Terms of Service
Last updated: 5 October 2026
The agreement between you and Vigil. It is written to be read: short sentences, no defined-term maze, and no clause designed to be skipped. Where the product does less than you might assume, the clause says so.
1.What the service is
Who you are contracting with. “We”, “us” and “Vigil” in this document mean Evolmet B.V., a private limited company (besloten vennootschap) registered in the Netherlands under Handelsregister (KvK) number 42006185, with its registered office at Saturnusstraat 95, 2516 AG ’s-Gravenhage, Netherlands, VAT number NL869250759B01. Reachable at sam@vigil.wtf. That company is the counterparty to this agreement and the one you would bring a claim against.
Vigil is two things, and the distinction matters throughout this document:
- Vigil — the dashboard at
vigil.wtf. Your account, your telemetry, your settings. - Vigil Proxy — the service at
api.vigil.wtf. It sits in the path of your AI API calls, records metadata about each one, optionally adds cache markers to reduce your provider bill, and forwards the request to the provider you chose.
By creating an account or routing traffic through the proxy, you accept these terms.
We are not an AI provider. We do not generate model output. Your relationship with Anthropic, OpenAI, Google, Mistral or any other provider is yours, governed by their terms and billed by them. Vigil does not change what they charge you; it tries to help you spend less with them.
TODO — not yet finalised
2.Beta: what we do not promise
Vigil is beta software. That is not a disclaimer bolted on for legal comfort; it changes what you should rely on it for. Three things follow, and we would rather state them than have you infer them.
There is no uptime SLA. No availability percentage, no service credits, no committed support response time. We run the proxy carefully and it is designed so that our failure does not become yours (section 5), but we do not commit to a number and you should not plan around one.
No saving is guaranteed. Vigil measures what prompt caching would save on your traffic and can apply it. What you actually save depends on your prompts, your traffic shape, your provider's pricing and your provider's cache behaviour — none of which we control. History trimming can change answers: it starts on a trial share of an agent's conversations, and Vigil sets a trial back to zero automatically when it does worse than the calls it is compared with — the comparison catches a pattern, not every bad answer, and on low traffic it may not have enough calls to judge. Figures in the dashboard are measurements and projections, not commitments, and a projection is labelled as one.
Features may change or be withdrawn while the product is in beta. For a change that reduces what your plan includes, section 14 applies.
3.Your account
You need an account to use Vigil. You are responsible for what happens under it and for keeping your API keys secret. Keys are shown once at creation and we store only a SHA-256 digest — we cannot recover one for you, so if you lose a key, revoke it and mint another.
You must be at least 16, and if you are using Vigil for an organisation you must be authorised to accept these terms on its behalf.
Tell us at sam@vigil.wtf if you believe your account or a key has been compromised.
4.Acceptable use
Do not use Vigil to:
- Break the law, or help anyone else break it.
- Violate the terms of the AI provider you are routing to. Their rules still apply to traffic that passes through us.
- Route traffic you have no right to route, or personal data you have no lawful basis to process.
- Attack, overload, or attempt to gain unauthorised access to our infrastructure — or use Vigil to do that to anyone else.
- Resell Vigil as your own product without a written agreement with us.
- Circumvent plan limits, including by spreading one workload across multiple accounts.
If you breach this section we may suspend or close your account. Where the breach is not serious and can be fixed, we will tell you and give you a reasonable chance to fix it first.
5.The fail-safe guarantee
Hitting a plan limit will never break your traffic. Going over your limits degrades what Vigil does for you. It never blocks, delays, or fails the request you are trying to make.
Over your limit, we stop applying optimisation and may stop recording telemetry. Your call is still forwarded to your provider and their response still comes back to you, unchanged.
The same holds if Vigil itself is failing: if our logging or database is unavailable, the proxy forwards your request anyway and drops the telemetry. Losing our data is always preferable to losing your call.
This is the one thing in this document we will describe as a guarantee — a middleware layer that can take your product down when an invoice lapses is not one you should put in your request path, so we built ours so it cannot.
