Drydock

Terms of Service

Last updated: August 5, 2026

These Terms of Service ("Terms") govern your use of Drydock's website, API, Telegram bot, and GitHub App (together, the "Service"), operated by Anatolii Trubitsyn, a private individual resident in Almaty, Kazakhstan ("Drydock," "we," "us").

There is no company. Drydock is run by one person and no legal entity has been registered for it. Payment therefore goes to a named individual's personal bank account, not to a business account, and the recipient's name is shown to you before you send anything. If that is not acceptable to you, please do not pay — we would rather lose the sale than have you send money somewhere you are not comfortable sending it.

By using the Service, you agree to these Terms. If you do not agree, do not use the Service.


1. What Drydock is

Drydock analyzes source code (from a public GitHub repository or an uploaded zip file) and produces a report of potential security and code-quality findings, generated with the help of AI models. Optional paid add-ons include a higher daily audit limit ("Pro"), a generated pull request that attempts to fix findings from a specific audit ("Fix Pack"), and ongoing re-audits triggered by new commits to a repository ("Continuous Monitoring").

Drydock's output is informational, not a guarantee. Findings may include false positives or false negatives, and a clean report is not a certification that your code is secure. You are responsible for reviewing and validating any finding or generated fix before relying on it or merging it.


2. Accounts and API keys

There is no traditional signup with an email and password. When you pay for a product, we generate an opaque API key and give it to you (via a Telegram message, or shown once in your browser, depending on how you paid). You are solely responsible for keeping your API key safe. Anyone who has it can use your paid entitlements. We do not store your key in a way that lets us tell it back to you if you lose it, though it can be recovered through the payment method you used, when supported (see the Privacy Policy).

You must not share, resell, or attempt to circumvent the rate or usage limits tied to your key.

3. Acceptable use

You agree not to use the Service to:

  • audit or process code you do not have the legal right to submit for analysis;
  • attempt to overload, disrupt, or gain unauthorized access to the Service or its infrastructure;
  • use generated findings, fix suggestions, or pull requests as a substitute for professional security review in a context where the consequences of a missed vulnerability would be severe (e.g. financial infrastructure, medical devices, safety-critical systems) without independent verification;
  • submit malware, or code intended to cause harm, for the purpose of testing or evading detection.

We may suspend or terminate access for anyone who violates these Terms.

4. Payment, pricing, and refunds

  • The Fix Pack price is shown on the pricing page and again at checkout, and may change going forward; a change does not affect an already-completed purchase.
  • Payment is by bank transfer to a payment card, in US dollars. You transfer the amount shown at checkout to the card number and named recipient displayed there. We never receive, see, or store your card number — you send from your own bank, and all we learn is the name your bank puts on the transfer.
  • Confirmation is manual. A person checks that the transfer arrived and then releases your order, so there is a delay between paying and delivery. It is usually well under a day, but it is a human, not a payment processor, and we do not promise an exact time.
  • Every order gets a reference like DRY-XXXXXX, shown to you at checkout. Quote it in your transfer's comment or reference field if your bank offers one — that is how we identify your payment. Not every bank provides that field on a card-to-card transfer, so we also match on the name you entered; if neither is possible, write to support@drydock.co with your reference and the amount and we will find it by hand.
  • Refunds: if we fail to deliver the paid product — for example, a Fix Pack purchase where no pull request is generated — you are entitled to a full refund if you request it within 14 days of the payment. Write to support@drydock.co with the name you paid under and the amount, and we will return the money to the account it came from. Outside of a delivery failure, purchases are otherwise final, consistent with the nature of an on-demand digital service.
  • What we do not sell. Continuous Monitoring and the Pro tier are not currently on sale. Any reference to them elsewhere describes a product you cannot buy today, and no recurring charge of any kind exists: every payment is a one-off and nothing can renew.

5. Your code, our license to use it

You retain all ownership and rights to any code you submit. By submitting code to Drydock, you grant us a limited, non-exclusive license to process that code — including sending relevant fragments to a third-party AI model, as described in our Privacy Policy — solely to generate your audit results and any paid add-on you purchase (e.g. a Fix Pack pull request). We do not use your code to train our own models, and we do not claim ownership of it.

You confirm that you have the right to submit the code you audit (e.g. it's your own, your employer's with permission, or otherwise properly licensed to you), and that doing so does not violate any third party's rights or any law.

6. Third-party services

The Service relies on third parties — including an AI model provider, GitHub, Telegram, and hosting providers — to operate. Your use of those integrations (for example, installing our GitHub App) is also subject to that provider's own terms. We are not responsible for those providers' outages, policy changes, or actions.

7. Disclaimers and limitation of liability

The Service is provided "as is" and "as available," without warranties of any kind, express or implied, including that it will be uninterrupted, error-free, or that any finding, fix, or generated code will be accurate, complete, or secure.

To the maximum extent permitted by law, Drydock's total liability for any claim arising from your use of the Service is limited to the amount you paid us for the specific product giving rise to the claim in the 12 months before the claim arose. We are not liable for indirect, incidental, or consequential damages, including lost profits or data, arising from your use of the Service or reliance on its output.

Nothing in these Terms limits liability that cannot be limited under applicable law.

8. Changes to the Service and these Terms

We may change, suspend, or discontinue any part of the Service at any time. We may update these Terms; continued use of the Service after an update means you accept the revised Terms. Material changes will be highlighted on the site.

9. Governing law and disputes

These Terms are governed by the laws of the Republic of Kazakhstan, where the operator resides, without regard to conflict-of-laws principles. We will make a genuine attempt to resolve any dispute informally before either party resorts to formal proceedings — contact us first at support@drydock.co.

10. Contact

Questions about these Terms: support@drydock.co.