Legal

Terms of Service

Last updated: March 28, 2025  ·  Effective: March 28, 2025

Plain English summary: NullCVE provides vulnerability intelligence data to help you make better security decisions. The data is for informational purposes only — we are not responsible for security outcomes based on actions you take or don't take. Use the platform responsibly and don't abuse it.

Contents
01Acceptance of Terms

By accessing or using NullCVE at nullcve.io (the "Service"), you agree to be bound by these Terms of Service. If you do not agree to these terms, do not use the Service.

These terms apply to all users of the Service, including users of the free tier, Pro subscribers, and Enterprise customers.

02Description of Service

NullCVE is a vulnerability intelligence platform that aggregates, normalizes, and ranks publicly available security vulnerability data from multiple sources including the National Vulnerability Database (NVD), CISA Known Exploited Vulnerabilities (KEV) catalog, First.org EPSS, GitHub Advisory Database, and others.

The Service provides a composite risk score (NullScore™) that combines multiple data signals to help users prioritize vulnerability remediation. The Service is available in free and paid tiers with different feature sets.

03Data Disclaimer

Important: NullCVE provides vulnerability data for informational purposes only. Nothing on this platform constitutes professional security advice.

All vulnerability data, scores, rankings, and recommendations provided by NullCVE are derived from publicly available third-party sources. We make no representations or warranties regarding the accuracy, completeness, timeliness, or fitness for any particular purpose of this data.

You are solely responsible for all security decisions made based on information from this Service. NullCVE is not liable for any security incidents, data breaches, system compromises, regulatory penalties, or other damages resulting from actions taken or not taken based on vulnerability data provided by this Service.

Always verify critical vulnerability information with official vendor advisories and consult qualified security professionals before taking action on high-severity findings.

04Acceptable Use

You agree to use the Service only for lawful purposes. You must not:

We reserve the right to suspend or terminate access for any user who violates these terms, at our sole discretion and without prior notice.

05Accounts and Access

Some features of the Service require account registration. You are responsible for maintaining the confidentiality of your account credentials and for all activity that occurs under your account.

For Pro and Enterprise subscribers, your subscription is governed by the pricing terms in effect at the time of purchase. We reserve the right to change pricing with reasonable notice. Enterprise agreements supersede these general terms where they conflict.

The free tier is provided as-is with no service level guarantees. We may modify, limit, or discontinue free tier features at any time.

06Intellectual Property

The NullCVE platform, NullScore™ methodology, design, and software are owned by NullCVE and protected by applicable intellectual property laws.

Underlying vulnerability data sourced from NVD, CISA, GitHub, and other public sources remains subject to those sources' respective terms and licenses. We do not claim ownership of that underlying data.

You retain ownership of any data you provide to the Service (such as tech stack configuration). By providing this data, you grant us a limited license to use it solely to provide and improve the Service.

07Limitation of Liability

To the maximum extent permitted by applicable law, NullCVE and its operators shall not be liable for any indirect, incidental, special, consequential, or punitive damages, including but not limited to:

Our total liability to you for any claim arising from use of the Service shall not exceed the amount you paid us in the twelve months preceding the claim, or $100, whichever is greater.

Some jurisdictions do not allow limitation of liability for certain types of damages. In such jurisdictions, our liability is limited to the greatest extent permitted by law.

08Termination

You may stop using the Service at any time. For paid subscriptions, cancellation takes effect at the end of the current billing period — we do not provide prorated refunds for unused subscription time.

We may suspend or terminate your access to the Service at any time for violation of these Terms, non-payment, or any other reason at our sole discretion. We will make reasonable efforts to provide notice where possible.

Upon termination, your right to use the Service ceases immediately. We may delete your account data after a reasonable retention period.

09Changes to Terms

We reserve the right to modify these Terms at any time. We will notify users of material changes by updating the "Last updated" date at the top of this page and, where appropriate, by email notification.

Continued use of the Service after changes are posted constitutes acceptance of the updated Terms. If you do not agree to the updated Terms, you must stop using the Service.

10Contact

If you have questions about these Terms of Service, contact us at:

hello@nullcve.io
NullCVE · nullcve.io

These Terms are governed by the laws of the State of Colorado, United States, without regard to conflict of law principles.