# Terms of Service

Last updated and effective: October 10, 2026. Operated by Polygala, Inc.

These Terms of Service (the "Terms") are an agreement between you and **Polygala, Inc.**, a Delaware corporation ("BoxLite", "we", "us"), and govern your use of BoxLite Cloud. By creating an account or using the Service you agree to these Terms and the [Privacy Policy](https://boxlite.ai/legal/privacy), which is incorporated by reference.

If you use the Service on behalf of a company or other organization, you agree to these Terms on its behalf and confirm you have authority to do so; "you" then means that organization.

### 1. The Service

**BoxLite Cloud** (the "Service") is our hosted platform for creating and running isolated virtual machines ("Boxes") through our API at `api.boxlite.ai`, our SDKs, and the console at `app.boxlite.ai`.

These Terms do **not** govern the **BoxLite open-source software**, which you may download and run yourself under its own licenses (the runtime and SDKs under Apache-2.0). Some components we use to operate the Service are licensed under the GNU Affero General Public License v3.0; nothing in these Terms limits any right you have under those licenses, and the source code of those components, including our modifications, is published at https://github.com/boxlite-ai/boxlite.

### 2. Eligibility and accounts

- You must be at least 18 years old. The Service is offered for business and professional use, not for personal, family or household purposes.
- You must provide accurate account information and keep it current.
- You are responsible for all activity under your account and for keeping your credentials and API keys secret. Notify us promptly at support@boxlite.ai if you believe a key has been exposed.
- One account per person or organization unless we agree otherwise. Creating additional accounts to obtain promotional credits is prohibited.

### 3. Fees, credits and payment

**Sign-up credits.** New accounts receive US$100 in promotional credits with no payment card required. We may expire unused promotional credits on 30 days' notice. Promotional credits can only be used on the Service, have no cash value, are not transferable and are never refundable. Changes to or withdrawal of promotional offers affect future awards only.

**Plans and wallet.** We offer pay-as-you-go usage billed from a prepaid wallet, and subscription plans that include a usage allowance each billing cycle. Usage beyond a plan's allowance is drawn from your wallet. Current prices are published at boxlite.ai/#pricing and in the console. Usage is metered by us; our records are rebuttable evidence of usage and we investigate documented billing disputes in good faith.

**Payment.** Payments are processed by Stripe. We do not receive or store your full card number. You authorize us to charge your payment method for subscriptions, for wallet top-ups you initiate, and for any usage not covered by your balance. Subscriptions renew automatically each cycle until cancelled. You can cancel renewal at any time from the console where available or by emailing support@boxlite.ai before the renewal date; cancellation takes effect at the end of the current cycle, stops future subscription charges and does not close your account.

**Refunds.** Subscription fees are non-refundable once a billing cycle has started. Paid wallet top-ups may be refunded on request within 14 days of purchase, to the original payment method, for the unused portion only. After 14 days wallet balances are non-refundable except where required by law. Promotional credits are never refundable. Nothing in this section limits refunds required by law. If we suspend or terminate your account for breach, unused paid wallet funds are refunded less accrued charges and any amounts you owe us; if we discontinue the Service or terminate without your breach, we also refund prepaid subscription fees for the unused part of the cycle. To request a refund, email support@boxlite.ai from your account email with the top-up ID.

**Taxes.** Prices exclude taxes. You are responsible for all applicable taxes other than taxes on our income.

**Price changes.** We may change prices with at least 30 days' notice. Changes do not affect a billing cycle already paid for.

**Non-payment.** If a charge fails or your balance is exhausted, we may stop your Boxes and suspend the Service until payment is made.

### 4. Your content and your workloads

"**Customer Content**" means the code, data, files and other material you upload to, store in or generate with the Service, including the contents of Boxes and volumes.

- You keep all rights in your Customer Content. You grant us only the rights needed to host, run, secure and support the Service for you.
- You are responsible for your Customer Content and your workloads, including for having the rights to use them and for their compliance with law and section 5.
- **Public Boxes.** If you make a Box public, anything it serves can be reached by anyone with its URL. You are responsible for controlling access to what you publish.
- **Persistence and backups.** A Box's disk persists across stop and start; removing a Box permanently destroys its disk. We do not back up Customer Content. Keeping copies of anything you need is your responsibility.
- **Our access.** We do not access the contents of your Boxes except as needed to operate or secure the Service, at your request for support, to investigate a suspected violation of section 5, or as required by law.

