Service Terms

Terms of Service

Effective: March 9, 2026 · Operator: AXUM SEC · Support: security@axumsec.com

Service Scope

AXFILE Security provides tenant-isolated encrypted file storage, malware scanning, and sharing capabilities via REST API and gRPC endpoints. The service is provisioned per-tenant with dedicated encryption keys, storage paths, and security policies.

Acceptable Use

Customers may not upload illegal content, malware intended to compromise the platform, or content that violates applicable laws. All uploaded files are subject to automated malware scanning and policy enforcement.

Security Controls

AXUM SEC implements AES-256-GCM encryption, dual-engine malware scanning, IP allowlisting, HMAC request signing, and full audit trails. Customers are responsible for API key security and access management within their tenant.

Operational Changes

The platform may evolve with feature additions, security enhancements, and API versioning. Breaking changes will be communicated with advance notice. Service availability is monitored and reflected on the status page.

Customer Responsibility

Customers are responsible for managing their API keys, tenant access controls, and share link distribution. AXUM SEC provides the security tooling; customers determine their operational policies.

Incident Response

In case of a security incident, AXUM SEC will notify affected tenants and take appropriate containment measures, including temporary suspension of compromised API keys or quarantining of affected files.

Liability

The service is provided as-is. AXUM SEC is not liable for data loss resulting from customer misconfiguration, unauthorized access due to compromised credentials, or force majeure events. Service credits may apply per the subscription agreement.