BusinessOps
Terms of Service
Last updated: 26 July 2026
CloudOps Billing And Cancellation
CloudOps subscriptions are billed monthly in advance. Custom branding is optional and, when selected, includes an optional one-time custom-branding setup fee. BusinessOps may issue an approved branding-waiver coupon code that applies to that optional setup fee only.
You may cancel at any time through the Stripe customer portal or by contacting BusinessOps. Cancellation stops the next renewal and takes effect at the end of the current monthly billing period. Your service remains active until that period ends, unless suspended for misuse, legal requirements, fraud, chargeback, or a material breach of these terms.
Because server capacity is committed for a full month, monthly subscription fees are not partially, pro-rata, or day-refunded for unused time except where required by law.
CloudOps Provisioning
CloudOps provisioning begins after Stripe confirms a paid subscription. If optional custom branding is selected, provisioning also requires the setup fee to be paid or waived with an approved branding-waiver coupon code. The payment confirmation page does not mean provisioning is complete.
BusinessOps may contact you for onboarding details such as domain, logo, colours, storage requirements, and administrative contacts before provisioning your service.
BusinessOps Passwords (Hosted Password Manager)
BusinessOps Passwords (formerly BusinessOps Vault) is an Australian-hosted, end-to-end encrypted password manager billed at A$19/mo excl. GST (A$20.90 incl. GST), or included with CloudOps Pro and Enterprise. After Stripe confirms a paid subscription, your dedicated vault instance is provisioned automatically and we email your nominated admin an invite to set a master password. If you choose to use your own domain, your vault becomes reachable once you create the DNS record we send you.
Zero-knowledge encryption and no recovery. Your vault is end-to-end encrypted. Your master password is never transmitted to or stored by BusinessOps. We cannot access, read, reset, or recover your vault contents, and we cannot help you regain access if you lose your master password and have not configured account recovery or emergency access. If your login credentials are lost and no recovery method exists, your data is permanently and irreversibly unrecoverable. You are solely responsible for safeguarding your master password and configuring recovery options.
Data retention on cancellation. When a subscription is cancelled or lapses for non-payment, your vault is suspended and retained for approximately 30 days, during which it can be reactivated. We take one final encrypted backup. After the retention period the vault instance and its data are permanently deleted and cannot be recovered. Because the vault is zero-knowledge, any export of your data must be performed by you from the client app before the retention period ends; BusinessOps cannot export your encrypted contents for you.
Open source and trademarks. BusinessOps Passwords is powered by Vaultwarden, free and open-source software licensed under the GNU Affero General Public License v3 (AGPL-3.0); a copy of the corresponding source is available on request. BusinessOps Passwords is compatible with the Bitwarden client apps (iOS, Android, browser extensions, and desktop). BusinessOps is not affiliated with, endorsed by, or sponsored by Bitwarden, Inc., and "Bitwarden" is a trademark of its respective owner used here only to describe client compatibility.
Your Data, Backups and Exports
You must keep your own backups. For every BusinessOps service, you are responsible for maintaining your own regular, current backups of your data, including regular exports of your vault organisation using the client applications, and for verifying that those exports are complete and usable. BusinessOps takes routine encrypted platform backups for the purpose of recovering BusinessOps infrastructure from failures. Platform backups are provided on an all-reasonable-care basis for that purpose only: they are not a customer backup service, they are not guaranteed to exist, be complete, be current, or be restorable for any particular customer or point in time, and you must not rely on them as your only copy of your data.
Encrypted data cannot be reconstructed by us. Vault data is end-to-end encrypted with keys only you hold. No BusinessOps backup, snapshot, or recovery process can produce a readable copy of your vault for you. The only usable backup of your vault contents is the export you make yourself while you have access.
Service Availability and Third-Party Dependencies
We aim to keep services available and maintained, but we do not promise that any service will be continuous, uninterrupted, error-free, or free of vulnerabilities. Services may be briefly unavailable for maintenance, updates, or events outside our control. The services also depend on third parties we do not control, including hosting and network providers, payment processing (Stripe), and, for the vault service, upstream open-source server software and the official client applications, which are updated by their vendor on its own schedule. We may update, patch, or change software versions where reasonably required for security or compatibility.
Security and Your Responsibilities
We take reasonable technical and organisational measures to protect the services, including encryption in transit, isolated per-customer vault instances, prompt security updates, and encrypted platform backups. No system is impenetrable, and to the maximum extent permitted by law we do not warrant that the services will be free from unauthorised access, malicious attack, or data loss.
You are responsible for: choosing strong master passwords and credentials and keeping them confidential; enabling and testing account recovery, emergency access, and two-step login for your organisation; deciding which of your personnel have access to what; the security of your own devices, networks, and email; removing access for departing personnel; keeping your nominated administrator contact details current; maintaining and verifying your own data exports as described above; and notifying us promptly of any suspected compromise of your accounts. Where a security incident on our side affects your data, we will notify you without undue delay and comply with applicable Australian data breach notification law.
Liability
Australian Consumer Law. Our services come with guarantees that cannot be excluded under the Australian Consumer Law. Nothing in these terms excludes, restricts, or modifies any consumer guarantee, right, or remedy that cannot lawfully be excluded, restricted, or modified.
Limitation. To the maximum extent permitted by law: our liability for a failure to comply with a consumer guarantee in relation to services is limited, at our option, to supplying the services again or paying the cost of having the services supplied again; we exclude all other warranties, conditions, and guarantees not set out in these terms; we are not liable for indirect or consequential loss of any kind, including loss of profits, revenue, business, goodwill, or data; and our total aggregate liability arising out of or in connection with the services is limited to the total fees you paid to BusinessOps in the 12 months before the event giving rise to the claim.
Data loss. Without limiting the above, and to the maximum extent permitted by law, BusinessOps is not liable for loss of, or inability to access, data (including vault contents) arising from a lost master password, recovery options that were not configured or tested, exports you did not make or verify, deletion following cancellation or non-payment as described in these terms, failure or incompleteness of platform backups, third-party software or client application changes, or unauthorised access resulting from compromise of your credentials, devices, or personnel. Our liability is also reduced proportionally to the extent your acts or omissions contributed to the loss.
Acceptable Use
You must not use BusinessOps services for unlawful, abusive, harmful, infringing, or security-hostile activity. We may suspend access where needed to protect systems, customers, or legal obligations.
Contact
Questions about these terms can be sent through the contact options on the BusinessOps website.