ClearSite Security ← Back to home

Last updated: July 21, 2026

Terms of Service

Please read these Terms before using ClearSite Security. By sending us a website to scan or by purchasing a report, you agree to what’s below.

1. Who we are

ClearSite Security is a service operated by Lux Global Consulting LLC (“ClearSite,” “we,” “us”). You can reach us at hello@clearsitesecurity.com or by mail at PO Box 27251, Oakland, CA 94602, USA.

2. What the service is

We run a low-impact, read-only, external, non-destructive security and privacy scan of the publicly accessible website you submit. Working only from what your site already shows the public internet, we look at things like:

  • Security response headers
  • SSL/TLS configuration
  • SPF/DMARC email-spoofing posture
  • Whether your contact form appears to have anti-bot protection (checked by reading the page’s public HTML only — we never fill in or submit your form)
  • Privacy and tracker exposure

To run these checks we make ordinary public requests — the same kind a normal browser or internet service makes — and we don’t send exploit payloads, submit forms, log in, or intentionally create load.

You get a free teaser summary (a brief overview designed to take about two minutes to read). If you want the details, the full report is a one-time USD $297.

3. What the service is NOT

This is an observation from the outside, not an attack and not a penetration test. We do not:

  • Exploit, brute-force, or attempt to break into anything
  • Run load, stress, or denial-of-service tests
  • Log into or test anything behind a password, or test internal systems
  • Submit forms, upload files, create accounts, or send test payloads to application APIs or other state-changing endpoints
  • Send SQL injection, XSS, or any other payloads
  • Access or review non-public source-code repositories, server-side application code, private configuration files, or internal systems
  • Perform social engineering

We may inspect the HTML, CSS, JavaScript, headers, DNS records, certificates, and other information your website already delivers to the public. We look at what’s publicly visible and report what we see. Nothing we do is designed to change, damage, slow down, or take your site offline.

4. Authorization — important

You may only submit a domain that you own or are clearly authorized to have tested. When you send us a URL, you represent that you have that right.

Do not ask us to scan someone else’s website — a competitor, a third party, or any site you don’t control. If we believe a request isn’t authorized, we may decline it and cancel the order.

You will indemnify and reimburse us for reasonable third-party claims, losses, and expenses to the extent directly caused by your knowing submission of a domain that you neither own nor are authorized to have reviewed. This does not apply to losses caused by our fraud, willful misconduct, or violation of law.

If we decline or cancel an order under this section, we refund anything you’ve paid for that report.

5. How it works

Scanning is email-based and human-reviewed. You send your website address to hello@clearsitesecurity.com, and a person handles it. There is no automatic button that scans arbitrary domains on demand.

6. Point-in-time snapshot — no guarantees

A report reflects what we observed at one moment in time. Websites change, and new issues can appear the day after we look. A clean or improved result does not mean your site is secure, compliant, or safe from attack, and we don’t promise any particular outcome. We report findings; we don’t guarantee security.

The review is limited to the checks described in the report and may not identify every security, privacy, configuration, or compliance issue. Findings may include false positives, and the absence of a finding does not mean that an issue or control is absent. For example, we can report only anti-bot measures visible from the public page; server-side or otherwise non-public protections may not be observable.

This is not legal advice and not a certification.

7. Your responsibility to act

Fixing anything we find is up to you (and your developer or host). We point out what we noticed; we don’t make changes to your site, and we’re not responsible for whether or how issues get remediated.

8. Confidentiality

We treat non-public findings and reports as confidential. We don’t publish them or disclose them except to personnel and service providers who need the information to deliver or operate the service, with your permission, to protect legal rights or security, or as required by law. You may share your report with your employees, attorneys, insurers, developers, hosting providers, and other advisers working on your behalf.

How we handle personal information is described in our Privacy Notice.

9. Payment, refunds, and cancellation

The full report is a one-time $297 charge.

Work begins when we send written confirmation that we have accepted the order. You may cancel for a full refund before that confirmation. After work begins, fees are non-refundable except where required by law or if we fail to deliver the purchased report.

If you’re unhappy with your report, email us — we’d rather sort it out than leave you stuck.

10. “As is” and limitation of liability

The service and reports are provided “as is,” without warranties of any kind, express or implied.

To the fullest extent allowed by law, our total liability to you for anything related to the service is limited to the amount you actually paid us (for the free teaser, that’s $0). We’re not liable for indirect, incidental, or consequential damages — for example, lost business, a breach, or downtime — even if you told us it was possible.

Nothing in these Terms excludes or limits liability that cannot legally be excluded or limited, including liability for fraud or willful misconduct.

11. Governing law

These Terms are governed by the laws of the State of California, USA, without regard to conflict-of-law rules. Any dispute will be handled in the state or federal courts located in Alameda County, California.

12. Changes to these Terms

We may update these Terms from time to time. The current version lives on our website, with the “Last updated” date at the top. The Terms in effect when you request and accept a paid report govern that order; later changes apply only to future orders unless we both agree otherwise in writing.

13. General

If any part of these Terms is held unenforceable, the rest stays in effect. These Terms and the order confirmation for the applicable report are the entire agreement concerning the service. Our Privacy Notice separately describes how we handle personal information.

14. Contact

Questions? Email hello@clearsitesecurity.com or write to Lux Global Consulting LLC, PO Box 27251, Oakland, CA 94602, USA.

ClearSite Security
Lux Global Consulting LLC · hello@clearsitesecurity.com
Home · Terms · Privacy
© 2026 ClearSite Security. External, non-destructive website security checks.