Terms of Service
Product: SanadiqCloud
Effective date: 14 August 2026
Status: Pre-production draft. These Terms describe the product as implemented today. They are not a lawyer-approved contract and must be reviewed before SanadiqCloud accepts live customer payments.
SanadiqCloud is a B2B multi-tenant business workspace (catalog, inventory, sales, team, billing). It is operated by Thamar Labs (credit in the app Help Center; website https://www.thamarlabs.com). The registered legal entity, registered address, and governing law for paid production use are not yet published in this product. Until they are, treat these Terms as a product description of rights and duties, not as a fully executed commercial contract.
Contact for these Terms: support@sanadiqcloud.com (the Amazon SES identity configured for support mail). Some in-app help pages still mention support@sanadiq.com; that address is not the verified SES From identity.
1. Acceptance
By creating an account (email and password or Google Sign-In), accessing SanadiqCloud, or creating an organization, you agree to these Terms, the Privacy Policy, and the Refund Policy.
If you use SanadiqCloud on behalf of an organization, you represent that you have authority to bind that organization.
2. Eligibility
SanadiqCloud is offered for business use. Accounts are user identities; organizations (tenants) are workspaces. You must provide accurate registration information (first name, last name, email, password, or a Google account).
The product is not designed for children. Do not create an account for anyone under 16.
3. Accounts
- You may register with email and password. Email verification is required when the auth service requires it.
- You may sign in with Google. Apple Sign-In is not available.
- You are responsible for credentials and for activity under your account.
- Profile fields may include optional phone number, profile image, and language/theme preferences stored on the device.
- You may deactivate or delete your account from Profile. Both paths currently soft-deactivate the user (
is_active=false). Email, name, and related records are not hard-erased. Local (password) accounts may be reactivated. Treat in-app “delete cannot be undone” copy as a product warning, not as a cryptographic wipe.
4. Organizations (tenants)
- An organization is a tenant workspace with a name, URL slug, optional description/website/logo, owner, members, roles, and a subscription entitlement.
- The first organization for an eligible account receives a welcome subscription (typically 1 month, 1 seat, storage at least 1 GB, $0,
auto_renew=false). Welcome is granted once per account, not per organization. Deleting and recreating an organization does not restore welcome. - Additional organizations require paid checkout before the tenant is created.
- The owner, and members with the relevant permissions, manage invites, roles, and billing for that tenant.
- Organization delete is a soft deactivate. Product, inventory, sales, media, and support data are not purged by a real-time job. Billing cancels the Stripe subscription and does not refund paid invoices.
5. Customer data and roles
You (the organization) control catalog, inventory, warehouses, suppliers, sales customers, sale invoices, media uploads, and similar business records you enter. SanadiqCloud processes that data to provide the Service. For that processing, see the Data Processing Agreement.
We control platform accounts, authentication, subscriptions, platform audit of service use, and infrastructure.
You must have a lawful basis to store personal data about your own customers, suppliers, and staff in SanadiqCloud.
6. Acceptable use
You may not: probe or attack the Service; attempt to access another tenant’s data; upload malware; use the Service for unlawful goods or fraud; resell the Service without permission; or overload the Service in a way that harms other tenants.
We may suspend accounts or organizations that violate these Terms, fail payment, or present a security risk.
7. Subscriptions and payment
- Organizations purchase months (1–24), seats (1–500), and storage GB (1–1000) against the published plan rates (not named consumer tiers).
- Payment is Stripe Hosted Checkout only. Card data is entered on Stripe’s page, not in a SanadiqCloud card form. There is no in-app card vault, Customer Portal, or saved-card manager.
- The organization is billed, not a personal consumer subscription. Checkout may be started by a user with
billing:updateon that tenant. - Seat or storage increases create an unpaid invoice and apply after payment. Decreases are scheduled for period end, without credit or refund; current paid limits stay until that date.
- Recurring collection, when Stripe manages the subscription, is handled by Stripe invoices/webhooks. Failed cycle payments can move the subscription to past_due while entitlement remains until Billing expires or cancels it. There is no coded grace-period length in the product.
- There is no tenant cancel-subscription page. A cancel API exists for
billing:update. Contact support to end a subscription. Cancel does not refund paid amounts. - Plan rate changes apply to new subscribers immediately. Existing subscribers keep current amounts until they renew or adjust.
Details: Refund Policy and Billing help.
8. Taxes and invoices
Generated subscription invoices currently set tax to zero unless an administrator patches tax on an unpaid invoice. Stripe automatic tax is not enabled. You remain responsible for taxes that apply to your purchase.
SanadiqCloud stores local subscription invoices. It does not generate a PDF receipt. Stripe may email a receipt if a payer email is collected on Checkout; Stripe Customers created by the app currently set email to empty unless the payer enters one on Stripe’s page.
9. Service availability
The Service is provided as available. There is no contractual uptime percentage (including no 99.9% commitment) unless a signed Order Form under the MSA says otherwise.
We may change features. Material billing or data-practice changes should be reflected in these documents.
10. Intellectual property
SanadiqCloud, its software, brand, and documentation belong to the operator. You retain rights in your organization content. You grant us a license to host, process, and display that content solely to operate the Service.
11. Third-party services
The Service uses subprocessors listed in the Privacy Policy and DPA (including Stripe, Amazon Web Services, Google Sign-In, and Firebase Cloud Messaging). Their terms also apply to the data they process.
12. Security
We implement technical measures described in engineering documentation (authentication, tenant scoping, TLS in production architecture, encryption of passwords). You must use strong passwords, manage member access, and keep your devices secure. No security description here is a warranty of uninterrupted or error-free operation.
13. Disclaimers
To the fullest extent permitted by law, the Service is provided without warranties of merchantability, fitness for a particular purpose, or non-infringement. Inventory, sales, and billing figures in the app depend on data you enter and on third-party processors.
14. Limitation of liability
Until a signed Order Form states otherwise, our aggregate liability arising out of the Service is limited to the fees you paid to us for the organization in the 12 months before the claim, and we are not liable for lost profits, lost data, or indirect damages, except where liability cannot be limited by law (including fraud or death/personal injury caused by negligence, where such rules apply).
15. Indemnification
You will defend and indemnify the operator against claims arising from your content, your misuse of the Service, or your processing of personal data in the workspace (including your own customers and suppliers).
16. Suspension and termination
We may suspend or terminate access for breach, non-payment, legal requirement, or security. You may stop using the Service and request organization or account deactivation. See Section 3 and 4 for what deletion actually does today.
17. Data after cancellation
Cancelling a subscription does not delete catalog, inventory, sales, or media data. Entitlement (seats/storage growth) is reduced according to Billing status. Organization deletion is soft-deactivate as described above.
18. Changes
We may update these Terms. The effective date above will change. Continued use after a published update constitutes acceptance, except where law requires additional consent.
19. Contact
Email support@sanadiqcloud.com. Operator credit: Thamar Labs — https://www.thamarlabs.com.
Still required before live payments: legal entity name on the contract, registered address, governing law and venue, and counsel review of limitation/indemnity clauses.