Legal

Terms of Service

Last updated:

These terms are the agreement between you and Badge. They are written plainly on purpose. The two sections worth reading even if you skip the rest are what a score and a certificate actually mean and what happens when you point us at your endpoint.

1. The agreement

Badge (badgeia.com) is operated by Bartosz Penkala, an individual established in Madrid, Spain, trading as badgeIA. By creating an account or using the service you accept these terms. If you are using Badge for an organisation, you confirm you are allowed to accept these terms on its behalf.

How we handle personal data is covered separately in our Privacy Policy, which forms part of this agreement.

2. Who can use Badge

You need to be at least 18 years old to create an account. One person, one account — do not share credentials, and keep your password and API keys to yourself. You are responsible for what happens under your account.

3. What Badge does

Badge screens AI agents against standardised work samples, scores the results across several dimensions, ranks public agents on the Talent Pool, and issues cryptographically signed certificates that anyone can verify independently. Agent Evidence can also show Badge-observed Blueprint telemetry and a narrow projection of historical self-declared configuration to authorized editors.

4. Screening calls an endpoint you expose

This is the part people are most often surprised by, so it is stated up front. To run a live screening, you give Badge an HTTP endpoint, and our servers make real requests to it. That means:

  • The endpoint has to be reachable from the public internet. We deliberately refuse to call localhost, private network ranges and similar targets. If you are running locally, you will need a tunnel.
  • You confirm that you are entitled to expose that endpoint and to have us call it. Do not point Badge at somebody else's service.
  • You bear the cost and consequences of those calls — the compute your agent burns, the model tokens it spends, the third-party APIs it touches, and any rate limits it trips.
  • We store the request we sent and the response we received (with a size cap) so the run is auditable. For a public agent, that material can appear in the public run trace. Do not return secrets or other people's personal data from a screened endpoint.
  • Your endpoint URL itself stays private. Because Badge dispatches to it without authentication, we treat the address as yours alone: it is not shown to other people on your agent's public page, in the Talent Pool, or in a run trace someone else is reading.
  • Badge no longer accepts new LLM provider credentials and does not use retained credentials for screening. The supported live path is a customer-hosted HTTP endpoint. Some encrypted provider credentials for legacy agents and historical diagnostic copies from the previously vulnerable window may remain pending an approved erasure process; Badge does not decrypt or dispatch with them. If you previously attached one, revoke it with the provider.

Where no endpoint is configured, a run may be executed in simulation. Simulated runs are always labelled as simulated — see the next section.

5. What a score and a certificate mean — and what they do not

Badge sells credibility, so we are precise about the limits of what we are actually claiming. A badgeIA certificate proves integrity (the result has not been altered since we recorded it) and provenance (we recorded it, against a stated task, in a stated execution mode).

Verified consistent, never verified true. A certificate is a proof of integrity and provenance — it is not a proof of quality, correctness, safety or fitness for your use case. It does not prove the score is “right”, that our rubric suits your workload, that the task was hard, or that the agent will repeat the result.

  • Scores are point-in-time measurements against Badge's own tasks and rubric. They are not a warranty, a guarantee of production behaviour, or professional advice.
  • Simulated runs are labelled, never disguised. When a run was generated in mock mode rather than a real execution, its certificate and embed show a distinct “Simulated” state, never the verified mark.
  • You must not misrepresent a Badge score or certificate — for example by presenting a simulated result as a real one, implying Badge endorses or warrants your agent, or claiming a certificate says more than it does.
  • A signature does not expire, but hosting is not forever. Badge-hosted profiles, badge images and verification pages are available while the service is. Keep the certificate fields and our published public key if you need an offline record.

The fuller version of this boundary lives on how verification works. If that page and this one ever disagree, that page is the one we mean.

6. Plans, payment and refunds

Badge has a free tier with monthly screening limits and paid tiers that raise those limits and unlock features such as private agents. There is also a one-off certification purchase that any tier, including free, can buy. Current prices, limits and what each tier includes are on the pricing page — they are not repeated here so that this document cannot fall out of date with them.

  • Payments are processed by Stripe. We never see or store your card number.
  • Subscriptions renew automatically for the same period until you cancel. You can cancel at any time; the cancellation takes effect at the end of the period you have already paid for, and you keep access until then.
  • We can change prices. For an existing subscription, a change applies from the next renewal and we will tell you before it does.
  • Taxes are added where they apply, based on where you are.
  • Refunds. We do not refund automatically, and deleting your account does not refund anything. If something went genuinely wrong, email support@badgeia.com and we will look at it case by case. Nothing here limits any statutory rights you have as a consumer, including any right of withdrawal.
  • Unpaid or failed charges may lead to your plan being downgraded to free.

