RASCUNHO — pendente de revisão jurídica. (DRAFT — pending legal review.) This text is meant to guide the review and has no contractual value until approved. Items marked [PREENCHER] depend on company data; items marked [REVISAR] need special attention from legal counsel. This is a translation of
termos.pt.md; in case of divergence, the Portuguese version prevails [REVISAR].
nuvem.works Terms of Use
Version: [PREENCHER — identifier of the current version registered in Dorsal] Effective date: [PREENCHER — date]
These Terms govern the use of nuvem.works by an organization. nuvem.works is provided by NUVEM.ONLINE [PREENCHER — full legal name], registered under CNPJ no. [PREENCHER], with headquarters at [PREENCHER — full address] ("Nuvem.Online", "we").
1. Definitions
- nuvem.works or Service: the remote server access platform provided at
app.nuvem.works, the desktop app for macOS and Windows, thenuvemworksCLI and the agent. - Customer or Organization: the legal entity or individual, identified by CNPJ or CPF (or an equivalent document outside Brazil), that subscribes to the Service and accepts these Terms.
- Workspace: the Customer's space within nuvem.works, with its settings, people, roles, devices and connections.
- User: the natural person who uses the Service on behalf of the Customer, with a role assigned in the workspace (owner, technical or user).
- Owner: the User with the owner role, who manages the workspace and represents the Customer before Nuvem.Online in the acts set out in these Terms.
- Agent: the nuvem.works software the Customer installs on one of its servers, which opens outbound connections to the platform and makes that server, and other machines on the same network over RDP, reachable.
- Device: a server running the agent, registered in the workspace.
- Access session: each use of a connection (desktop, application, terminal or a single command run), from start to end.
- Trail: the time-ordered record of the workspace's events, including access sessions and denied attempts.
- Saved credential: a server credential (username and password, or username and SSH key) that a User asks the platform to keep on their behalf, to connect without typing it again.
- License: the contracted number of Users and agents in the workspace.
2. Acceptance and versions of these Terms
2.1. Acceptance is given by the Organization, through the person who represents it, at sign-up. By accepting, that person states they have the authority to bind the Organization to these Terms.
2.2. We record each acceptance with the accepted version, the person who accepted, the date, the time and the source IP address.
2.3. We may publish new versions of these Terms. When that happens, the owner will be asked to accept the new version at their next access. Until then, the workspace keeps working normally. [REVISAR — effect of non-acceptance after a deadline and how material changes are notified in advance.]
2.4. Nuvem.Online may record an acceptance made outside the platform, such as a signed contract, with a note.
3. Account, organization and workspace
3.1. Using the Service requires a personal account with Nuvem.Online's identity provider and membership in an Organization enabled on nuvem.works.
3.2. Whoever signs up provides the country, the Organization's document (CNPJ or CPF, in Brazil), the name and the workspace identifier, and becomes the owner. Each person may sign up one Organization, and each document identifies a single Organization.
3.3. The Customer is responsible for the information it provides, for keeping its account and its Users' accounts secure, and for everything done with them.
3.4. Being a member of the Organization does not grant access to the workspace: access begins when the owner assigns a role to the User.
4. Plans and licenses
4.1. Every Organization starts on the Free plan, licensed for up to 5 Users and the matching agents. The number of agents follows the number of Users: one agent for every three Users, rounded up.
4.2. Each User with a role in the workspace uses one User license; each registered device uses one agent license. Without a free license, a new role can't be assigned and a new device can't be registered. Lowering the license doesn't remove anyone's existing access; it only blocks the next one.
4.3. Paid plans and prices are agreed with Nuvem.Online and stated in the applicable proposal or contract. [PREENCHER — payment terms, price adjustments, invoicing and taxes, once billing exists.]
4.4. Prices shown on the website are illustrative and may change. What applies to the Customer is what is stated in the accepted proposal or contract.
5. The agent on the Customer's server
5.1. The Customer installs the agent only on servers it owns or is authorized to administer, and is responsible for that authorization.
5.2. The agent runs as an operating system service, with the privileges needed to open sessions, run the supported commands and update itself. It opens no inbound ports: it only makes outbound connections to the platform.
5.3. For the Service to work, the agent sends the platform information about the server, such as its name, operating system, agent version, CPU, memory, disk and network usage, uptime, the sessions open on the server (with each one's system user) and, on pool servers, the list of published applications.
