Pantheon Security
PANTHEON
SECURITY
  • Product
  • Pricing
  • Docs
  • GitHub

Terms of Service

Last Updated: July 6, 2026

MEDUSA is open-source software distributed under the AGPL-3.0 license. These Terms of Service cover usage of our website and associated services. The AGPL-3.0 license governs use of the MEDUSA software itself.

1. Acceptance of Terms

By accessing or using the Pantheon Security website (pantheonsecurity.io) or MEDUSA software, you agree to be bound by these Terms of Service. If you do not agree, do not use our services.

2. MEDUSA Open Source License

MEDUSA is distributed under the GNU Affero General Public License v3.0 (AGPL-3.0). The full license text is available at github.com/Pantheon-Security/medusa.

Key points of the AGPL-3.0 license:

  • Free to use, modify, and distribute
  • Modified versions must be released under AGPL-3.0 with source available
  • Network use counts as distribution — running a modified MEDUSA as a service requires offering its source to users
  • Provided as-is, with no warranty

3. Description of Services

MEDUSA CLI Tool

MEDUSA is a static application security testing (SAST) tool that scans source code for security vulnerabilities. It is provided free of charge under the AGPL-3.0 license.

Website and Documentation

Our website provides information, documentation, and resources related to MEDUSA and security best practices.

4. Use of Services

You agree to use our services only for lawful purposes. You must not:

  • Use the services to violate any laws or regulations
  • Attempt to gain unauthorized access to our systems
  • Interfere with or disrupt our services
  • Use our services to distribute malware or malicious code
  • Impersonate Pantheon Security or misrepresent your affiliation with us

5. No Warranty

THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED.

MEDUSA is a security scanning tool that may produce false positives or miss vulnerabilities. We make no guarantees about:

  • Accuracy of scan results
  • Detection of all security vulnerabilities
  • Compatibility with all environments
  • Uninterrupted or error-free operation

Important: MEDUSA should be one component of a comprehensive security strategy, not the sole security measure.

6. Limitation of Liability

IN NO EVENT SHALL PANTHEON SECURITY BE LIABLE FOR ANY INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, OR PUNITIVE DAMAGES, OR ANY LOSS OF PROFITS OR REVENUES, WHETHER INCURRED DIRECTLY OR INDIRECTLY, OR ANY LOSS OF DATA, USE, GOODWILL, OR OTHER INTANGIBLE LOSSES.

7. Intellectual Property

MEDUSA Source Code

MEDUSA source code is licensed under the AGPL-3.0 license and hosted on GitHub. The community is encouraged to contribute, fork, and modify the software according to the AGPL-3.0 license terms.

Website and Branding

The Pantheon Security name, logo, and website content are owned by Pantheon Security. You may not use our trademarks without prior written permission.

8. User Contributions

If you contribute to MEDUSA via pull requests, issues, or other means, you agree that:

  • Your contributions are your own original work or you have rights to contribute
  • You grant Pantheon Security a perpetual, worldwide, non-exclusive license to use your contributions
  • Your contributions will be distributed under the AGPL-3.0 license
  • You comply with our Code of Conduct

9. Third-Party Services

MEDUSA is self-contained and does not install external security tools. Its own open-source Python dependencies are each governed by their own licenses; Pantheon Security is not responsible for third-party software.

10. Privacy

Your use of our services is also governed by our Privacy Policy. MEDUSA does not collect or transmit your source code or scan results.

11. Security Vulnerabilities

If you discover a security vulnerability in MEDUSA, please report it responsibly to security@pantheonsecurity.io. See our Security Policy for details.

12. Modifications to Terms

We reserve the right to modify these Terms of Service at any time. Significant changes will be announced via our GitHub repository or website. Continued use of our services after changes constitutes acceptance of the new terms.

13. Termination

We reserve the right to terminate or suspend access to our services immediately, without prior notice, for conduct that we believe violates these Terms or is harmful to other users, us, or third parties.

14. Governing Law

These Terms shall be governed by and construed in accordance with the laws of the United States, without regard to its conflict of law provisions.

15. Dispute Resolution

Any disputes arising from these Terms or our services shall be resolved through good faith negotiation. If negotiation fails, disputes shall be subject to binding arbitration.

16. Severability

If any provision of these Terms is found to be unenforceable or invalid, that provision shall be limited or eliminated to the minimum extent necessary, and the remaining provisions shall remain in full force and effect.

17. Entire Agreement

These Terms, together with the AGPL-3.0 license and our Privacy Policy, constitute the entire agreement between you and Pantheon Security regarding our services.

18. Contact Information

For questions about these Terms of Service:

  • Email: legal@pantheonsecurity.io
  • Security: security@pantheonsecurity.io
  • General: contact@pantheonsecurity.io
  • GitHub: github.com/Pantheon-Security/medusa
Open Source Commitment: Pantheon Security is committed to open source principles. MEDUSA will remain free and open source under the AGPL-3.0 license. These Terms of Service exist to protect both users and the project.
Pantheon Security

Open-source security scanner for polyglot codebases. AI-first security scanner with 40,000+ detection rules for AI/ML, LLM agents, MCP servers, and RAG pipelines.

Product
  • Features
  • Pricing
  • Documentation
  • Download
Company
  • About
  • Careers
  • Contact
Legal
  • Privacy Policy
  • Terms of Service
  • Security Policy

© 2026 Pantheon Security. All rights reserved.