Skip to Main Content

Terms of Use

Website Terms Without the Fog Machine.

Effective September 15, 2026. These terms cover the website and general portal use for SBG Software Services, a trade name of SBG Compliance Services, LLC. Signed project documents remain the authority for an actual client engagement.

Website Terms

These Terms of Use govern use of the public SBG Software Services website and general account/portal access. SBG Software Services is a trade name of SBG Compliance Services, LLC. SBG Compliance Services, LLC is the legal entity providing the services described on this site under that trade name. SBG provides professional software-development, software-audit, repair/rescue, verification, eligible post-completion Maintenance, and related source-handoff services. These website terms do not replace a signed Services Agreement, Statement of Work, accepted Change Order, Maintenance agreement, or incorporated project policy. If you become a client, those accepted project documents govern the engagement and control project-specific conflicts according to their stated order of precedence.

Informational Content and Pricing

Public pages describe current service offerings, intended workflows, pricing boundaries, and general practices. Published fixed prices are SBG service fees and apply only when a request fits the stated package boundaries. If SBG is legally required to collect a sales, use, or similar transaction tax, that amount will be identified before the applicable payment rather than silently changing the service fee. Estimated schedules are planning targets, not guarantees; the project-specific proposal/SOW states the actual start trigger. Annual Maintenance is $299 per eligible completed SBG project for a defined annual term, does not auto-renew or create an automatic future charge, and is additional to the applicable 30-day post-completion defect-reporting window. Where SBG offers an eligible online Maintenance payment through the Client Portal, the payment is completed through Stripe-hosted Checkout. Payment verification remains separate from baseline acceptance and coverage activation. SBG's current online Maintenance Checkout does not calculate or collect transaction tax. If tax collection is required for a Maintenance transaction, that online payment path remains unavailable and SBG will use an appropriate compliant payment method instead. SBG does not offer a separate paid Source Vault retention service.

Business and Personal Project Use

SBG supports business, professional, organizational, and adult personal/family/household software projects when they fit the service boundary. Personal use is not a disqualifier. SBG resolves the primary-use classification before proposal/legal acceptance where required so the correct signing identity, disclosures, and non-waivable consumer protections can apply. SBG does not accept an account or ordinary intake submitted on behalf of a child.

Consumer Payments and Delivery

For an accepted personal, family, or household engagement, SBG does not treat the ordinary business contract as a way around applicable consumer rules. Where Ohio consumer-deposit rules apply, SBG provides the required dated payment/deposit receipt with the transaction information required by law. Where Ohio's consumer delivery rule applies and the covered services will not be delivered before its eight-week boundary, SBG must use a legally permitted path before that point, such as delivery, a full refund, an extended-delay notice with the required refund offer, or an agreed substitute where permitted. The signed Services Agreement contains the project-level terms and preserves non-waivable consumer rights.

Electronic Records

Electronic signatures and records are used through authenticated SBG workflows. Before a legal signature, the Client receives an Electronic Records Disclosure covering the scope of electronic consent, paper-copy availability, how to withdraw future electronic-record consent, contact updates, and the basic hardware/software needed to view and retain SBG records. Accepted documents remain downloadable/retainable; SBG does not intentionally inhibit printing or saving a legally required electronic record. Withdrawing electronic-record consent does not invalidate records already delivered or obligations already accepted.

No Automatic Engagement

Submitting an intake, creating an account, contacting SBG, or receiving general information does not by itself create a paid service engagement or require SBG to accept a project. An engagement begins only through the applicable proposal, agreement, authorization, and payment process. Intake answers about source availability, sensitive data, or regulated data are screening information only and do not authorize transmission of source archives or underlying records.

Accounts and Portal Access

You are responsible for using an account you are authorized to control and for protecting your authentication method. Do not attempt to access another client's project, Admin functions, or records you are not authorized to use. SBG may restrict or terminate access when reasonably necessary to protect security, integrity, legal rights, or the service.

Authorization and Acceptable Use

Do not use the website, intake, portals, transfer tools, or services to obtain unauthorized access, distribute malicious software, commit fraud, infringe intellectual-property rights, interfere with service operation, evade access controls, or pursue unlawful activity. A client requesting an audit, rescue, repair, test, or modification must have authority over the systems, accounts, code, data, and materials placed in scope. Authorization is limited to the identified engagement; it does not extend to unrelated systems, users, tenants, data, or third-party resources. SBG may decline activity whose authorization or legality is unclear.

