In short
- The service
- A hosted sandbox and review service. Agents prepare work, people decide, and the record can be checked without us.
- No accounts
- Your browser key is how the service knows you. Keep the device safe. We cannot recover a lost key.
- Your work
- What you bring stays yours. Signed records you hold are yours to keep and share.
- Plans
- Prices are in US dollars. Free is $0. Team is $200 per workflow per month after fourteen free days, and it continues until you cancel. Design partner is $500 per month, month to month. Paid plans start with an enquiry, not a checkout. Prices exclude taxes.
- For work
- You must be 18 or over, and the service is for work.
- No training
- ScopeBlind does not train models on your content or on anything else you give it.
- Limits
- The service is early and comes without an uptime promise. Our liability is limited as set out below. Rights you have under Australian consumer law stay in place.
These terms
These terms are an agreement between you and ScopeBlind Pty Ltd (ACN 693 027 440, ABN 41 693 027 440), an Australian company based in Sydney, New South Wales (“ScopeBlind”, “we”, “us”). By using scopeblind.com, the preview site at preview.scopeblind.com or the hosted endpoints behind them (“the service”), you agree to them. If you do not agree, do not use the service.
You must be at least 18 to use the service, and you may use it only for work: for your own business, your employer or your clients.
If you use the service for a company or a client, you confirm that you are allowed to agree to these terms for them.
If you are on a paid plan, the scope and commercial terms we agree with you in writing also apply. Where that written agreement differs from this page, the written agreement applies.
The Privacy page says what the service collects and who else receives it. It is part of how the service works, so please read it too.
What the service is
ScopeBlind is a hosted sandbox and review service. People agree limits, share a review, record exact decisions, and keep a record that can be checked later. Agents can prepare work and read what happened. People decide.
The record formats are open. A file you were sent can be checked in your browser on the Verify page without uploading it, or offline with the open source verifier. Checking a record does not need ScopeBlind’s permission or an account.
The trials use fictional invoices, simulated funds and a disposable demo repository. No bank or outside account is connected, and ScopeBlind does not move money. A real client review is different: it changes a real GitHub branch through a receiver that you install in your own repository and that keeps its own credential.
Plans and payment
- Free. $0, with no account needed. It covers the shared trials, writing and signing a standard in your browser, checking records, and the open gateway for your own deployment. Setting standards and checking records remain free.
- Team. $200 per workflow per month, at founding-team pricing, after fourteen days free. A workflow is one standard in force: one recurring kind of work under one set of requirements. Setup is manual. The fourteen days start on the day the first standard for the agreed workflow is signed, after we confirm your Team setup in writing, and we email you the dates they start and end. We invoice only for the workflows in the scope we agreed in writing, or added later with your written agreement.
- Design partner. $500 per month, month to month, for the first five teams. Custom integration is scoped and priced separately.
Prices are in US dollars and exclude taxes. The Plans page shows the current plans and prices.
Paid plans start with an enquiry, not a checkout. Sending the enquiry form buys nothing: nothing is purchased, connected or run until we have replied and agreed the scope with you in writing. There is no checkout and no card form on this site. We set the first teams up by hand while self-serve billing is built.
Team’s fourteen free days
Nothing is invoiced for the fourteen free days. When they end, Team continues and we invoice your first month, unless you cancel by email before they end. We email you a reminder at least three days before they end. Write to support@scopeblind.com to cancel: a cancellation counts from when you send it, and we confirm it by reply.
Payment
Unless your written agreement says otherwise, paid plans are invoiced monthly in advance, and each invoice is due within 14 days. We invoice in US dollars and you pay by bank transfer. Prices exclude taxes. ScopeBlind is not registered for GST today; once it is, GST is added to invoices for customers in Australia. If an invoice is still unpaid after it is due, we may pause the paid plan until it is paid, and we tell you before we do.
Cancelling
You can cancel Team or Design partner at any time by emailing support@scopeblind.com. Cancelling takes effect at the end of the month already invoiced, and the plan keeps working until then; that invoice stays payable. If you cancel during the fourteen free days, Team ends when they end and nothing is invoiced. We do not refund part months. This does not affect your rights under the Australian Consumer Law, including a refund where that law gives you one.
Price changes
If you start Team at founding-team pricing, we hold that price for twelve months from the day your fourteen free days start. After that, and on any other paid plan, we email you at least 30 days before a new price applies to you. A new price never applies to a period you have already been invoiced for. Your own deployment and your own model usage have their own costs, which you pay to those providers.
