1. Who you are agreeing with
These terms are between you and M.D.N Tech FZE, Al Shmookh Business Center, One UAQ, UAQ Free Trade
Zone, Umm Al Quwain, United Arab Emirates, licence no. 7813 ("we", "us"). They apply when you use Rein's hosted
services: the policy engine at engine.reinconsole.com, the console at
app.reinconsole.com, the sandbox created by
npx @reinconsole/init, and the reference vendor at
vendor.reinconsole.com. By using them you accept these terms and our
Privacy Policy. You must be at least 18 and able to form a binding
contract. If you use the services for an organisation, you confirm you may accept these terms on its behalf.
2. The software and the hosted service are different things
The @reinconsole/* packages, including the
npx @reinconsole/init command, are open-source software under the MIT licence.
That licence, not these terms, governs the code, including when you run your own engine. These terms govern only
the services we host, including the sandbox, test-token faucet and engine that the
init command connects to by default.
3. What Rein does, and what it does not
Rein is a control tool. Your agent asks the engine whether a payment is allowed under the policy you set; the engine answers and signs a record of the decision. Rein's decisions concern your agent's payments; they are not decisions about you as a person.
- We never hold your funds or your keys. Payments go directly from your agent's wallet to the seller. Rein is not a bank, a payment service, a money transmitter, an exchange or a custodian, and does not give financial, investment or tax advice.
- Rein only governs payments that go through it. A policy limits what your agent pays through the Rein guard. It cannot stop a payment your agent, or anyone with the wallet's key, makes some other way.
- Blockchain payments are final. We cannot reverse, refund or recover a payment once it has settled.
- You set the policy. You are responsible for choosing limits that suit you, and for checking what you approve when you sign an escalation.
4. Sandboxes and claimed orgs
- A sandbox runs on the Base Sepolia test network. Test USDC has no value and cannot be exchanged for anything.
- An unclaimed sandbox's keys stop working after 7 days. Sandboxes have limits on how many can be created and how much they can be used, which we may change.
- You claim an org by signing in with GitHub or an Ethereum wallet. One identity can own one org. Claiming lifts the expiry and the sandbox limits.
- Only a claimed org can be moved to Base mainnet, where payments use real USDC. We may require checks before enabling mainnet for an org.
- You confirm that any wallet you use is yours or that you are authorised to use it.
5. Your responsibilities
- Keep your keys safe.
rein-agent.jsonholds your agent's wallet key and API key, and your owner file holds your admin and approver keys. They are the only copies; we cannot recover them, and anyone who has them can act as you. - Fund your agent's wallet yourself, and only with amounts you are prepared to have spent within your policy.
- Use the services only lawfully. Do not use them to pay for anything illegal, to evade sanctions, or on behalf of anyone subject to sanctions. We may screen wallet addresses and connection data against sanctions lists and may refuse or suspend service where a match or a restricted territory is detected.
- You are responsible for any taxes arising from your agent's payments.
- Do not get around the quotas, for example by creating sandboxes from many addresses. Do not probe, overload or attack the services, or try to read another org's data. Report security issues as described in SECURITY.md.
- If you use the services for an organisation, and you are not a consumer, you will indemnify us against third-party claims arising from your organisation's breach of these terms.
6. Third-party services
Payments are settled by facilitators (such as x402.org, PayAI or Coinbase), on the Base network, and are made to sellers we do not control. Sign-in uses GitHub or your wallet. Those services have their own terms, and we are not responsible for them or for what a seller provides in return for a payment. Prices and availability of third-party services may change without our knowledge.
7. Price and availability
The hosted services are currently free and are provided as a beta, "as is", without any uptime commitment. We may change, limit or stop any part of them. While the hosted engine is unavailable, your agent cannot get a decision, so payments that go through the guard are not approved. If we intend to stop the hosted service, we will give at least 30 days' notice on this website and, for claimed orgs, by the contact details we hold, and you can move to a self-hosted engine.
8. The decision log
Decisions are recorded in a signed, hash-linked log. Records cannot be removed from it individually, because doing so would break its verification for everyone. The log contains wallet addresses, amounts and decision outcomes, and is retained as described in our Privacy Policy. You can verify your own decisions with the published tools.
9. Suspension and ending
You can stop using the services at any time. If you are a consumer, you may stop at any time; because the services are free, there is nothing to refund. We may suspend or revoke keys or an org that breaks these terms, threatens the security or stability of the services, or where we are required to act by law or by sanctions rules. For a claimed org, we will give notice before suspending where it is practicable to do so, and in any case tell you the reason afterwards unless the law prevents it. You may object by email within 14 days and we will review. Suspension does not stop you from exporting your records or moving to a self-hosted engine. Sections 3, 5, 8, 10, 11 and 13 continue after use ends.
10. Liability
Rein's promise is this: the hosted engine will evaluate your agent's payment requests against the policy you set, and will approve only requests that your policy allows. To the extent the law allows:
- (a) The services are provided "as is", without warranties of any kind, express or implied, including fitness for a particular purpose and uninterrupted or error-free operation.
- (b) We are not liable for payments your agent makes that your policy allowed, because you set that policy. We are not liable for payments made without going through the Rein guard, for payments made by anyone who obtained your keys, for what a seller provides or fails to provide in return for a payment, or for the acts, failures or fees of facilitators, blockchain networks, RPC providers, GitHub or wallet software.
- (c) If the hosted engine approves a payment that your policy, correctly applied, should have denied, our liability for the resulting loss is limited to the cap in (e). This is the one promise the service makes, and we stand behind it to that extent.
- (d) We are not liable for indirect or consequential loss, loss of profit, loss of business or loss of data.
- (e) Our total liability to you for all claims arising from the services in any 12-month period is limited to the greater of USD 100 and the fees you paid us for the services in the 12 months before the event giving rise to the claim.
- (f) Nothing in these terms excludes or limits liability for fraud, for gross negligence or wilful misconduct, for death or personal injury caused by negligence, or any liability that cannot be excluded or limited by applicable law. If you are a consumer, nothing in these terms removes rights you have under the mandatory law of your country of residence.
11. Law and disputes
These terms are governed by the federal laws of the United Arab Emirates as applied in the Emirate of Umm Al Quwain. If you have a dispute with us, write to us first and we will try to resolve it informally within 30 days. If that fails, you and we agree that the Courts of the Dubai International Financial Centre have exclusive jurisdiction to settle any dispute arising out of or in connection with these terms or the services, and we both opt in to their jurisdiction for that purpose. If you are a consumer resident in the EU, EEA or UK, nothing in this section takes away protections you have under the mandatory law of your country of residence, or your right to bring a claim in the courts of that country.
12. Changes and contact
We may change these terms. We will post the new version on this page and update the date above. For a material change we will give at least 14 days' notice on this website and, for claimed orgs, by the contact details we hold, before it takes effect. If you do not agree, stop using the services before that date; continuing to use them after that date means you accept the new terms. Contact: reinconsole@proton.me, or by post to the address in section 1.
13. General
These terms are the entire agreement between you and us about the hosted services. If any part is found unenforceable, the rest remains in effect. Our failure to enforce a term is not a waiver. You may not assign these terms; we may assign them to a successor of the Rein business, with notice. We are not liable for failure caused by events beyond our reasonable control. These terms are written in English; a translation is for convenience only.
14. Intellectual property and feedback
We and our licensors own the hosted services, the Rein name and marks. You own your policies, data and agents. If you send us feedback, we may use it without obligation to you.