### 5. Acceptable use

You may not use the Service, or allow anyone else to use it, to:

- mine or otherwise produce cryptocurrency or proof-of-work tokens, or run workloads designed mainly to consume resources or exhaust promotional credits;
- use the Service primarily to store, host or distribute files, media or backups, or as a CDN, streaming origin or download site; bandwidth and storage are subject to fair use and we may throttle or stop disproportionate traffic;
- operate open proxies, VPN endpoints, Tor relays, botnets or command-and-control infrastructure;
- launch or relay denial-of-service attacks, scan or probe systems you are not authorized to test (including other customers), or attempt unauthorized access to any system or data;
- host or distribute malware, phishing pages, spam infrastructure, content that infringes intellectual-property rights, or content that is unlawful, defamatory or incites violence;
- host or transmit child sexual abuse material — we will disable access, terminate the account without notice, report apparent violations to the National Center for Missing & Exploited Children's CyberTipline as required by law, and preserve the relevant material securely for the legally required period;
- attempt to escape a Box's isolation, access another customer's Box or data, circumvent metering, billing or rate limits, or create multiple accounts to obtain promotional credits;
- resell bare Boxes as your own hosting product without a written agreement with us (building a product on BoxLite is allowed);
- violate export-control, sanctions or data-protection laws, or use the Service where failure could lead to death, injury or severe environmental damage.

**Public Boxes.** Anything a public Box serves is reachable by anyone with the URL; putting authentication in front of it is your responsibility.

**Enforcement.** If we reasonably believe you have violated this section or your use threatens the Service, other customers or third parties, we may, with or without notice, throttle, stop or remove Boxes, make a public Box private, suspend or terminate your account, remove promotional credits, and cooperate with law enforcement. We will try to notify you first where practical, but may act immediately where there is ongoing harm. To report abuse originating from BoxLite, email abuse@boxlite.ai.

**Security research.** Good-faith testing of your own Boxes and accounts is welcome. Report findings to security@boxlite.ai and allow us a reasonable time to fix before disclosure. Testing other customers' Boxes or degrading the Service is never authorized.

### 6. Our property

We and our licensors own the Service, including its software, APIs, design and documentation, except for Customer Content and for open-source components, which remain under their own licenses. We grant you a limited, non-exclusive, non-transferable right to use the Service in accordance with these Terms. If you send us feedback, we may use it without obligation to you.

### 7. Suspension and termination

- You may close your account at any time by emailing support@boxlite.ai from the email address on your account. We will confirm within 5 business days and complete closure within 30 days.
- We may suspend or terminate your access if you breach these Terms, if your use creates a security, legal or operational risk, if your account is unpaid, or if we discontinue the Service. Where practical we will give notice first.
- **After closure.** Your Boxes are stopped on closure. Customer Content remaining in your account is permanently deleted 30 days after closure, subject to legally required preservation and to narrowly limited retention needed for legal claims; information retained for those purposes is used only for them and deleted when no longer needed. Export what you need before closing. Sections 3 (amounts owed), 4, 6, 8, 9, 10, 11, 12 and 15 survive termination.

### 8. Changes to the Service; beta features

The Service evolves and features may change or be removed. Features labelled beta, preview or experimental are provided as-is, may be discontinued at any time, and are excluded from any service commitment.

### 9. Disclaimers

**Unless you have a separate written agreement with us that includes a service level agreement, the Service is provided "as is" and "as available".** To the maximum extent permitted by law, we disclaim all warranties, express or implied, including merchantability, fitness for a particular purpose, title and non-infringement. We do not warrant that the Service will be uninterrupted, secure or error-free, or that Customer Content will not be lost.

### 10. Limitation of liability

To the maximum extent permitted by law:

- neither party is liable for indirect, incidental, special, consequential or punitive damages, or for lost profits, revenue, data or goodwill, however caused;
- our total liability arising out of or relating to the Service or these Terms is limited to the greater of (a) the amounts you actually paid us in the 12 months before the event giving rise to the claim and (b) US$100. Promotional credits do not count as amounts paid.

These limits do not apply to liability that cannot be limited by law.

### 11. Indemnity

You will defend, indemnify and hold us harmless from third-party claims, and the resulting damages, costs and reasonable legal fees, arising from your Customer Content, your workloads, your use of the Service, or your breach of these Terms.