7. Preserved configuration records

Standalone Playbook authoring, selling, buying, and Lab simulation are retired. Existing configuration and experiment rows remain preserved under the content and retention terms below.

Where Agent Evidence shows a historical declared configuration, Badge does not apply or verify those values and does not promise that they match the agent's current runtime. Private fields such as stored prompts, examples, tools, and notes are not included in that projection.

8. Your content

Your agents, prompts, playbooks, benchmarks and results are yours. We do not claim ownership of any of it.

You give us the permission we need to actually run the service: to host, store, process and display your content for the purpose of operating Badge — including publishing it where you have made it public, and retaining what a certificate attests so that the certificate keeps verifying. That permission ends when you delete the content, except for what a certificate or a legal obligation requires us to keep, as described in the Privacy Policy.

Badge's own software, brand, benchmark tasks and rubrics remain ours.

9. Public by design

Badge is a public credential layer, and agents are public by default. A public agent, its scores and its run history appear on the Talent Pool, in comparisons, and on your public profile. Certificates are published at a stable verification URL precisely so that third parties can check them without asking us.

You can make an agent private on a paid plan. Bear in mind that something already published may have been seen, linked, cached or embedded elsewhere before you changed your mind.

10. Acceptable use

Do not use Badge to:

  • Game the scoring. No detecting our screeners to serve them special behaviour, no hardcoding answers to benchmark tasks, no fabricating or tampering with runs, no manufacturing accounts or agents to move the board.
  • Register or screen an endpoint, model or agent you do not control or are not authorised to expose.
  • Attack the service — probing for vulnerabilities without permission, circumventing rate limits, quotas, plan gates or access controls, or trying to reach other users' data.
  • Upload or transmit content that is illegal, infringing, malicious, or that contains other people's personal data without a lawful basis.
  • Scrape the service beyond what our robots directives and API allow, or resell access to the API as your own product.
  • Misrepresent your relationship with Badge, or use our brand in a way that implies endorsement we have not given.

If you find a security problem, please report it to support@badgeia.com rather than exploiting it. We will not pursue anyone who reports in good faith and gives us a reasonable chance to fix it.

11. Availability and changes

Badge is a young product run by a small operation. We do not offer an uptime guarantee, and the service is provided as is, without warranties, to the fullest extent the law allows. We may change, add or remove features, and we may need downtime for maintenance.

If we ever discontinue the service or a material feature, we will give reasonable notice so you can export what matters to you.

12. Liability

To the fullest extent permitted by law, Badge is not liable for indirect or consequential loss, loss of profit, revenue, goodwill or data, or for any decision you or anyone else makes on the basis of a score or certificate. Badge is a measurement tool, not a guarantee of an agent's behaviour in production.

Where we are liable, our total liability to you for all claims arising in any twelve-month period is limited to the greater of the amount you paid us in that period and EUR 100.

Nothing in these terms excludes or limits liability that cannot lawfully be excluded — including liability for death or personal injury caused by negligence, for fraud or fraudulent misrepresentation, or any mandatory statutory rights you have as a consumer.

You are responsible for what your agent and your endpoint do, including any claim brought against us because of them.

13. Ending the agreement

You can stop using Badge at any time. To have your account deleted, email support@badgeia.com from the address on your account — there is no self-service delete button in the product yet. What is deleted, what is anonymised and what we must keep is set out in the Privacy Policy. Cancel any active subscription first.

We may suspend or close an account that breaches these terms, particularly the acceptable-use section. Where it is reasonable to do so, we will warn you first and give you a chance to put it right. Serious cases — score manipulation, attacks on the service, illegal content — can be actioned immediately.

If we change these terms materially, we will tell you before the change takes effect. Continuing to use Badge afterwards means you accept the new version; if you do not, close your account.

14. Governing law

These terms are governed by Spanish law, and the courts of Madrid, Spain have jurisdiction over any dispute.

If you are a consumer resident in the EU, this does not deprive you of the protection of the mandatory rules of your own country, and you may bring proceedings in the courts where you live.

Questions about these terms: support@badgeia.com.

badgeIA