5.4. The agent updates itself automatically during an overnight window, in the server's local time, and verifies the signature of each update before installing it. An immediate update of a device can also be requested from the workspace.
5.5. The Customer may uninstall the agent at any time. Removing the device from the workspace revokes the agent's credential on the platform.
6. Server credentials
6.1. When connecting, the User enters the server credential or uses a saved credential.
6.2. A saved credential is personal: only the person who saved it can use it. It is stored encrypted and delivered only at connection time, directly to whoever performs the logon on the server (the gateway, for RDP; the agent, for the terminal). It is never sent to the browser, the app or the CLI and cannot be revealed, not even to the User who saved it.
6.3. A credential typed without the save option is valid for that connection only and is discarded afterwards.
6.4. The Customer remains responsible for managing its servers' accounts: creating, changing and revoking passwords and authorizing SSH keys. The platform can generate an SSH key pair for a User, but does not install the public key on any server.
7. Sessions, trail and reports
7.1. Each access session and each denied attempt generates events in the workspace trail, with the time, the person, what was accessed, the result, the source IP address and browser or app, the server account used and, when a command is run, the text of that command.
7.2. The platform does not record session content: screen, keystrokes, clipboard, transferred files and printed documents pass through the session but are not stored.
7.3. The trail is kept for 12 months and automatically removed after that. During that period, the application cannot change or delete it.
7.4. Workspace reports are visible to the owner. Nuvem.Online's operations team may access the workspace for support and operations; those accesses show up in the Customer's trail, identified as Nuvem.Online's.
8. Use by AI agents and automations
8.1. The Customer may use the nuvem.works CLI in automations and with AI agents. Each run carries a single command, pinned in the authorization, and the agent refuses different commands.
8.2. The Customer is responsible for the commands its Users, automations and AI agents ask to run, and for their effects on its servers.
9. Acceptable use
The Customer and its Users may not use the Service to:
- access systems without authorization from whoever administers them;
- carry out any unlawful act or one that infringes third-party rights;
- attempt to bypass access controls, the trail or license limits;
- test the platform's security without Nuvem.Online's prior written authorization;
- resell or sublicense the Service without an agreement with Nuvem.Online.
10. Availability and support
10.1. We work to keep the Service available, but it may go through maintenance and interruptions. The Free plan has no guaranteed service level. [PREENCHER — service level for paid plans, if any.]
10.2. Support is provided through the channels listed on the website, including WhatsApp.
11. Data protection
11.1. Regarding personal data processed within the workspace (Users, trail, devices and sessions), the Customer is the controller and Nuvem.Online acts as processor, processing that data only to provide the Service and according to the Customer's instructions expressed in these Terms and in the workspace settings.
11.2. Regarding account, sign-up and acceptance data, and website visit data, Nuvem.Online is the controller.
11.3. Details are in the nuvem.works Privacy Policy. [REVISAR — whether a separate data processing agreement (DPA) is advisable for customers with a contract.]
12. Intellectual property
nuvem.works, its brand, software and documentation belong to Nuvem.Online. These Terms give the Customer the right to use the Service while they are in force, without transferring any other right. The Customer's data remains the Customer's.
13. Confidentiality
Each party keeps confidential the non-public information of the other it accesses because of the Service, and uses it only to perform these Terms.
14. Liability
[REVISAR — limitation of liability, exclusions (lost profits, indirect damages), indemnity cap and different treatment for the Free plan.]
15. Suspension and termination
15.1. The Customer may stop using the Service at any time by asking Nuvem.Online to close the workspace.
15.2. Nuvem.Online may suspend access in case of breach of these Terms, risk to the security of the platform or of third parties, or an order from a competent authority, notifying the Customer whenever possible.
15.3. Once the Service ends, workspace data is deleted within [PREENCHER — period], except data the law requires us to keep. Saved credentials are deleted with the workspace.
16. General provisions
16.1. These Terms are governed by the laws of the Federative Republic of Brazil.
16.2. The courts of [PREENCHER] have jurisdiction over any dispute.
16.3. If there is a version in another language, the Portuguese version prevails. [REVISAR]
16.4. Questions about these Terms: [PREENCHER — commercial or legal contact e-mail].