Money-Back Guarantee Policy

Money-Back Guarantee Policy

Last Updated: January 21, 2026

This Money-Back Guarantee Agreement (“Guarantee”) is issued by SaaSAudit, Inc., a Delaware corporation (“SaaSAudit”). This Guarantee is incorporated by reference into the Company’s Terms of Service Agreement and Order Form (collectively, the “Agreement”).


Capitalized terms not defined herein have the meanings assigned in the Agreement.


This Money-Back Guarantee Agreement (“Guarantee”) is issued by SaaSAudit, Inc., a Delaware corporation (“SaaSAudit”). This Guarantee is incorporated by reference into the Company’s Terms of Service Agreement and Order Form (collectively, the “Agreement”).


Capitalized terms not defined herein have the meanings assigned in the Agreement.


1. Scope of Guarantee

1. Scope of Guarantee

This Guarantee applies solely to fees paid directly to SaaSAudit for access to its SOC 2 Compliance Automation software-as-a-service platform (“SaaS Fees”) in the subscription year.

This Guarantee expressly excludes all Third-Party Fees, including fees paid in connection with external SOC 2 compliance auditing & attestation, and penetration testing services, as set forth in Section 2.

This Guarantee applies solely to fees paid directly to SaaSAudit for access to its SOC 2 Compliance Automation software-as-a-service platform (“SaaS Fees”) in the subscription year.

This Guarantee expressly excludes all Third-Party Fees, including fees paid in connection with external SOC 2 compliance auditing & attestation, and penetration testing services, as set forth in Section 2.

2. Excluded Third-Party Fees (Non-Refundable)

2. Excluded Third-Party Fees (Non-Refundable)

2.1 Definition of Third-Party Fees

2.1 Definition of Third-Party Fees


Third-Party Fees” means any amounts paid, reimbursed, passed through, or otherwise charged for services provided by independent third parties, including but not limited to:


Third-Party Fees” means any amounts paid, reimbursed, passed through, or otherwise charged for services provided by independent third parties, including but not limited to:

  • External CPA firms providing SOC 2 compliance auditing and attestation services

  • Vulnerability Assessment and Penetration Testing (VAPT) providers

  • External CPA firms providing SOC 2 compliance auditing and attestation services

  • Vulnerability Assessment and Penetration Testing (VAPT) providers


Whether such fees are invoiced separately, bundled, prepaid by SaaSAudit, or collected as pass-through charges.


Whether such fees are invoiced separately, bundled, prepaid by SaaSAudit, or collected as pass-through charges.

2.2 Non-Refundability

2.2 Non-Refundability


All Third-Party Fees are strictly non-refundable, regardless of::


All Third-Party Fees are strictly non-refundable, regardless of::

  • Refund of SaaS Fees under this Guarantee

  • Audit failure, delay, or non-completion

  • Jurisdiction, to the maximum extent permitted by law

  • Refund of SaaS Fees under this Guarantee

  • Audit failure, delay, or non-completion

  • Jurisdiction, to the maximum extent permitted by law


Whether such fees are invoiced separately, bundled, prepaid by SaaSAudit, or collected as pass-through charges.


Whether such fees are invoiced separately, bundled, prepaid by SaaSAudit, or collected as pass-through charges.

3. Guarantee (SaaS Fees Only)

3. Guarantee (SaaS Fees Only)

3.1 Guarantee Eligibility

3.1 Guarantee Eligibility


To qualify for the refund, you must meet all of the following criteria:


To qualify for the refund, you must meet all of the following criteria:

  • Failed to achieve a successful audit outcome in the subscription year.

  • Failure to achieve SOC 2 compliance attestation in the subscription year.

  • All subscription fees are paid when due with no unpaid invoices.

  • You actively participated in the compliance process within SaaSAudit platform.

  • You actively participated in White Gloves Concierge Service program offered by SaaSAudit and implemented recommended changes to fix any control failures.

  • Failed to achieve a successful audit outcome in the subscription year.

  • Failure to achieve SOC 2 compliance attestation in the subscription year.

  • All subscription fees are paid when due with no unpaid invoices.

  • You actively participated in the compliance process within SaaSAudit platform.

  • You actively participated in White Gloves Concierge Service program offered by SaaSAudit and implemented recommended changes to fix any control failures.

3.2 Refund Scope

3.2 Refund Scope


(a) U.S. and Global B2B Customers


(a) U.S. and Global B2B Customers

Eligible customers may receive a refund of prepaid annual SaaS Fees, excluding:

Eligible customers may receive a refund of prepaid annual SaaS Fees, excluding:

  • All Third-Party Fees

  • All Third-Party Fees


No refunds are issued after completion of a successful audit and issuance of SOC 2 compliance attestation report in any subscription year.


No refunds are issued after completion of a successful audit and issuance of SOC 2 compliance attestation report in any subscription year.

3.3 Effect of Refund

3.3 Effect of Refund

Upon approval:

Upon approval:

  • Access to the Services terminates immediately

  • The subscription is cancelled

  • No further SaaS Fees accrue

  • Access to the Services terminates immediately

  • The subscription is cancelled

  • No further SaaS Fees accrue

4. Customer Security Remediation Obligations (Condition of Guarantee)

4. Customer Security Remediation Obligations (Condition of Guarantee)

4.1 Remediation of Security Findings

4.1 Remediation of Security Findings


As a condition of eligibility for this Guarantee, the Customer acknowledges and agrees that:


As a condition of eligibility for this Guarantee, the Customer acknowledges and agrees that:

(1) The Customer is solely responsible for remediating all vulnerabilities, deficiencies, findings, and risks identified through penetration testing, vulnerability assessments, or security evaluations (“Security Findings”).


