These Terms of Service ("Agreement") set out the terms on which you may use the Instaship service made available by Ceedar AI Inc. ("Ceedar", "we", "us", or "our") through www.instaship.app. By requesting access to, signing in to, or using Instaship, you agree to this Agreement. If you do not accept it, do not use the service.
1. About Instaship
Instaship is a hosted service for creating and operating isolated integration environments for application branches. It can resolve provider manifests, register environment-specific apps and OAuth clients, configure webhooks, prepare Supabase branches, and optionally sync environment variables to a selected Vercel project. Instaship also provides a Console, scoped API keys, a command-line interface, usage and credit tracking, workflow status, evidence, cleanup, and one-way custody handoff.
Instaship is not a replacement for the services it connects to. Your use of GitHub, Slack, Linear, Supabase, Vercel, Stripe, and any other third-party service remains subject to that provider's terms and policies.
2. Definitions
- Account
- Your authorized Instaship sign-in and associated profile.
- Authorized User
- A person invited to, or otherwise authorized to access, your Instaship workspace.
- Customer Data
- Information, configurations, credentials, repository selections, provider data, environment data, and other content submitted to or created through Instaship for your workspace.
- Environment
- A branch-scoped or otherwise selected integration setup created or reused through Instaship.
- Provider Account
- A customer-authorized or Instaship-managed account or connection used to provision a provider resource.
- Service
- The Instaship website, Console, API, CLI, workflows, and related features made available by Ceedar.
- Workspace
- The shared Instaship account boundary that contains members, apps, provider connections, environments, credentials, usage, and custody state.
3. Accounts and workspaces
Access is currently provided through an approved email address and a secure sign-in link. If you create or administer a workspace for an organization, you represent that you have authority to bind that organization to this Agreement. You must keep account and workspace information accurate and promptly tell us if it changes.
Workspace owners and administrators control membership, provider connections, app configuration, spend limits, API keys, and custody actions. You are responsible for the activity of your Authorized Users and for protecting sign-in links, API keys, and other credentials. Do not share credentials with people who are not authorized for the relevant workspace or provider account. Notify us promptly at legal@atcyrus.comif you believe access has been compromised.
All users must be at least 18 years old.
4. Access and service operation
Subject to this Agreement, Ceedar grants you a limited, non-exclusive, non-transferable, and non-sublicensable right to use the Service for your internal development and integration workflows. We may change, improve, suspend, or discontinue parts of the Service as it evolves. No specific feature or continuous availability is guaranteed.
An Instaship app records a repository and a provider contract. A mint resolves the selected branch, environment type, provider manifests, credentials, and optional Vercel sink. A matching, healthy environment may be reused; cleanup removes resources recorded for that environment. Production environments may have different lifecycle restrictions. Read the Console confirmation before starting cleanup or custody ejection: those actions can affect provider resources and credentials.
Evidence and workflow status are operational records for showing what Instaship attempted and what completed. They are not a guarantee that a provider, application, webhook, environment, or deployment will behave correctly after the workflow finishes.
5. Provider integrations
You authorize Instaship to access and process provider accounts and credentials only as needed to provide the Service and only when you have the right to do so. Current provider workflows include:
- GitHub: a platform connection can make authorized repositories available for app setup, while environment-specific GitHub App registrations are managed separately until a workspace custody handoff. The app manifest controls permissions, callbacks, and events.
- Linear: a workspace administrator can authorize a Linear connection. Instaship can create environment-specific OAuth applications and webhook configuration in the selected workspace.
- Slack: a workspace administrator can connect a Slack workspace. Instaship can create environment-specific Slack apps using the selected manifest, OAuth redirects, scopes, and event subscriptions.
- Supabase: you may provide management credentials and a base project so Instaship can create or select branches, configure authentication, and return environment connection details.
- Vercel: you may opt into a sink that writes environment variables to a selected project and branch target. Instaship removes only the recorded branch-scoped resources during supported cleanup.
You are responsible for maintaining the required provider accounts, permissions, licenses, and billing relationships. Ceedar is not responsible for provider outages, policy changes, account action, third-party charges, or loss caused by a provider except to the extent caused by Ceedar's own negligence or as otherwise required by law.
6. Customer obligations
You must:
- comply with applicable laws and the terms of each provider you connect;
- maintain the permissions and licenses needed for repositories, provider accounts, data, and credentials you submit;
- ensure that your Authorized Users follow this Agreement;
- review manifests, scopes, webhook destinations, environment targets, and credentials before using them; and
- use cleanup, ejection, and exported credentials carefully because they can be consequential or irreversible.
You must not:
- use the Service unlawfully, to infringe another person's rights, or to process data you are not authorized to process;
- reverse engineer, decompile, or attempt to bypass the Service's security controls or workspace boundaries;
- use the Service to create malicious applications, malware, or workflows intended to harm systems or people;
- probe, overload, disable, or interfere with the Service or a provider integration; or
- share, sell, or transfer an Account, API key, provider credential, or custody bundle to an unauthorized person.