### 12. Governing law and disputes

These Terms are governed by the laws of the State of Delaware, USA, without regard to conflict-of-laws rules. The state and federal courts located in Delaware have exclusive jurisdiction over any dispute arising from these Terms or the Service, and each party consents to that jurisdiction. Either party may seek injunctive relief in any court of competent jurisdiction to protect its intellectual property or confidential information.

### 13. Export and sanctions

You may not use the Service if you are located in, or are a national or resident of, a country or region subject to comprehensive U.S. sanctions, or if you are on a U.S. government restricted-party list. You will comply with all applicable export-control and sanctions laws.

### 14. General

- **Changes to these Terms.** We may update these Terms. For material changes we will give at least 30 days' notice by email or in the console. Continuing to use the Service after the changes take effect means you accept them.
- **Notices.** We may notify you by email to the address on your account or through the console. Notices to us go to support@boxlite.ai.
- **Assignment.** You may not assign these Terms without our consent. We may assign them in connection with a merger, acquisition or sale of assets.
- **Entire agreement; severability; waiver.** These Terms, the Privacy Policy and any order form or data processing addendum you sign with us are the entire agreement. If any provision is unenforceable, the rest remains in effect. A failure to enforce is not a waiver.
- **No third-party beneficiaries.** These Terms create no rights for anyone other than the parties.

### 15. Copyright complaints

We respond to notices under the Digital Millennium Copyright Act (17 U.S.C. §512). Send notices to our designated agent: DMCA Agent, Polygala, Inc., 131 Continental Dr, Suite 305, Newark, DE 19713, USA, dmca@boxlite.ai, telephone +1 408-475-5429. Notices must satisfy 17 U.S.C. §512(c)(3): identify the work and the URL on BoxLite where it appears, give your contact details, state your good-faith belief that the use is unauthorized, state under penalty of perjury that the notice is accurate and that you are authorized to act, and include your signature. On a valid notice we will promptly disable access to the material and notify the customer. The customer may send a counter-notice meeting 17 U.S.C. §512(g)(3) (identification, signature, statement under penalty of perjury, consent to jurisdiction and acceptance of service) to the same agent; we forward compliant counter-notices to the complainant and restore the material within 10–14 business days unless notified that a court action has been filed. We terminate repeat infringers in appropriate circumstances and accommodate standard technical measures.

### 16. Contact

Polygala, Inc.
131 Continental Dr, Suite 305, Newark, DE 19713, USA
support@boxlite.ai · privacy@boxlite.ai · abuse@boxlite.ai

## Pages

- [BoxLite — The managed cloud for AI agents](https://boxlite.ai) — Hosted microVMs for AI agents: compute, networking, a filesystem and a database, on BoxLite's fleet or your own.
- [BoxLite Open Source — the local-first embedded runtime for AI agents](https://boxlite.ai/oss) — Apache 2.0 microVMs as a library. No daemon, no cloud, no root — on your laptop, your cluster, or your customer's machine.
- [About BoxLite](https://boxlite.ai/about) — What BoxLite is, how the open-source runtime and the managed cloud relate, and who builds it.
- [Contact BoxLite](https://boxlite.ai/contact) — Support email, Discord, GitHub issues and sales — every channel that reaches the BoxLite team.
- [Terms of Service](https://boxlite.ai/legal/terms) — The agreement that governs BoxLite Cloud: accounts, credits and payment, acceptable use, refunds, copyright complaints and liability.
- [Privacy Policy](https://boxlite.ai/legal/privacy) — What personal information BoxLite collects, how it is used and shared, where it is stored, and the rights you have over it.

## Machine-readable files

- [/llms.txt](https://boxlite.ai/llms.txt) — Site summary and links, llms.txt format
- [/agent.md](https://boxlite.ai/agent.md) — Full guide for coding agents using BoxLite Cloud
- [/sitemap.xml](https://boxlite.ai/sitemap.xml) — All indexable pages
- [/robots.txt](https://boxlite.ai/robots.txt) — Crawl policy

## Elsewhere

- [Documentation](https://docs.boxlite.ai)
- [Console](https://app.boxlite.ai)
- [GitHub](https://github.com/boxlite-ai/boxlite)
- [Discord](https://go.boxlite.ai/discord)