(2) All Critical and High severity Security Findings must be remediated within commercially reasonable timeframes consistent with industry standards and any timelines communicated by the Company or applicable third-party auditor.


(3) Failure to remediate Security Findings may:

  • Prevent audit or certification completion.

  • Limit or suspend Company support.

  • Void eligibility under this Guarantee, even if requested within the guarantee period.

(1) The Customer is solely responsible for remediating all vulnerabilities, deficiencies, findings, and risks identified through penetration testing, vulnerability assessments, or security evaluations (“Security Findings”).


(2) All Critical and High severity Security Findings must be remediated within commercially reasonable timeframes consistent with industry standards and any timelines communicated by the Company or applicable third-party auditor.


(3) Failure to remediate Security Findings may:

  • Prevent audit or certification completion.

  • Limit or suspend Company support.

  • Void eligibility under this Guarantee, even if requested within the guarantee period.

4.2 Implementation and Enforcement of Recommended Security Controls

4.2 Implementation and Enforcement of Recommended Security Controls


The Customer further agrees that:


The Customer further agrees that:

(1) The Customer shall implement and enforce reasonable administrative, technical, and organizational security controls recommended by SaaSAudit in connection with:

  • Penetration testing results.

  • Risk assessments.

  • SOC2 Type 1 and or Type 2 Compliance controls.


(2) SaaSAudit recommendations constitute best-practice guidance only; SaaSAudit does not assume operational control of Customer systems.


(3) The Customer remains solely responsible for enforcement, configuration, and effectiveness of all security controls.

(1) The Customer shall implement and enforce reasonable administrative, technical, and organizational security controls recommended by SaaSAudit in connection with:

  • Penetration testing results.

  • Risk assessments.

  • SOC2 Type 1 and or Type 2 Compliance controls.


(2) SaaSAudit recommendations constitute best-practice guidance only; SaaSAudit does not assume operational control of Customer systems.


(3) The Customer remains solely responsible for enforcement, configuration, and effectiveness of all security controls.

4.3 Good-Faith Cooperation Requirement

4.3 Good-Faith Cooperation Requirement


Eligibility for any refund is expressly conditioned upon the Customer:


Eligibility for any refund is expressly conditioned upon the Customer:

  • Acting in good faith to remediate Security Findings

  • Implementing and enforcing recommended security controls within reasonable timeframes

  • Not knowingly operating systems with unremediated Critical or High severity vulnerabilities

  • Providing accurate remediation status information upon request

  • Acting in good faith to remediate Security Findings

  • Implementing and enforcing recommended security controls within reasonable timeframes

  • Not knowingly operating systems with unremediated Critical or High severity vulnerabilities

  • Providing accurate remediation status information upon request

5. Refund Request Procedure

5. Refund Request Procedure


Refund requests must be submitted:


Refund requests must be submitted:

  • In writing to refunds@saasaudit.ai

  • With sufficient account identification

  • Within the applicable guarantee period

  • In writing to refunds@saasaudit.ai

  • With sufficient account identification

  • Within the applicable guarantee period


Incomplete or late requests may be denied.


Incomplete or late requests may be denied.

6. Refund Method and Timing

6. Refund Method and Timing


Approved refunds will be issued:


Approved refunds will be issued:

  • To the original payment method or by check at the discretion of SaaSAudit.

  • Within 30-business days of refund approval

  • To the original payment method or by check at the discretion of SaaSAudit.

  • Within 30-business days of refund approval


Processing delays caused by financial institutions or payment processors are not SaaSAudit’s responsibility.


Processing delays caused by financial institutions or payment processors are not SaaSAudit’s responsibility.

7. No Guarantee of Security  

7. No Guarantee of Security  


The Company does not guarantee:


The Company does not guarantee:

  • Absence of vulnerabilities or future security incidents

  • Absence of vulnerabilities or future security incidents


Ultimate responsibility for security posture and compliance rests with the Customer.


Ultimate responsibility for security posture and compliance rests with the Customer.

8. Limitations and Anti-Abuse

8. Limitations and Anti-Abuse

  • One refund per customer or legal entity

  • No stacking with promotional refunds

  • Abuse, circumvention, or failure to remediate voids eligibility

  • One refund per customer or legal entity

  • No stacking with promotional refunds

  • Abuse, circumvention, or failure to remediate voids eligibility

9. Exclusive Remedy

9. Exclusive Remedy


This Guarantee constitutes the exclusive refund remedy for SaaS Fees, except where mandatory law provides otherwise


This Guarantee constitutes the exclusive refund remedy for SaaS Fees, except where mandatory law provides otherwise

10. Governing Law

10. Governing Law


This Guarantee is governed by the governing law specified in the Agreement, subject to mandatory consumer protection laws.


This Guarantee is governed by the governing law specified in the Agreement, subject to mandatory consumer protection laws.

11. Contact Information

11. Contact Information


SaaSAudit, Inc

6 Liberty Square

599

Boston, MA 02109

Email: refunds@saasaudit.ai


SaaSAudit, Inc

6 Liberty Square

599

Boston, MA 02109

Email: refunds@saasaudit.ai

Seamless Integrations

Seamless Integrations

Ready to Get SOC 2 Compliant?

Ready to Get SOC 2 Compliant?

Contact us today to remove roadblocks and close deals faster