These Terms of Service ("Terms") govern access to and use of ASTIS services ("Services") provided by ASTIS LLC ("ASTIS", "we", "us"). By accessing or using the Services, you agree to these Terms.
Business/Enterprise: If you are a Business/Enterprise customer, the ASTIS Data Processing Addendum (DPA) is incorporated by reference and forms part of the Agreement.
1. Definitions
- Customer / You: the individual or legal entity using the Services.
- Account: your ASTIS account.
- Content: email message content (body/attachments) handled through your email provider (e.g., Gmail/Microsoft 365).
2. What ASTIS Is (and Is Not)
- ASTIS provides a cryptographic access control and client-side encryption layer.
- ASTIS is not an email hosting provider or mail server. Your mailbox storage and email delivery remain with your chosen email provider (e.g., Google Workspace/Gmail, Microsoft 365).
3. Client-Side Encryption & Key Rewrap
- Message content encryption/decryption is performed within the ASTIS client application (web app, PWA, mobile app, desktop plugin, or other client form factor) on the user's device.
- ASTIS servers do not see or store plaintext email content.
- ASTIS may store encrypted session-key capsules ("SKEY Capsules").
- Public OpenPGP keys (WKD): ASTIS operates a Web Key Directory (WKD) service on ASTIS infrastructure for distributing users' public OpenPGP keys. Public keys are, by design, intended to be shared openly and do not contain private key material.
- Private OpenPGP keys (CVS): Private PGP keys are managed via the CryptoVault Service (CVS), which runs on ASTIS infrastructure by default. For Enterprise customers with HYOK (Hold Your Own Key), CVS can be deployed on Customer infrastructure for full key custody control.
- Key Rewrap: When a recipient registers and provides a public key, ASTIS may transiently process a session key (SKEY) in plaintext in memory solely to re-encrypt (rewrap) the SKEY Capsule to that public key. ASTIS does not store plaintext SKEY.
4. Accounts and Security
You are responsible for:
- Safeguarding credentials and devices
- Maintaining accurate account information
- Complying with all applicable laws and internal policies
We may suspend access if we reasonably believe your account is compromised or used for abuse.
5. Acceptable Use
Your use is subject to the Acceptable Use Policy. You agree not to:
- Use the Services for unlawful, harmful, or abusive purposes (malware, phishing, unauthorized access)
- Attempt to break, reverse engineer, or circumvent security measures
- Misuse the Services to facilitate spam or deceptive communications
- Interfere with the integrity or availability of the Services
6. Plans, Billing, and Taxes
- Plans and pricing are described at checkout and/or your Order Form
- Taxes may apply depending on your location
- Payments may be processed by third-party payment providers
7. Intellectual Property
ASTIS retains all rights to the Services, software, and documentation, except for rights expressly granted to you. You retain rights to your own materials and content you provide.
8. Confidentiality
Each party will protect the other party's confidential information and use it only as necessary to perform under these Terms.
9. Disclaimers
THE SERVICES ARE PROVIDED "AS IS" AND "AS AVAILABLE". TO THE MAXIMUM EXTENT PERMITTED BY LAW, ASTIS DISCLAIMS ALL WARRANTIES, EXPRESS OR IMPLIED.
10. Limitation of Liability
TO THE MAXIMUM EXTENT PERMITTED BY LAW, ASTIS WILL NOT BE LIABLE FOR INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, OR PUNITIVE DAMAGES.
ASTIS's total liability arising out of or relating to the Services will not exceed the fees paid by Customer to ASTIS in the 12 months preceding the event giving rise to the claim.
11. Termination
You may stop using the Services at any time. We may suspend or terminate access for material breach, security risk, or abuse.
12. Privacy
Our Privacy Policy is at /privacy.
13. Service Availability
ASTIS will use commercially reasonable efforts to make the Services available. No SLA applies unless expressly agreed in an Order Form or Enterprise agreement. Scheduled maintenance will be communicated with reasonable advance notice where feasible.
14. Cancellation and Refunds
- You may cancel your subscription at any time. Upon cancellation, you retain access to the Services until the end of the current annual billing term.
- Prepaid fees are non-refundable, except where required by law or as expressly agreed in an Order Form.
- If ASTIS terminates the Agreement for convenience (not for cause), ASTIS will provide a prorated refund for the unused portion of the prepaid term.
15. Assignment
You may not assign or transfer these Terms or your rights under them without ASTIS's prior written consent. ASTIS may assign these Terms to an affiliate or in connection with a merger, acquisition, or sale of all or substantially all of its assets, provided the assignee agrees to be bound by these Terms.
16. Export Controls and Sanctions
You agree to comply with all applicable export control laws, sanctions, and regulations (including those of the United States, EU, and any other relevant jurisdiction). You represent that you are not located in, or a national or resident of, any country subject to comprehensive trade sanctions, and that you are not on any restricted party list.
17. Notices
Legal notices to ASTIS must be sent to [email protected]. ASTIS may send notices to the email address associated with your Account. Notices are deemed received when sent to the correct email address.
18. Governing Law
These Terms are governed by the laws of the State of Delaware, excluding conflict of laws rules, unless the Agreement/Order Form states otherwise for Enterprise customers.
19. Changes
We may update these Terms from time to time. Continued use after the effective date of changes constitutes acceptance.
20. Contact
ASTIS LLC
Email: [email protected]