No accounts: your browser key
There is no ScopeBlind account or sign-in. When you start or join shared work, your browser creates a signing key and keeps the private half. The service knows you by the public half. The name you type is a guest label, not a verified identity.
- Whoever controls that browser profile can sign as you. Keep the device and the profile secure, and do not share them.
- A signature shows that a key signed. It does not show who was holding the device.
- If you clear site data or lose the device, the key is gone. We cannot recover it and there is no recovery backdoor. For a repository project, the encrypted recovery file you saved, and its passphrase, are yours to keep safe.
- You can add a phone or another device from your original browser, for at most seven days at a time, and you can revoke it.
- Do not use a name that pretends to be someone else.
You are responsible for what is signed with your keys and for the devices, agents and tokens you authorize.
Acceptable use
Use the service for lawful work that you have the right to do. Please do not:
- Break the law, or infringe or misuse anyone else’s rights, code, data or confidential information.
- Bring content you have no right to share. For a client review, make sure you may disclose that repository’s content to ScopeBlind and, where you use model features, to the model provider.
- Paste passwords, GitHub tokens, private keys, payment details or other secrets into the service, a task link or an agent’s prompt.
- Put real personal, financial or sensitive information into the trials. They are built for fictional information.
- Probe, overload or disrupt the service, get around rate limits or trial caps, or try to reach tasks you were not invited to. If you find a security problem, email us instead.
- Impersonate another person or organisation, or present an altered record as the original.
- Use the model features to produce unlawful or harmful content, or in a way the model provider’s own rules forbid.
Automated use through the published agent tools, within the limits people agreed, is expected and welcome. We may limit, suspend or remove access or content where we reasonably believe these rules are being broken, or where we need to protect the service or other people.
Your content and records
You keep ownership of what you bring: briefs, criteria, code, feedback, files and standards. We claim no ownership of it.
You give ScopeBlind permission to host that content, process it, show it to the people you invite and to anyone holding a link you shared, and send it to the companies named on the Privacy page, only as needed to run the service for you.
ScopeBlind does not train models on your content or on anything else you give it.
Signed records you hold are yours to keep and to share. A record that someone else signed stays attributable to their key. You may keep and share a record you took part in, but sharing it discloses the names, public keys and decisions inside it, and you may not alter it and present it as the original.
Other people rely on the records of shared work. For that reason we may keep a record that other participants signed or rely on, even after you stop using the service. The Privacy page explains what we can and cannot delete.
If you send us feedback about the product, we may use it to improve the product without owing you anything for it.
The site, its design and the ScopeBlind name belong to ScopeBlind Pty Ltd. The open source components are licensed separately, as set out below.
The demo repository and fictional data
The trials run on fictional invoices, simulated funds and a disposable repository on GitHub that ScopeBlind owns. The AI coding trial creates a real pull request in that repository. Visitors need no GitHub account, token or installation.
- Use fictional information in the trials.
- Anyone with a trial room’s viewing link can read its records and display names. A coding preview is public to anyone who has its address.
- Trial capacity is limited, and completion is not guaranteed.
- We may reset, limit or remove trial data and the demo repository’s contents at any time.
A trial shows how the service behaves. It does not certify your own deployment.
Agents and connectors
An agent never holds approvals. An agent can prepare review drafts, read assigned reviews, report findings against criteria and request changes. Approvals, acceptance and withdrawals are signed by people on their own devices. An agent has no authority by itself: its limits are proposed by the project’s organizer and agreed by the reviewer, and either person can stop them.
A hosted connector lets a cloud agent reach six of those tools, plus two read-only tools of its own (a short review summary and a record check), at https://scopeblind.com/mcp. The project’s organizer creates its token on the project page, or approves a platform’s sign-in request in the browser that holds the project, in which case the platform collects the token directly. The token is shown once, and ScopeBlind stores only a hash of it. A project can have at most five active connectors. Someone with no project can instead approve a platform to start a trial on ScopeBlind’s demo repository: that connector belongs to no project and can only leave a trial for that person to start, and check on it, until the trial’s project exists and it joins that project. A connector’s token does not expire: it works until it is revoked.
- You are responsible for the agents you connect, for the tokens, pairing codes and profile files you create, and for what your agents send.
- Treat a token like a password. Anyone who holds it can act as that connector within the agreed limits. Keep it in the agent platform’s secret storage, not in prompts or shared commands.
- If a token may have been exposed, revoke the connector. A revoked token stops working immediately.
- A trial link from your agent opens only in the browser where you connected the agent. Never give your agent the invitation meant for your reviewer: anyone who holds it can join the trial as the reviewer.
