OX AI PENETRATION TESTING ADDENDUM
Effective Date: July 2026
This AI Penetration Testing Addendum (the “Addendum”) is incorporated into and subject to the OX PLATFORM SUBSCRIPTION AGREEMENT (the “MSA”) between OX Appsec Security Inc/Ltd (“OX”) and the Customer. It sets forth additional terms governing the Customer’s use of OX’s agential AI-driven penetration testing service (“AI Pentest”).
By requesting or initiating an AI Pentest (e.g., via click-through acceptance on OX’s platform), Customer acknowledges and agrees to be bound by this Addendum. Capitalized terms not defined herein have the meanings given in the MSA.
-
AUTHORIZED SCOP OF TESTING
1.1 Permitted Targets. Testing performed under this Addendum using OX’s AI Pentest capability (the “Service”) is limited exclusively to applications, application programming interfaces, and associated endpoints that Customer designates and configures with OX for testing (each, a “Target,” and collectively, the “Permitted Targets”). Each occasion on which OX tests a Permitted Target under this Addendum is an “Assesment”. Assessments are performed only when initiated by Customer (or Customer’s authorized users); OX will not initiate an assessment of any Target on an unattended, continuous, or automatically recurring basis absent Customer’s action. Customer is solely responsible for accurately designating the scope of each Target, including any environment, system, or portion of a system it wishes to exclude from testing, and Customer will not request active exploitation, use of credentials, or other testing techniques against any application, system, network, or endpoint that has not been designated as a Permitted Target.
1.2 Customer Authorization. Customer represents and warrants that it owns, operates, or otherwise has the full legal right and authority to authorize security testing of each Permitted Target. Customer’s designation of a Target constitutes Customer’s express written authorization for OX to perform active penetration testing against that Target, including exploitation attempts using any credentials or access Customer provides, and validation of findings through evidence collection, solely for the purpose of assessing and reporting on the security of that Target. This authorization: (a) is limited to the specific Permitted Targets designated by Customer; (b) remains in effect only for so long as the relevant Target remains designated and active; and (c) may be withdrawn by Customer at any time by removing the Target from scope. Customer acknowledges that Assessments performed under this Addendum involve genuine attack techniques executed against live systems, and Customer is solely responsible for selecting an environment and manner of testing consistent with its own risk tolerance, including by limiting testing to non-production environments where Customer wishes to reduce the risk of impact to systems supporting live customers or data.
-
THIRD-PARTY NOTIFICATIONS
2.1 Where a Permitted Target is hosted, operated, or protected in whole or in part by a third party, including a cloud or hosting provider, network or security services vendor, or any party operating access controls on Customer’s behalf, Customer is solely responsible for: (a) reviewing that third party’s applicable policies and any security-testing notification or consent requirements; (b) obtaining any consents or authorizations required by that third party before permitting testing; and (c) providing that third party with any advance notice, and any information OX makes available for this purpose, reasonably necessary for the third party to distinguish OX’s testing activity from malicious activity and to avoid interrupting the Assessment.
2.2 OX shall have no liability for any suspension, throttling, blocking, or other adverse action taken by a third party in response to testing traffic, nor for any breach of a Customer agreement with a third party, in each case arising from Customer’s failure to provide notifications or obtain consents required under this Section
-
Customer Responsibilities.
3.1 Target Configuration and Access. Customer is solely responsible for accurately configuring each Target, and for ensuring OX is able to reach and test each Permitted Target, including by making any access, allowlisting, or configuration changes OX identifies as reasonably necessary for the Service to operate against a Target protected by a firewall or similar control. OX will rely on the scope information provided by the Customer and will not independently verify ownership or permission. Customer shall not treat, investigate, or report traffic generated by the Service from these addresses as unauthorized access, an intrusion attempt, or a security incident.
3.2 Authority to Test. Customer is responsible for confirming that it has the legal right and authority to authorize testing of each Target it designates, including obtaining any consents or notifications required from third parties under Section 2.1 before initiating an Assessment.
3.3 Environment Selection and Business Continuity. Customer acknowledges that Assessments performed under this Addendum involve genuine, live attack execution against the designated Target, rather than passive review, and that successful exploitation of a vulnerability may affect the availability, performance, or data of that Target. Customer is responsible for selecting an environment for each Assessment that is appropriate to its own risk tolerance (for example, limiting testing to non-production environments where Customer wishes to reduce risk to systems supporting live customers or data) and for maintaining its own backups, monitoring, and business continuity measures for any Target it designates, regardless of environment.
3.4 Credentials and Test Data. Where credentialed testing is configured, Customer is responsible for providing accurate and currently valid credentials and for ensuring that any accounts, data, or environments made available to the Service do not contain real customer or third-party personal data that Customer does not intend to expose to testing.