Intellectual Property

The website, SBG branding, original public copy, service methodology, reusable tools, and SBG Standard materials remain SBG property except for third-party materials and rights belonging to others. Custom project deliverables, client materials, SBG background materials, open-source components, third-party technology, and any AI-assisted elements are treated separately in the accepted project agreement. SBG cannot transfer rights it does not own, and third-party or open-source license terms continue to apply to those materials.

Third-Party Services and Payments

Links, integrations, hosting providers, repositories, development platforms, storage providers, email systems, AI services, payment providers, libraries, and other third-party systems are governed by their own terms and availability. SBG does not control every third-party outage, policy change, dependency change, or future compatibility condition. The SBG portal does not collect or store full payment-card numbers. Where SBG offers an eligible online card payment, the Client is directed to Stripe-hosted Checkout and Stripe handles the payment method information. A browser return or success screen is not proof of payment; SBG relies on signed/server-side provider evidence and reconciliation before treating a Stripe payment as verified. Approved external payment methods may still be recorded administratively with limited transaction metadata. SBG does not use these payment flows to create automatic renewals, automatic future charges, or automatic refunds.

Audits, Verification, and No Outcome Guarantee

An SBG audit or verification is a scoped, point-in-time evaluation based on the systems, access, evidence, environments, and test methods available during the engagement. Unless expressly scoped otherwise, it is not a penetration test, regulatory certification, legal opinion, guarantee that no defect or vulnerability exists, or promise of future compatibility. Verification of SBG's own Rescue work is post-repair verification, not an organizationally independent third-party audit. SBG also does not promise revenue, rankings, customer acquisition, investment, or another business outcome. Audit defect support applies to SBG's Audit/report deliverable; it does not include repair of defects in the audited application. Project-specific verification and post-completion defect-reporting obligations are governed by the accepted engagement documents.

Source-Transfer Standard

A client source ZIP is not authorized merely because an intake was submitted, an account or project exists, or SBG knows that source is available. If an authorized Audit, Rescue, or eligible Maintenance workflow genuinely requires a source archive, SBG opens an authenticated project-specific Secure Source Upload only after the applicable agreement, supplemental-data, and payment gates are cleared. Source ZIPs are accepted only through that SBG portal workflow. Ordinary email attachments and third-party file-sharing links are not approved source-archive submission methods. Repository, platform, test, or staging access is handled separately through an approved least-privilege access workflow when appropriate. SBG may decline to receive or use source sent outside the approved process, may direct the sender to the authorized workflow, and may be unable to perform work that genuinely requires source if the client will not use the approved transfer method. Unexpected receipt of source outside the approved workflow does not expand scope, establish permission to use the material, or create a different accepted custody process.

Privacy, Regulated Data, and Security

Use of the website and portals is also subject to the posted Privacy Policy. No electronic system is absolutely secure. Do not place passwords, MFA or recovery codes, private keys, full payment-card data, Social Security numbers, actual health records, government-ID images, children's records, secret API keys, or source archives into ordinary intake or contact fields. A project requiring SBG to handle regulated or unusually sensitive information may require additional written terms, provider review, a data-processing addendum, Business Associate Agreement, or other controls before SBG accepts access. Nothing on this site represents that SBG or a client application is HIPAA, PCI DSS, SOC, ISO, FedRAMP, or otherwise certified unless a specific certification is expressly stated in writing.

Changes and Availability

SBG may update public content, these website terms, navigation, or available services as the business and application evolve. Material changes to an already accepted client engagement are handled under that engagement's accepted documents rather than by silently changing a public webpage. Planned services, features, integrations, and product directions are not commitments until SBG expressly offers them under final terms.

Governing Law

These website terms are governed by the laws of the State of Ohio, without regard to conflict-of-law principles, except where applicable law requires otherwise.

Contact and Legal Notices

Formal legal notices and questions about these Terms of Use may be sent to legal@sbgcompliance.com. General business and support questions may be sent to info@sbgcompliance.com. Formal business address: 2606 Hilliard Rome Rd, Unit #V257, Hilliard, OH 43026. Questions about an active engagement should use the authenticated Client Portal when available so the communication can be preserved with the project record. Do not send authentication secrets, regulated records, or source archives by ordinary email; source ZIPs use only an SBG-authorized project-specific Secure Source Upload.