Terms of Service
Last updated: 8 July 2026
These Terms of Service ("Terms") govern your use of the Letovia Security website (letoviasec.com) and any security assessment services provided by Malav Shah, trading as Letovia Security ("we", "our", "us"), based in Gujarat, India.
By submitting a request for services or using this website, you agree to these Terms. Please read them carefully before proceeding.
1. Services Provided
Letovia Security provides website security assessments and email security reviews for businesses and organisations of all sizes. Our services include:
- External website security assessments combining manual testing and automated vulnerability scanning
- Email security reviews covering SPF, DKIM, and DMARC DNS record configuration
- Remediation and hardening services based on assessment findings
- Written confirmation reports once remediation is complete
Our assessments are advisory in nature. We do not provide legal, compliance, insurance, or regulatory advice.
2. Scope of Work
All assessments are conducted on publicly accessible surfaces of your website only (external perspective), unless a separate written agreement specifies otherwise. We do not require, request, or accept admin login credentials, hosting credentials, or internal system access unless explicitly agreed in writing for a specific engagement.
The scope of each engagement is confirmed with you before work commences. Any changes to scope require written agreement from both parties. Larger or more complex engagements, including those requiring internal access, multiple environments, or extended testing windows, are scoped individually and documented in a separate written agreement before work begins.
3. No Guarantee of Complete Security
Security assessments identify known vulnerability classes and issues discoverable during the engagement period. No security assessment, whether manual or automated, can guarantee the identification of every vulnerability or provide complete protection against all threats. Our reports represent a point-in-time snapshot of your website's security posture at the time of testing.
New vulnerabilities are discovered regularly, and a website assessed today may develop new weaknesses over time as software changes and new threats emerge. We recommend periodic reassessments to maintain a stronger security posture.
4. Right to Refuse Service
We may decline or discontinue an engagement at our discretion, including where a request falls outside our expertise or capacity, where we suspect fraudulent or unlawful intent, or where continuing the engagement would be inappropriate for any other reasonable business reason. Where we decline or discontinue an engagement before work has commenced, any payment already received will be refunded in accordance with our Refund Policy.
5. Client Responsibilities
By requesting an assessment, you confirm that:
- You are the owner or an authorised representative of the website being assessed
- You have the legal right to authorise external security testing of the website
- You will use the assessment report only for lawful purposes
- You will not use any findings from our report to harm any system, network, or individual
6. Responsible Use
You agree to use our website, our communications, and any report or guidance we provide responsibly and lawfully. You must not use our services to request testing of any website or system that you do not own or are not authorised to test. Misusing our reports or findings to gain unauthorised access to, or cause harm to, any system, network, or individual is strictly prohibited and may result in termination of the engagement and referral to the relevant authorities.
7. Confidentiality
We treat all assessment findings and client information as strictly confidential. We will not disclose your report, personal details, or website findings to any third party without your explicit written consent, except where required by applicable law.
8. Communications
By requesting an assessment or engaging our services, you agree that we may contact you by email regarding your enquiry, your engagement, and related matters, including report delivery, service updates, appointment reminders, and relevant security advisories. We may also send occasional information about our other cybersecurity services, which you may opt out of at any time. Full detail on how we use and communicate with you is set out in our Privacy Policy.
9. Payment Terms
The initial website security assessment is provided free of charge with no payment required. Paid services (remediation, email security review, complete security bundle) are subject to the following:
- Pricing is confirmed in writing before any engagement commences
- Payment is due before or upon commencement of the paid engagement, as agreed
- We reserve the right to withhold delivery of a final report until payment has been received in full
- All prices are one-time fees. There are no subscriptions, retainers, or recurring charges unless explicitly agreed
10. Refunds
Our refund policy applies to all paid engagements. Please refer to our Refund Policy for full details on eligibility, timelines, and how to request a refund. In summary, refunds may be available if work has not yet commenced. Refunds are not available once a report has been delivered or remediation work has begun, except as otherwise set out in that policy.
11. No Warranty
Our website, reports, and guidance are provided on an "as is" and "as available" basis. Except as expressly stated in these Terms, we make no warranties, express or implied, as to the completeness, accuracy, or fitness for a particular purpose of any assessment, report, or recommendation. You remain responsible for reviewing, evaluating, and implementing any remediation guidance we provide.
12. Limitation of Liability
To the fullest extent permitted by applicable law, Letovia Security shall not be liable for any indirect, incidental, consequential, or punitive damages arising from your use of our reports or services, including but not limited to loss of data, revenue, business opportunity, or reputation.
Our total liability for any claim arising from a paid engagement shall not exceed the amount paid for that specific engagement. For larger or enterprise engagements, an alternative liability arrangement may be negotiated and set out in a separate written agreement specific to that engagement.
13. Force Majeure
We shall not be liable for any delay or failure to perform our obligations where that delay or failure arises from circumstances beyond our reasonable control, including natural disasters, internet or infrastructure outages, acts of government, or similar events. We will notify you as soon as reasonably practicable and resume performance once the circumstances have been resolved.
14. Intellectual Property
Assessment reports are provided for your personal and business use only. You may share your report with your own team or developer. You may not resell, republish, sublicense, or represent our reports as your own work without prior written consent.
15. Changes to These Terms
We may revise these Terms at any time. The "Last updated" date at the top of this page reflects the most recent revision. Continued use of our services or website after a revision constitutes acceptance of the updated Terms.
16. Governing Law
These Terms are governed by the laws of India. Any disputes arising from these Terms or our services shall be subject to the exclusive jurisdiction of the courts located in Gujarat, India.
17. Contact
For questions about these Terms of Service, contact us at info@letoviasec.com. We aim to respond within five business days.