Terms of Service
Disclaimer: This is a template document. Not legal advice. Have a Swedish data protection lawyer review before relying on it for production contracts. Last updated 2026-05-11.
Terms of Service
Version: v1.1-2026-05-11
These Terms of Service ("Terms") govern your access to and use of the Naetive service ("Service") provided by Naetive AB (in formation), Sweden ("Naetive", "we").
1.Service description
Naetive is an AI routing and compliance service. Instead of connecting their AI software directly to an AI provider (such as Anthropic or OpenAI), Customers connect through Naetive. Naetive then:
- Routes each request to the appropriate AI provider according to a per-Agent Routing Manifest — a signed document that specifies which provider handles which type of task and what data-handling rules apply.
- Returns the AI provider's response to the Customer unchanged.
- Records a tamper-evident audit trail for every request, which can be exported as a compliance report.
Naetive supports the request formats used by OpenAI, Anthropic, and Google Gemini, so most Customers can connect without changing their code.
1.1Routing tiers
Customers choose one of three data-handling tiers for each category of AI task in their Routing Manifest:
- EU-Managed Routing — Naetive runs the request on Naetive-managed Mistral infrastructure in France. No data leaves the EU. No provider account needed from the Customer.
- Customer-Key Routing — The Customer provides their own API credentials for a designated provider (e.g. their Anthropic Team account). Naetive routes using those credentials; the Customer pays the provider directly. Requires a valid data processing agreement between the Customer and the provider.
- Cost-Optimised Routing — Naetive selects the most economical available provider for each request. No geographical guarantee. Suitable for non-sensitive, development, or test workloads only.
2.Acceptance
By using the Service you agree to these Terms. If you are agreeing on behalf of an organisation, you represent that you have authority to bind that organisation.
3.Account and authentication
Customers receive one or more API keys (bearer tokens) used to authenticate requests to Naetive. You are responsible for keeping these keys confidential. You must notify Naetive immediately of any suspected compromise at einar.naslund@naetive.eu.
API credentials that Customers supply for third-party providers (Customer-Key Routing) are stored encrypted on Naetive's servers and are never transmitted in plain text or shared with any party other than the designated provider.
4.Acceptable use
You agree not to use the Service to:
- Transmit content that is illegal under Swedish, EU, or applicable national law
- Submit special-category personal data (such as health data, biometric data, or data revealing racial or ethnic origin) under the Cost-Optimised Routing tier
- Submit personal data of third parties without a lawful basis under GDPR
- Attempt to bypass or defeat the safety measures of upstream AI providers at scale
- Reverse-engineer the Service in order to build a competing AI routing or compliance product
- Generate output for unlawful purposes, including but not limited to child sexual abuse material, targeted harassment, fraud, or mass disinformation
- Use the Service in any application where a failure could cause loss of life or serious bodily harm
5.Customer data and privacy
The processing of personal data submitted to the Service is governed by the Data Processing Agreement at /legal/dpa and the Privacy Policy at /legal/privacy-policy. Both documents are incorporated into these Terms by reference.
6.Service availability
The Service is provided on a best-effort basis. During the current pilot phase, no formal service-level agreement (SLA) with quantitative uptime or latency commitments is offered. A paid SLA tier is on the product roadmap.
Naetive may modify, suspend, or discontinue parts of the Service with reasonable prior notice. Naetive will use commercially reasonable efforts to communicate planned maintenance and to maintain a public status page.
7.Pricing
Pricing follows the Shared Savings model: Naetive charges a percentage of the cost reduction achieved by routing requests through Naetive compared with what the Customer would have paid by sending all requests to a single baseline provider. The exact percentage and baseline model are specified in the Order Form.
If the Service produces no savings in a given billing period, no fee is charged for that period.
For Customer-Key Routing, the Customer pays the AI provider directly through their own account; Naetive charges only on the routing optimisation savings achieved on top of that.
For EU-Managed Routing, the provider cost is included in the Naetive fee as set out in the Order Form.
8.Acceptance
By using the Service the Customer accepts these Terms. The signature block below is for Customers who require a countersigned Order Form.
| Accepted by Customer | |
|---|---|
| Legal entity name | |
| Name of signatory | |
| Title | |
| Date | |
| Signature | |
Additional commercial terms (per-seat fees, SLA fees, etc.) are set out in the Order Form.
9.Confidentiality
Each party will protect the other's confidential information with at least the same degree of care it applies to its own confidential information of similar sensitivity, and in no case less than a reasonable standard of care.
10.Intellectual property
Naetive retains all rights in the Service, including the routing logic, compliance models, and audit-trail infrastructure. The Customer retains all rights in Customer Data, including prompts, responses, and the Routing Manifests generated for the Customer's Agents. Naetive holds a limited licence to process Customer Data solely to provide the Service, as described in the DPA.
11.Warranties and disclaimers
The Service is provided "as is". Naetive disclaims all implied warranties to the maximum extent permitted by Swedish law. Naetive does not warrant that AI model responses are accurate, complete, or suitable for any particular purpose — the Customer is responsible for evaluating AI output before acting on it. Naetive's Routing Manifests and Agent Audit Bundles are evidence artefacts to support the Customer's compliance assessment; they do not constitute legal advice and do not guarantee compliance with any specific regulatory obligation.
12.Limitation of liability
To the extent permitted by Swedish law, Naetive's total aggregate liability under these Terms is limited to the fees paid by the Customer in the twelve months preceding the event giving rise to the claim. Neither party is liable for indirect, consequential, or special damages — including lost profits, loss of revenue, or loss of data — except in cases of gross negligence or wilful misconduct.
13.Indemnification
The Customer will indemnify Naetive against third-party claims arising from: the Customer's misuse of the Service; breach of Section 4 (Acceptable use); unlawful processing of personal data; or activating Customer-Key Routing without holding a valid data processing agreement with the designated provider.
14.Termination
Either party may terminate the Agreement on 30 days' written notice. Either party may terminate immediately for a material breach not cured within 30 days of written notice. On termination, Naetive will delete or return Customer Data in accordance with Section 14 of the DPA. API credentials supplied for third-party providers are deleted within 24 hours of termination.
15.Modifications
Naetive may update these Terms with at least 30 days' written notice. Continued use of the Service after the effective date of an update constitutes acceptance of the updated Terms.
16.Governing law and jurisdiction
These Terms are governed by Swedish law. Disputes are subject to the exclusive jurisdiction of the courts of Stockholm, Sweden.
17.Contact
Questions about these Terms: einar.naslund@naetive.eu