- Before you approve a sign-in request, check the address the page says the platform will return to. Approve only a platform you started connecting yourself. The approval gives that platform a connector for the project you pick.
- An active permission or a past draft is not evidence that an agent is running now.
- ScopeBlind checks only the actions that pass through its tools. Connecting an agent does not govern that agent’s other tools.
Third-party services
Parts of the service depend on other companies: Cloudflare for hosting, GitHub for repository connections, a model provider (OpenAI, or Anthropic for Write assistance when configured) for model features, Resend for delivering the enquiry and feedback forms to us, Google Workspace for email sent to support@scopeblind.com, the platform that runs your agent, and your browser’s push service for reminders. Your use of each of them is under their own terms and policies, not ours. We do not control them and are not responsible for them. If one of them changes or withdraws something, the features that depend on it may change or stop.
An early service
ScopeBlind is an early service and it changes often. Features may change, pause or be withdrawn. We make no uptime promise and offer no service level agreement on this site. The Status page runs live checks from your browser, and the Changelog lists what shipped.
Do not treat ScopeBlind as the only copy of something you need. Export the signed record. It stays checkable without us.
The Team plan includes email and call support on business days in Sydney, on a best-effort basis, with no guaranteed response time. Anything beyond that is agreed in writing with your team.
Open source components
Some of the software is open source and is licensed to you under its own licence, not under these terms. The gateway, protect-mcp, is MIT licensed. The verifier, @veritasacta/verify, is licensed under Apache-2.0. Nothing in these terms limits the rights those licences give you. The record formats are described in public drafts that anyone may implement. The Docs link to each package.
What we do not promise
- A valid signature establishes that a record was not altered and which key signed it. It does not establish that the inputs were true, that anyone observed the work independently, or that every route was covered.
- The service is not legal, financial, security or compliance advice, and it is not a certification. The compliance mappings on this site are mappings, not certifications. Whether the evidence is enough for your purpose is your decision.
- No plan or engagement promises a favourable result. A signed “not established” is a valid outcome.
- Model output can be wrong. A model proposes work, and people decide whether to approve it.
- You decide whether to rely on a record, and you are responsible for the changes your own receiver applies to your own repository.
To the extent the law allows, we provide the service as it is and as available, without promises that it will be uninterrupted, error free, or fit for a particular purpose.
Limits on liability
Nothing in these terms excludes, restricts or changes a guarantee, right or remedy that you have under the Australian Consumer Law, or any other law, that cannot lawfully be excluded.
Where the law lets us limit our liability for failing to meet such a guarantee, our liability is limited, at our choice, to supplying the service again or paying the cost of having it supplied again.
Subject to those two paragraphs, and to the extent the law allows:
- We are not liable for indirect or consequential loss, or for loss of profit, revenue, business, goodwill or data, however it arises.
- Our total liability to you for everything connected with the service is limited to the greater of the amount you paid ScopeBlind for the service in the twelve months before the event, and $100 in US dollars.
- We are not liable for what third-party services do, or for loss caused by a lost key, an exposed token, or a link or record that you shared.
If someone else brings a claim against ScopeBlind because of content you brought without the right to, or because you broke these terms, you agree to cover our reasonable costs of that claim, to the extent that you caused it.
Ending
You can stop using the service at any time. There is no account to close: revoke what you have authorized, export what you need, and clear the site’s data in your browser. A paid plan ends as set out under Cancelling, or as your written agreement says.
We may suspend or end your access if you break these terms, if the law requires it, or if we stop offering the service or a part of it. Where it is practical, and where you have given us a contact address, we will tell you first.
If we end a paid plan, or withdraw a feature it depends on, for a reason other than your breach, we refund the part of the month you paid for that you can no longer use.
Signed records you exported stay yours and stay checkable without us. The sections on your content and records, what we do not promise, limits on liability and governing law continue to apply after your use ends.
Changes to these terms
We may change these terms as the service changes. When we do, we update this page and the date at the top. If you are on a paid plan, we email the contact you gave us at least 30 days before a significant change applies to you. A change never applies to a period you have already been invoiced for, and never shortens a price hold we have already given you. If you do not accept it, you can cancel before it applies. If you keep using the service after a change, the new terms apply to that use.
Governing law
These terms are governed by the laws of New South Wales, Australia. You and ScopeBlind submit to the non-exclusive jurisdiction of the courts of New South Wales.
If a part of these terms cannot be enforced, the rest still applies. If we do not enforce a term straight away, we can still enforce it later. You may not transfer your rights under these terms without our written agreement. We may transfer ours to a company that takes over the service.