6.Plans and what is metered
Monitoring is not the metered part. On every plan, including Free, you can see all of your agents — cost, latency, errors, and a measured figure for what caching would save. What a paid plan buys is permission to switch optimisation on, and how much spend it may work against.
| Plan | Price | Optimised agents | Optimised spend | Logged calls | Retention | Overage |
|---|---|---|---|---|---|---|
| Free | Free | 1 | $100/mo | 100,000/mo | 7 days | None |
| Plus | $29/mo excl. VAT | 3 | $300/mo | 500,000/mo | 30 days | $9 / 100k calls |
| Pro | $99/mo excl. VAT | 10 | $1,000/mo | 2,000,000/mo | 90 days | $7 / 100k calls |
| Supreme | $299/mo excl. VAT | Unlimited | $3,000/mo | Unlimited | 365 days | None |
| Enterprise | Custom | Unlimited | Custom | Unlimited | Custom | Negotiated |
The metered unit
“Optimised spend” is the monthly AI spend we actively work on — not how much you log, and not how much you spend in total. Logging calls we never touch costs you nothing extra. A second, separate ceiling limits how many calls we record at all.
Where a plan carries an overage rate, exceeding the logged-call ceiling is billed at that rate rather than cutting you off — consistent with section 5. Where a plan shows no overage, the ceiling simply stops additional logging.
Retention is covered by the Privacy Policy, which describes what currently happens rather than what the table above intends. Read it before relying on a window.
7.Billing, tax and renewal
Payments are processed by Stripe. Card details go to Stripe directly and never reach our servers.
Every price we show is excl. VAT. Prices are in US dollars and exclude VAT and any other sales tax. Tax is calculated by Stripe at checkout based on where you are, and added on top — so the amount charged will be higher than the figure on the pricing page if tax applies to you.
If you are an EU business, enter your VAT number at checkout. Stripe validates it and applies the reverse charge, so you are not charged VAT you would have to reclaim. You can add it later in the billing portal, but that will not retroactively change an invoice already issued.
Auto-renewal
Paid plans renew automatically each month until you cancel. The next renewal date and the amount are shown on your billing page for as long as the subscription is active, and you can cancel there at any time before it.
Renewal notices and receipts are sent by Stripe, where its settings provide for them. We do not send them ourselves and we do not control their timing, so treat your billing page — not an email — as the record of when you will next be charged.
If we change the price, we will tell you at least 30 days beforehand, and the change applies from your next renewal, never the current period. You can cancel before it takes effect.
8.Cancellation
Cancel any time from Settings → Billing. Your plan stays active until the end of the period you have already paid for, and you are not charged again. You can resubscribe later.
Cancelling does not return the payment you have already made. Where we do return it, access still runs to the same date — see section 9.
Cancelling a plan does not delete your account or your data. If you want your data erased as well, use Settings → Delete account. It is immediate and irreversible; the Privacy Policy lists the records that outlive it.
9.Refunds
If Vigil did not do what this page says it does, tell us and we will refund you. We would rather return the money than argue about a beta product.
What a refund does to your access
A refund is a cancellation with the payment returned, and it behaves like one in every other respect. We return what you paid for the current period, your plan stays active until the end of that period, and you are not charged again. On that date access ends and your account moves to Free. We do not cut you off on the day the money goes back: you keep the period you had already paid for, and you keep it for nothing.
Nothing is pro-rated in either direction. We do not bill you for the days you used before the refund, and the refund does not lengthen or shorten the period. Your billing page shows the date access ends and says that the payment has been returned — that page is the record, as it is for renewal.
The money goes back through Stripe, to the card or other method you paid with. How long it then takes to appear is your bank's timing rather than ours, and we cannot speed it up.
Beyond that we do not offer pro-rata refunds for a partly used month. Cancelling gets you the same access on the same dates — section 8 — without the payment coming back. There is one pro-rated refund elsewhere in these terms: if you object to a new sub-processor and we cannot find an alternative, section 6 of the Data Processing Addendum lets you terminate and be refunded the prepaid unused period. That clause governs that situation; this section governs the rest.
How this sits with the 14-day right of withdrawal
If you are a consumer in the EU or UK you have a statutory 14-day right of withdrawal on a distance contract. That is a right the law gives you, not a policy we grant, and nothing in this document removes it, shortens it or replaces it. It runs on its own clock — fourteen days from when you subscribed, unrelated to any billing period or renewal date — and it needs no reason. The policy above sits alongside it and is separate.
