurations as confidential, and for rotating any credentials that have been exposed. Your use of these tools is at your own risk.

9. Limitation of Liability

To the maximum extent permitted by applicable law, CRWLR shall not be liable for any indirect, incidental, special, consequential, or punitive damages, or any loss of profits or revenues, whether incurred directly or indirectly, or any loss of data, use, goodwill, or other intangible losses resulting from your use of the Service.

Our total aggregate liability for all claims related to the Service shall not exceed the amounts you paid to us in the twelve (12) months preceding the claim.

10. Termination

Either party may terminate these Terms at any time. Upon termination, your right to access the Service ceases immediately. We will delete your Customer Content within 30 days of termination, except as required by law or as necessary for legitimate business purposes (e.g., anonymized aggregate data).

11. Governing Law

These Terms shall be governed by and construed in accordance with the laws of the State of Israel, without regard to its conflict of law provisions. Any disputes arising from these Terms shall be subject to the exclusive jurisdiction of the courts in Tel Aviv, Israel.

12. Changes to Terms

We may update these Terms from time to time. We will notify you of material changes via email or a prominent notice in the Service. Your continued use after such notification constitutes acceptance of the updated Terms.

13. Contact

For questions about these Terms, contact us at legal@crwlr.io.

14. Fees, Billing & Cancellation

Paid subscriptions bill in advance on a recurring basis (monthly or annually, depending on the plan you choose). Current prices for all plans are published at crwlr.io/pricing.

You may cancel your subscription at any time; cancellation takes effect at the end of your current billing period, and you retain access until then. Refunds are governed by our Refund & Cancellation Policy, which includes a 14-day money-back guarantee on your first payment.

We may change our prices from time to time. If we do, we will give you notice, and any price change takes effect starting with your next renewal — never retroactively on a payment you have already made.

15. Export Control and Sanctions

CRWLR is security software and is subject to export control and economic sanctions laws, including those of the United States and the European Union. By using the Service you represent that:

  • you are not located in, ordinarily resident in, or organised under the laws of a country or territory subject to comprehensive sanctions (currently Cuba, Iran, North Korea, Syria, and the Crimea, Donetsk and Luhansk regions of Ukraine);
  • you are not a person or entity on a restricted party list, including the U.S. Specially Designated Nationals (SDN) list, the Denied Persons, Entity or Unverified lists, or the EU consolidated sanctions list, and you are not majority-owned or controlled by such a party;
  • you will not export, re-export, or make the Service available to any such country, territory, or party, and will not use it in violation of any applicable export control or sanctions law.

We may suspend or terminate access, without refund beyond any amount required by law, where we reasonably determine that continued provision of the Service would breach these laws. If your circumstances change so that any representation above stops being accurate, stop using the Service and tell us.

16. Data Protection

Where we process personal data on your behalf, our Data Processing Agreement applies and is incorporated into these Terms. It sets out our obligations as a processor under GDPR Article 28, the sub-processors we use, how international transfers are handled, and our breach notification commitment. On data protection matters it prevails over these Terms.

Version History

  • July 30, 2026 — Added Section 15 (Export Control and Sanctions) and Section 16 (Data Protection); published the Data Processing Agreement
  • July 20, 2026 — Added Section 14 (Fees, Billing & Cancellation); linked to new Refund & Cancellation Policy
  • April 1, 2026 — Added explicit terms acceptance at signup; clarified MSP reseller provisions
  • March 29, 2026 — Initial version
CRWLR Firewall Audit — Terms of Service