Terms of Service
The agreement between you and Sarcio for using the Sarcio service and the components you install to connect it to your sites.
Effective September 13, 2026
1. Who we are and this agreement
Sarcio is operated by Dayne Mentier, a sole proprietor doing business as Sarcio in New Jersey, USA (“Sarcio”, “we”, “us”). These Terms of Service (the “Terms”) govern your access to and use of the Sarcio website at sarcio.io, the Sarcio dashboard and API, and related services (together, the “Service”).
By ticking the box that says you agree to these Terms when you create a workspace, or by signing in to or using the Service, you agree to these Terms, including the assumption of risk in section 6. If you use the Service on behalf of a company or other organization, you confirm that you are authorized to bind it, and “you” means that organization (the “Customer”). The Service is for business use only, and you must be at least 18 years old to use it. If you have signed a separate written agreement with us (for example an Enterprise order form), that agreement controls where it conflicts with these Terms.
2. The Service
Sarcio lets your team report a bug on your own website, have an AI model draft a scoped fix, preview it, approve it, and deliver it to your production site as a signed patch, while a pull or merge request carries the permanent fix to your repository. The Service works through components you install on your own infrastructure: a browser widget, bundler plugins and runtimes, server shims, a sidecar, and a WordPress plugin (the “Installed Components”).
3. Accounts and workspaces
- Each Customer uses the Service through a workspace. The person who creates it becomes its first admin; admins invite members and manage sites, integrations, keys, billing and other members.
- You must give accurate account information and keep it current, keep your sign-in credentials, two-factor devices, recovery codes, API tokens and site keys secure, and tell us promptly at security@sarcio.io if you believe any of them has been compromised.
- You are responsible for everything done in your workspace by your members and by anyone using your credentials or tokens, and for removing access for people who should no longer have it.
4. Plans, fees and payment
- There is no free tier. Self-serve workspaces subscribe to one of the plans on our pricing page: Solo ($19 a month), Team ($99 a month) and Scale ($499 a month). Enterprise plans are available by separate contract. Each plan has the limits described on the pricing page (sites, seats, AI drafts and AI credits per month, report retention and others).
- Optional add-ons, where offered, are extra seats, prepaid AI credit packs, and (on Scale) metered AI overage up to a monthly spending limit you set. Credit packs add credits for the calendar month (UTC) in which they are bought; unused included or purchased credits do not carry over.
- Subscriptions renew automatically every month until cancelled. Payments are processed by Stripe, and you authorize us, through Stripe, to charge your payment method for recurring fees, add-ons and metered overage. Fees are in US dollars and exclude taxes, which you are responsible for.
- An upgrade or added seats are charged immediately on a prorated basis, and the change applies only once that charge succeeds. A downgrade or removed seats take effect immediately with a prorated credit against future invoices, and are refused while your usage exceeds the target limits.
- Except where the law requires otherwise, fees already paid are not refundable, including for partial months, unused credits or seats.
- We may change our prices. A price change applies to your subscription from your next billing period that starts at least 30 days after we notify you.
5. Non-payment, cancellation and deletion
- If a charge fails, your workspace becomes past due and we email your admins. If it remains unpaid, we may suspend the workspace (currently after 14 days), which blocks every sign-in, session and API token until payment is made, and we may cancel the subscription (currently after 30 days). Signed patches that are already live keep being served until they expire or are retired; reports are still captured while suspended, but no new fixes are drafted.
- You can cancel from the dashboard at any time. Cancellation takes effect at the end of the current billing period, and you keep access until then. You can withdraw a scheduled cancellation before it takes effect.
- Admins can export the workspace's data as JSON (secrets withheld) from the dashboard while it is active, and should do so before a cancellation takes effect. Once a workspace is cancelled, its members can no longer sign in, and we keep its data for 90 days so it can be restored or exported on request to privacy@sarcio.io. After 90 days it is permanently deleted.
- Admins can also delete a workspace from the dashboard at any time. Deleting it cancels its subscription and permanently removes its data from the Service at once; it cannot be undone.
6. AI-generated code and patches: assumption of risk
Please read this section carefully. It limits Sarcio's responsibility for the code and content the Service generates, and you accept its risks by agreeing to these Terms.
