Last updated: February 24, 2026
You must own or have explicit authorization to scan any domain you submit to ShipCheck.
By using our scanning service, you confirm that:
You must own or have explicit authorization to scan any repository you submit to ShipCheck.
By connecting a GitHub account or uploading a repository archive, you confirm that:
Unauthorized repository scanning violates these terms. Abuse rules from the section below apply equally to repository scanning.
ShipCheck uses these testing methods:
All requests use the user-agent: ShipCheck-Scanner/1.0 (+https://shipcheckhq.com/about-scanning; security@shipcheckhq.com)
ShipCheck is not liable for any service disruption caused by our scanning activities. Our scans use reasonable rate limits and timeouts, but you acknowledge that active security testing may trigger alerts or temporarily impact performance.
Unauthorized scanning violates these terms and may violate applicable laws. If you believe your domain has been scanned without permission:
Questions or concerns about these terms? Contact us at legal@shipcheckhq.com