The two end differently, and that is the whole of the difference. Withdrawal unwinds the contract, so it ends when you withdraw and your access ends with it. Our refund leaves the contract running to the end of the period you paid for, so your access runs to the same date. Same money back, different last day. Ours is also open to businesses, who have no withdrawal right at all.
Where the law lets us deduct, we do not. On withdrawal from a service you had asked us to start, a trader may keep a proportion for what was supplied before you withdrew. We return the whole amount.
If you withdraw, you get a withdrawal. We do not quietly convert it into a refund under this section — not even though this section would leave you longer access. The contract ends when you withdraw, we return the whole amount, and your access ends with the contract. A statutory right is yours to exercise on its own terms, and improving on it without asking you is not ours to do.
What we will do is tell you the alternative, because it is a real one: this section returns the same money and leaves your access running to the end of the period you have paid for. If you would rather have that, say so and we will apply it instead. If you say nothing, you get the withdrawal you asked for.
Nothing else in this section removes a statutory right you have as a consumer.
10.Your data and your customers’ data
What we store, what we never store, and how long we keep it is set out in the Privacy Policy. The Article 28 terms covering traffic you route through the proxy are in the Data Processing Addendum, which forms part of these terms and applies automatically — you do not need to sign anything.
In short: your prompts and the model's responses are not stored. We record metadata about each call, plus your tool names and a short timestamp excerpt where one is detected, both explained in the Privacy Policy.
You decide what traffic goes through the proxy. If it carries personal data belonging to your own users, you are the controller of it and responsible for having a lawful basis and for telling those people what they are owed.
11.Intellectual property
We own Vigil — the software, the dashboard and the brand. You own your data and your prompts; nothing in these terms transfers any of it to us, and we do not use your prompts, responses or telemetry to train any model.
Your subscription is a licence to use the service, not a sale of any part of it. If you send us feedback we may act on it without owing you anything for it. Scores you post to /v1/feedback are not feedback in this sense: they are part of your call history, handled as the Privacy Policy and the Data Processing Addendum describe.
12.Limitation of liability
Vigil is provided as-is. To the fullest extent the law allows, we exclude implied warranties of merchantability, fitness for a particular purpose and non-infringement.
Our total liability to you is capped at the amount you paid us in the twelve months before the claim. On the Free plan, that amount is zero. We are not liable for indirect or consequential loss, lost profits, lost data, or the cost of your AI provider bill — including a bill higher than you expected because optimisation did not apply, or because a projection in the dashboard did not materialise.
What this does not exclude. Nothing here limits liability for death or personal injury caused by negligence, for fraud or fraudulent misrepresentation, or for anything else that cannot lawfully be limited. If you are a consumer, your statutory rights are unaffected — a cap in a contract does not override them.
13.Termination
You can stop using Vigil at any time — cancel your plan, delete your data, or delete your account.
We may suspend or close your account if you breach section 4, if your payment fails and is not resolved, or if we are legally required to. Except where the breach is serious or we have no choice, we will tell you first and give you a chance to put it right.
If we discontinue Vigil entirely, we will give you at least 30 days' notice, stop charging you, and leave the export in Settings working so you can take your data with you.
14.Changes to these terms
We may update these terms. For a material change that reduces what you get, we will give at least 30 days' notice and the change applies from your next renewal — so you can cancel first. For a clarification or a change in your favour, the updated page takes effect when it is published. The date at the top always reflects the last change to these terms, or to the Data Processing Addendum that forms part of them.
15.Governing law
These terms are governed by the law of the Netherlands, where Evolmet B.V. is established, and the courts of The Hague have jurisdiction over any dispute arising out of them. The UN Convention on Contracts for the International Sale of Goods does not apply.
What that clause does not do to you as a consumer. If you use Vigil outside your trade or profession and live in the EU or UK, a choice of Dutch law cannot take away the mandatory protections of the law where you live, and it does not stop you bringing proceedings in your own courts. Both of those survive this section; the clause above is the default, not a waiver.
If a clause in these terms turns out to be unenforceable, the rest continues to apply.
Questions about any of this: sam@vigil.wtf.