“Generated Output” means every patch, source edit, pull or merge request, commit message, ticket text, triage note and any other code or content the Service generates or proposes, whether written by an AI model or assembled by the Service.
(a) To the maximum extent permitted by law, all Generated Output is provided “as is” and “as available”, without warranty of any kind, express or implied, including any warranty of correctness, completeness, security, merchantability, fitness for a particular purpose, non-infringement, or that it will fix the reported issue or not introduce new ones.
(b) To the maximum extent permitted by law, Sarcio is not responsible or liable for any Generated Output or its effects, including outages, downtime, data loss or corruption, security vulnerabilities, regressions, lost revenue or profits, and third-party claims, arising from patches applied to your systems or code merged into your repositories.
(c) You are solely responsible for reviewing, testing, approving, deploying, monitoring, rolling back and merging every patch and pull or merge request. A patch goes live on your site only when members of your workspace approve it, and you choose its risk rating and whether a second approver is required: the approval gate is a control you operate, and Sarcio enforces the rules you set but does not decide which changes are safe for your product. You are also responsible for your own backups, monitoring and rollback plans, and for installing, configuring and removing the Installed Components.
(d) AI models can produce output that is wrong, insecure or unsuitable even when it looks plausible, and similar requests can produce different results. Model calls consume AI credits whether or not the output turns out to be usable. As between you and us, you own the Generated Output produced for your workspace.
(e) By agreeing to these Terms, including by ticking the box at sign-up, you knowingly and voluntarily assume all risks arising from your use of Generated Output and from every patch you approve and every change you merge.
This section works together with the disclaimers in section 13, the limitation of liability in section 14 and your indemnity in section 15.
7. Your data
- “Customer Data” is the data you and your sites submit to the Service: bug reports and their captured context, screenshots, source files read from your repositories, patches, workspace settings and the like. You keep all rights in Customer Data. You grant us the rights needed to host, process, transmit and display it to provide, secure and support the Service for you, including sending the parts described in our Privacy Policy to our AI and other service providers.
- For personal data about your site's visitors and users contained in Customer Data, you are the controller and Sarcio processes it on your behalf. You are responsible for having a lawful basis for that processing and for giving your users any notices required, including about the bug-report widget on your site. A data processing agreement is available on request for Enterprise customers.
- Do not use the Service to submit payment card data, government identifiers, health data or other special categories of personal data, and take reasonable care that pages where the widget runs do not expose them in reports.
- Our Privacy Policy explains how we handle personal data. Our security practices are described on the security page.
8. Third-party services
The Service can connect to services you choose, such as GitHub, GitLab, Bitbucket, Jira and single sign-on providers. Your use of those services is governed by their own terms, and you are responsible for the credentials and permissions you grant. We are not responsible for third-party services, their availability or changes to their APIs. You can disconnect an integration at any time from the dashboard, and you can revoke our access from the provider as well.
9. Acceptable use
You must not, and must not let anyone else:
- install the Installed Components on, or deliver patches to, a website, application or system you do not own or are not authorized to change;
- use patches or the Service to harm third parties, including injecting malware, phishing or deceptive content, collecting data without authorization, or tampering with payments or security controls;
- use the Service for anything unlawful, infringing, or in breach of another party's rights or terms;
- probe, scan or test the vulnerability of the Service, bypass its security, rate limits, plan limits or workspace isolation, or access another Customer's data, except through a coordinated disclosure we have agreed to (write to security@sarcio.io);
- reverse engineer, decompile or disassemble the hosted Service, except to the extent the law or the license of an Installed Component expressly permits it;
- resell, sublicense or provide the Service to third parties as a service bureau without our written agreement, or use it to build a competing product;
- overload or disrupt the Service, or submit automated floods of reports.
We may suspend access that breaches this section or threatens the security or integrity of the Service, and will tell you when we do unless the law or the risk prevents it.
10. Software licenses
- The hosted Service (the control plane, dashboard, API and AI pipeline) is proprietary to Sarcio. Subject to these Terms and payment of fees, we grant you a limited, non-exclusive, non-transferable right to use it for your internal business purposes during your subscription.
