Skip to main content
Before any scan runs, you must sign a Rules of Engagement (ROE) agreement. This is standard practice in penetration testing.

What is the ROE?

The ROE is a legal agreement between you and LaunchSafe that:
  1. Authorizes LaunchSafe to test your specified targets
  2. Confirms you own or have permission to test the targets
  3. Defines the scope and methodology of testing
  4. Establishes data handling and confidentiality terms

What you’re agreeing to

The ROE covers 11 sections:
SectionSummary
Authorization & ScopeTesting is limited to targets you explicitly provide
Ownership & PermissionYou confirm you own or are authorized to test the targets
Testing MethodologyAI-driven SAST, DAST, SCA, secret detection, API fuzzing
Data HandlingFindings encrypted at rest (AES-256) and in transit (TLS 1.3)
Risk AcceptanceTesting may cause application errors or log noise
Prohibited ActionsNo social engineering, DoS, data exfiltration, or production data modification
Reporting & DisclosureFindings shared only with your authenticated workspace members
ComplianceYou’re responsible for legal compliance in your jurisdiction
IndemnificationYou indemnify LaunchSafe against unauthorized testing claims
Term & TerminationActive for your subscription duration, 30-day termination notice
Governing LawState of Delaware

How to sign

  1. During onboarding, the ROE appears after you add your target
  2. Read the full agreement (you must scroll to the bottom)
  3. Check the acknowledgment box
  4. Enter your full legal name
  5. Click Confirm

Confirmation email

After signing, you’ll receive a confirmation email with:
  • Your signed agreement text
  • Signee name, timestamp, and IP address
  • A unique reference ID for your records
The ROE is executed with the same legal force as a handwritten signature under the ESIGN Act and UETA.

Re-signing

You may need to re-sign the ROE if:
  • The agreement version is updated
  • You add new targets outside the original scope
  • Your subscription lapses and you re-subscribe