Xiaotime Labs · Last updated September 3, 2026
By accessing or using the Xiaotime Labs website, the Integrated Cyber Risk Governance (ICRG) platform, or our advisory services (together, the "Service"), you agree to be bound by these Terms of Service. If you do not agree, do not use the Service.
Xiaotime Labs provides governance infrastructure for teams shipping with AI: policy, controls, and evidence expressed as code and run inside the delivery pipeline, together with the advisory engagements that support it. Features and scope may change over time.
The Service may connect to systems you operate, such as source control, CI/CD, cloud accounts, and security tooling, with your authorization, in order to evaluate policy and collect evidence. You are responsible for complying with the terms of those third-party services. You may revoke access at any time.
The Service, including its software, design, and branding, is the property of Xiaotime Labs. Your data remains yours. We claim no ownership over content you provide or generate through the Service.
To the maximum extent permitted by law, Xiaotime Labs shall not be liable for any indirect, incidental, special, consequential, or punitive damages arising from your use of the Service. The Service is provided "as is" without warranties of any kind.
We may suspend or terminate your access to the Service at any time, with or without cause. You may stop using the Service at any time. Upon termination, your right to use the Service ceases immediately.
We may modify these Terms at any time. Continued use of the Service after changes constitutes acceptance of the updated Terms.
These Terms are governed by the laws of the State of Delaware, without regard to conflict of law principles.
For questions about these Terms, contact us at info@xiaotime.ai.