dxAuth legal
Independent platform
Updated 2026-07-13

Legal terms for identity verification, registered applications, and secure auth-code exchange.

dxAuth operates as a dedicated authentication and application-registration platform. These documents set out platform boundaries, operational safeguards, privacy handling, retention, and reporting channels.

Last updated 2026-07-13
Current release

dxAuth Terms of Service

Service terms for registered applications, passwordless verification, email delivery, admin access, and auth-code exchange.

Section 01

Platform services

  1. 1.1

    dxAuth provides application registration, passwordless email verification, magic-link and 6 digit code sign-in, auth-code exchange, email delivery support, anti-abuse controls, and admin tools.

  2. 1.2

    dxAuth verifies email challenges and issues one-time auth codes. It does not directly create another application's final logged-in session.

Section 02

Application-owner obligations

  1. 2.1

    Application owners are responsible for registering accurate redirect URIs and browser origins, protecting client secrets in backend secret storage, exchanging auth codes only from trusted backend services, creating and securing their own application sessions, and honoring user privacy, consent, and access requirements in their own products.

Section 03

Administrative access

  1. 3.1

    Admins must keep access credentials secure and use admin tools only for authorized application registration, support, security, and operational purposes.

  2. 3.2

    We may suspend or restrict access to protect the service, enforce terms, prevent abuse, respond to legal obligations, or investigate security issues.

Section 04

Prohibited use

  1. 4.1

    Users, admins, and application owners must not abuse email delivery, attempt account enumeration, brute force codes, perform phishing or spam, bypass redirect/origin/rate-limit controls, register deceptive apps, expose client secrets, or interfere with service operation.

Section 05

Email delivery and suppression

  1. 5.1

    dxAuth may send magic-link or 6 digit code emails for registered applications. Suppressed, bounced, complained, or abusive recipients may be blocked or rate-limited.

Section 06

Service changes and termination

  1. 6.1

    We may change, limit, suspend, or discontinue features. We may perform maintenance and remove or suppress records when retention rules, security needs, abuse reports, or legal obligations require it.

  2. 6.2

    Admins or application owners may stop using dxAuth. We may suspend or terminate access for violations, abuse, security risk, non-payment, or legal reasons.

Section 07

Disclaimers and liability

  1. 7.1

    dxAuth is provided as available. It is not a substitute for legal, compliance, identity-governance, or security advice.

  2. 7.2

    To the maximum extent permitted by applicable law, doxanh is not liable for indirect, incidental, special, consequential, exemplary, or punitive damages, or for lost profits, lost data, lost goodwill, service interruption, or substitute services. To the maximum extent permitted by applicable law, doxanh's total liability for claims relating to dxAuth is limited to the amount paid for the service during the 12 months before the claim, or USD 100 if no paid amount applies. These limits do not apply where prohibited by law.

Section 08

Governing law

  1. 8.1

    These terms are governed by applicable law for the service operator and user relationship, excluding conflict-of-law rules. Mandatory local consumer, privacy, or business rights apply where they cannot legally be excluded.

Section 09

Contact

  1. 9.1

    General contact: contact@doxanh.dev.

  2. 9.2

    Legal contact: legal@doxanh.dev.

Last updated 2026-07-13.Contact contact@doxanh.dev, privacy@doxanh.dev, legal@doxanh.dev, or abuse@doxanh.dev.