- The Installed Components we distribute (the npm packages, the sidecar, and the PHP and Java shims) are licensed under the Business Source License 1.1, and the WordPress plugin under the GNU General Public License, version 2 or later. Your rights in each component are those of the license distributed with it; these Terms do not limit rights that license grants you.
- Apart from those licenses, Sarcio and its licensors keep all rights in the Service, the Installed Components, and the Sarcio name and marks. If you send us feedback or suggestions, we may use them without obligation to you.
11. Availability and changes to the Service
We work to keep the Service available, but it is provided without a service level agreement unless an Enterprise contract includes one. The Service may be interrupted for maintenance, updates, outages or events beyond our control. We may change, add or remove features; if we remove a material feature of your paid plan, we will give you reasonable notice. The Installed Components are designed so that your site keeps working if the Service is unreachable, but you should not depend on the Service for the core operation of your site.
12. Security reports
Report a suspected vulnerability in the Service or the Installed Components to security@sarcio.io. Please give us a reasonable chance to fix it before disclosing it publicly.
13. Disclaimers
To the maximum extent permitted by law, the Service, the Installed Components and all Generated Output are provided “as is” and “as available”, without warranties of any kind, whether express, implied or statutory, including warranties of merchantability, fitness for a particular purpose, title, non-infringement, accuracy, or that the Service will be uninterrupted, error-free or secure. Section 6 applies in addition to this section.
14. Limitation of liability
To the maximum extent permitted by law: (a) neither Sarcio nor its suppliers will be liable for any indirect, incidental, special, consequential or punitive damages, or for lost profits, revenue, data, goodwill or business opportunity, arising out of or relating to these Terms, the Service or any Generated Output, even if advised of their possibility; (b) Sarcio has no liability for the effects of patches you approved or code you merged, as set out in section 6; and (c) Sarcio's total liability for all claims arising out of or relating to these Terms or the Service will not exceed the fees you paid to Sarcio for the Service in the 12 months before the event giving rise to the claim.
Some jurisdictions do not allow certain disclaimers or limitations, so some of them may not apply to you; in that case they apply to the fullest extent the law allows.
15. Indemnity
To the maximum extent permitted by law, you will defend and indemnify Sarcio against third-party claims, and related losses and costs (including reasonable attorneys' fees), arising from Customer Data, patches you approved, code or pull requests you merged, your sites and systems, or your breach of these Terms or of law.
16. Term and termination
These Terms apply from when you first use the Service until your workspace is cancelled or deleted. We may suspend or terminate your access if you materially breach these Terms and do not cure the breach within 10 days of notice, immediately for a breach of section 9, or as described in section 5 for non-payment. Sections 5 to 7, 10 (other than the right to use the hosted Service), and 13 to 19 survive termination.
17. Governing law and disputes
These Terms are governed by the laws of the State of New Jersey, USA, without regard to its conflict-of-laws rules. The state and federal courts located in Morris County, New Jersey have exclusive jurisdiction over any dispute arising out of or relating to these Terms or the Service, and both parties consent to their jurisdiction. Before filing a claim, each party agrees to try to resolve the dispute informally by contacting the other.
18. Changes to these Terms
We may update these Terms. We will post the new version on this page with a new effective date, and for material changes we will notify workspace admins by email or in the dashboard at least 30 days before they take effect. Continuing to use the Service after that date means you accept the updated Terms; if you do not, you can cancel before it.
19. General
These Terms (with any order form or Enterprise agreement) are the whole agreement between you and Sarcio about the Service. If any provision is unenforceable, the rest remains in effect. A failure to enforce a right is not a waiver. You may not assign these Terms without our consent; we may assign them in connection with a merger, acquisition or sale of the business. Neither party is liable for delays caused by events beyond its reasonable control. We send notices to the email addresses of your workspace admins; send legal notices to us at legal@sarcio.io.
20. Contact
Dayne Mentier, doing business as Sarcio, New Jersey, USA. Legal notices: legal@sarcio.io. Privacy and data requests: privacy@sarcio.io. Security reports: security@sarcio.io. Sales: sales@sarcio.io.