We may suspend access for a breach of these obligations.
7. Data, confidentiality, and ownership
You retain your rights in Customer Data. You grant Ceedar a limited license to host, copy, transform, transmit, and otherwise process Customer Data only as reasonably necessary to provide, secure, support, and improve the Service, comply with law, and enforce this Agreement. Ceedar owns or licenses the Service and its underlying software, workflows, designs, and documentation.
Each party will protect the other party's confidential information and use it only for the purposes of this Agreement. Confidential information does not include information that becomes public without breach, was already lawfully known, is received lawfully from another source without restriction, or is independently developed without using the other party's confidential information. These confidentiality obligations continue for three years after disclosure, except where a longer period is required by law or the information remains a trade secret.
Our collection and use of personal information is described in the Privacy Policy. If your Customer Data contains personal information, you are responsible for having the rights and notices needed to provide it to the Service. If you require separate data-processing terms, contact legal@atcyrus.com.
8. Credits and payment
The Service currently uses credits. A new environment consumes one credit; reusing a matching environment and cleaning up an environment do not consume a credit. The Console may provide free monthly credits and one-time credit packs. Current pricing and available packs are shown in the Console and may change.
Credit purchases are processed through Stripe Checkout. Stripe may collect payment, billing address, tax, and payment-method details under its own terms and privacy policy; Instaship receives the transaction information needed to record the purchase and grant credits. Except where required by law or expressly stated in the Service, payments are non-refundable. You are responsible for applicable taxes and for third-party provider charges.
We may suspend credit-funded features or access for unpaid, reversed, fraudulent, or disputed payments. Purchased credits do not expire under the current Service behavior; free grants and other promotional credits may be subject to the terms displayed when they are issued.
9. Disclaimers and liability
TO THE MAXIMUM EXTENT PERMITTED BY LAW, THE SERVICE IS PROVIDED "AS IS" AND "AS AVAILABLE" WITHOUT WARRANTIES OF ANY KIND, EXPRESS OR IMPLIED.
We do not warrant that the Service will meet your requirements, be uninterrupted or error-free, create a particular provider result, preserve a specific feature, or make an environment secure or suitable for production. You are responsible for reviewing the generated configuration, scopes, credentials, provider resources, environment variables, and downstream behavior before relying on them.
To the maximum extent permitted by law, Ceedar will not be liable for indirect, incidental, special, consequential, exemplary, or punitive damages, or for lost profits, revenue, business, opportunities, goodwill, or data, arising from the Service, Customer Data, or a third-party service. Ceedar's total liability for claims arising from the Service will not exceed the fees you paid to Ceedar for the Service in the six months before the event giving rise to the claim, or $100 if you have not paid fees. Nothing in this Agreement limits liability that cannot be limited by law, including liability for fraud, willful misconduct, or death or personal injury caused by negligence.
You will indemnify and hold Ceedar harmless from claims, losses, damages, and expenses arising from your Customer Data, your use of provider accounts, your breach of this Agreement, or your infringement of a third party's rights, except to the extent caused by Ceedar's own negligence or misconduct.
10. Suspension and termination
You may stop using the Service at any time. We may suspend or terminate access if you breach this Agreement, create a security or legal risk, fail to pay an amount due, or where necessary to protect the Service or another customer. Either party may terminate for a material breach that remains uncured 30 days after written notice, or immediately where the other party becomes insolvent or subject to bankruptcy proceedings.
When access ends, you must stop using the Service and its API keys. Workspace custody, provider resources, evidence, usage records, and other Customer Data will be handled as described in the Privacy Policy, subject to legal, security, backup, and dispute-resolution needs. A workspace owner may complete the available one-way custody handoff before termination to receive the credential bundle and end Instaship's management of those provider accounts.
11. General provisions
We may update these Terms from time to time. The current version is available at /terms. We will provide reasonable notice of material changes by email or through the Service where practicable. Continued use after an updated version becomes effective means you accept the updated Terms.
This Agreement is governed by the laws of British Columbia, Canada, and the federal laws of Canada applicable there. Disputes will be resolved through binding arbitration in Victoria, British Columbia, under the rules of the British Columbia International Commercial Arbitration Centre, except that either party may seek injunctive relief in court.
This Agreement is the entire agreement concerning the Service and supersedes prior agreements on that subject. If a provision is unenforceable, the remaining provisions continue. You may not assign this Agreement without our written consent; Ceedar may assign it in connection with a merger, acquisition, or sale of assets. A failure to enforce a provision is not a waiver. Neither party is liable for delay caused by circumstances beyond reasonable control, including natural disasters, war, terrorism, pandemics, or government action.
12. Contact
Ceedar AI Inc.2031 Store StreetVictoria, British Columbia V8T 5L9Canadalegal@atcyrus.comQuestions about these Terms, notices, or a separate data-processing agreement may be sent to the address above.