-
LIABILITY LIMITATION; INDEMNIFICATION
4.1 Customer Indemnification. Customer shall defend, indemnify, and hold harmless OX and its officers, employees, and agents from and against any third-party claims, damages, liabilities, and reasonable expenses (including reasonable attorneys’ fees) arising out of or relating to: (a) Customer’s lack of authority to designate a Target for testing, including testing of any system, application, network, or data that Customer was not authorized to expose to Assessment; or (b) Customer’s failure to obtain any consent, or provide any notification required from a third party under Section 2.
4.2 OX Indemnification. OX shall defend, indemnify, and hold harmless Customer from and against third-party claims alleging that the Service, as provided by OX and used in accordance with this Addendum, or infringement of a third party’s intellectual property rights in the course of performing the Service, provided that such claim does not arise from any act or omission of Customer described in the preceding paragraph. Each party’s indemnification obligations are subject to the indemnified party providing prompt notice of the claim, sole control of the defense (or settlement) by the indemnifying party, and reasonable cooperation by the indemnified party.
4.3 LIMITATION OF LIABILITY.
4.3.1 TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, NEITHER PARTY SHALL BE LIABLE TO THE OTHER PARTY, OR TO ANY THIRD PARTIES, FOR INDIRECT, SPECIAL, INCIDENTAL, OR CONSEQUIENTIAL DAMAGES, INCLUDING WITHOUT LIMITATION LOSS OF BUSINESS, REVENUE, PROFITS, GOODWILL, DATA, OR USE OF SYSTEMS ARISING OUT OF OR RELATING TO THIS ADDENDUM, REGARDLESS OF THE THEORY OF LIABILITY AND EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
4.3.2 CUSTOMER ASSUMES THE INHERENT OPERATIONAL RISKS ASSOCIATED WITH AN ASSESSMENT. OX SHALL NOT BE LIABLE TO CUSTOMER FOR ANY SERVICE DISRUPTION, DOWNTIME, DEGRADED PERFORMANCE, INCREASED RESOURCE USAGE, SECURITY ALERT, OR LOSS, CORRUPTION, MODIFICATION, OR UNAVAILABILITY OF DATA RESULTING RESULTING FROM AUTHORIZED TESTING ACTIVITY CONDUCTED IN ACCORDANCE WITH THE SCOPE DESCRIBED IN THIS ADDENDUM. OX SHALL NOT BE LIABLE FOR ANY SERVICE DISRUPTION, DOWNTIME, DEGRADED PERFORMANCE, OR DATA EFFECTS (INCLUDING DATA LOSS, CORRUPTION, OR MODIFICATION) RESULTING FROM AUTHORIZED TESTING ACTIVITY CONDUCTED IN ACCORDANCE WITH THE SCOPE DESCRIBED IN THIS ADDENDUM.
4.3.3 ANY LIABILITY OF OX THAT IS NOT EXPRESSLY EXCLUDED UNDER THIS ADDENDUM SHALL BE SUBJECT TO THE LIMITATIONS OF LIABILITY SET FORTH IN THE MSA. CUSTOMER’S OBLIGATIONS UNDER THE CUSTOMER INDEMNIFICATION PARAGRAPH, AND LIABILITY ARISING FROM CUSTOMER’S BREACH OF ITS AUTHORIZATION REPRESENTATIONS AND WARRANTIES, SHALL NOT BE SUBJECT TO THE GENERAL LIMITATION OF LIABILITY IN THE MSA.
-
NO WARRANTIES.
EXCEPT AS EXPRESSLY SET FORTH IN THIS ADDENDUM OR THE AGREEMENT, THE SERVICE IS PROVIDED “AS IS” AND “AS AVAILABLE,” AND OX DISCLAIMS ALL OTHER WARRANTIES, WHETHER EXPRESS, IMPLIED, OR STATUTORY, INCLUDING THE IMPLIED WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, AND NON-INFRINGEMENT. OX DOES NOT WARRANT THAT THE AI PENTEST WILL DETECT ALL VULANERBILITIES, OR THAT RUNNING THE TEST WILL NOT RESULT IN ANY SYSTEM DISRUPTION. CUSTOMER IS SOLELY RESPONSIBLE FOR THE CONSEQUENCES OF RUNNING THE TEST AND OF ANY NECESSARY REMEDIATION OR RESTORATION ACTIVITIES THEREAFTER.
-
GENERAL PROVISIONS.
6.1 Order of Precedence. In the event of any conflict or inconsistency between this Addendum and the MSA, this Addendum shall control solely with respect to the AI Pentest Service and any Assessment performed under this Addendum. All other terms and conditions of the MSA shall remain in full force and effect.
6.2 Incoporation. This Addendum is incorporated into, and governed by the terms of, the MSA, including its provisions on confidentiality, proprietary rights, governing law, dispute resolution, and notices, except as expressly modified in this Addendum.
6.3 Term. This Addendum takes effect on the date the Service is first enabled for Customer and continues for so long as Customer maintains an active Target, or until earlier terminated in accordance with the MSA.
6.4 Sevarability. If any provision of this Addendum is held invalid or unenforceable, the remaining provisions remain in full force and effect, and the invalid provision will be modified to the minimum extent necessary to make it enforceable.