Terms of Service
Last updated 29 September 2026
An earlier version. Read the current one.
In short: These Terms cover stuga.dev, Stuga ID and remote access, not the Stuga software, which its own open-source license governs. For now, Stuga ID and paid plans are offered only in the United States and in Canada outside Québec. Paid plans renew automatically until you cancel, which you can do online at any time. If you ask within 14 days of your first payment or of a yearly renewal, you get that payment back in full.
1. Who we are and what these Terms cover
PillarXYZ, Inc., a New York corporation, makes Stuga. Our address is 800 Third Avenue, New York, NY 10022, United States, and our email is hello@stuga.dev.
These Terms are an agreement between you and us about our online services (“the services”):
- stuga.dev, this website;
- Stuga ID, your account at id.stuga.dev, where you also buy and manage plans;
- remote access, the paid service that gives your node its own web address, and billing for it.
These Terms don’t cover the Stuga software. Stuga, including Stuga for Claude, is open source. You get it under its license, which is the GNU Affero General Public License version 3, with some parts under the MIT License. You don’t need an account or any agreement with us to download, run, change or share it. Nothing in these Terms limits what that license lets you do.
These are also part of these Terms:
- the Refund and Cancellation Policy;
- the Acceptable Use Policy;
- the plan details that checkout shows you, such as the price and billing period.
The Privacy Policy explains what we collect and why.
2. Words we use
- “We”, “us” and “our” mean PillarXYZ, Inc.
- “You” means the person using the services. If you use them for an organization, it also means that organization.
- “Stuga” means the open-source software.
- “Stuga ID” means your free account with us at id.stuga.dev.
- “Your node” means a computer running Stuga that you or your team control, such as your own Mac.
- “Remote access” means the paid service that lets the people you allow reach your node from anywhere.
- “Your Stuga address” means the web address that remote access gives your node, such as
https://abc123.mystuga.com. - “The relay” means our server that passes connections from the internet to your node.
- “Consumer” means someone using the services mainly for personal, family or household purposes, not for a business.
3. Agreeing to these Terms
You accept these Terms by ticking the box that says so when you create a Stuga ID or buy a plan. We keep a record of which version you accepted, and when. If you accept for an organization, you confirm that you’re allowed to agree for it.
If you only visit stuga.dev, you don’t need to accept anything.
4. Who can use the services
- Where you live. For now, you can create a Stuga ID or buy a plan only if you live in the United States, or in Canada outside Québec. stuga.dev and the Stuga software are open to everyone.
- Age. You must be 16 or older to have a Stuga ID. To buy a plan you must be an adult: 18, or the age of majority where you live if that is higher. If we learn that a Stuga ID belongs to someone under 16, we delete it.
- Sanctions. You can’t use the services if you are in a country under a US trade embargo, or if you are named on a US government list of sanctioned or restricted parties.
- Businesses, teams and other organizations are welcome.
- Some services are available only by invitation for now.
5. Your Stuga ID
Free, and optional. Stuga ID is free, and Stuga works without it. You need it only for remote access and to sign in to nodes that accept it. Your node always keeps its own accounts.
One person, one account. Don’t share your Stuga ID, and don’t create a new one to get around a suspension. Keep your email address up to date, because that is where we send notices, receipts and reminders.
Passkeys. You sign in with passkeys, which live on your devices or in your password manager. We keep only their public keys, and a public key can’t be used to sign in. Anyone who can use your passkey can use your account, so look after your devices. If you think someone else got in, remove that passkey and write to hello@stuga.dev.
Your list of nodes. Your Stuga ID keeps a list of the nodes you own and the nodes you have signed in to, so you can find them again.
Other people’s nodes. A node belongs to whoever runs it, not to us. Its owner decides who gets in and what they can see, and is responsible for your account and your work there. When you sign in to a node with Stuga ID, the node receives an identifier made for that node only and a suggested username. It receives your email address only if you agree.
People you let into your node. You are responsible for:
- whom you invite;
- what they can reach;
- how they use your Stuga address.
Deleting your Stuga ID. You can delete it at any time at id.stuga.dev. When you do:
- Your subscriptions end and remote access stops right away. We don’t refund unused time, except as the Refund and Cancellation Policy says.
- Your nodes’ Stuga addresses are retired for good.
- Your nodes, and everything on them, keep working on your own computer and network.
- Your accounts on other people’s nodes stay there, but you can no longer sign in to them with Stuga ID. If you want to keep using them, set a password on each one first.
6. Remote access
What you get
Remote access is a subscription for one node. It gives your node a Stuga address that works from anywhere. People you let in can open your node in a browser from any network, and apps like Claude can connect to it.
How it works
Your node keeps a connection open to our relay. Today there is one relay, on a server we rent from Akamai (Linode) in Newark, New Jersey, in the United States.
When someone opens your Stuga address, the relay finds your node and passes the connection on. The connection is encrypted between the visitor’s device and your node, and the relay has no key to read it.
The relay does see:
- IP addresses, both the visitor’s and your node’s;
- your Stuga address;
- when connections happen;
- how much data passes.
The relay passes each visitor’s IP address on to your node. The Privacy Policy says what we keep and for how long.
To keep the relay fair for everyone, we may limit how fast each node’s traffic passes through it.
What we still control
- DNS. We run the DNS for mystuga.com, so we could get a certificate for your Stuga address. Any such certificate would appear in the public Certificate Transparency logs, where anyone can check.
- Stuga ID. A node that accepts Stuga ID trusts us to say who is signing in. So we, or someone who broke into Stuga ID, could sign in to that node as any person who uses Stuga ID there. Node accounts with their own passwords don’t depend on us.
- Updates. We publish Stuga updates. A node installs an update only when one of its administrators chooses to. Release files on GitHub can’t be replaced after they are published.
- Your Stuga address. We can block new connections to it, as section 13 describes.
Your Stuga address
- We choose it. It is random and contains no name.
- It is public. Every certificate for a Stuga address is recorded permanently in public Certificate Transparency logs, so anyone can find yours. Anyone on the internet can try to open it. What keeps people out is your node’s sign-in, not a secret address.
- You can use it, but you don’t own it. You can’t sell it, rent it out or move it to another node.
- We never give it to anyone else, even after you cancel. It stays reserved for your node. If you turn remote access on again for the same node, it gets the same address back. If you delete your Stuga ID, the address is retired for good.
- It works while your plan is active. That includes a trial, and the 14 days after a failed payment (section 7).
Certificates
Your node gets its own certificate for your Stuga address from Let’s Encrypt, a free, nonprofit certificate authority. The key for your Stuga address is created on your node and is never sent to us. We add the DNS records the certificate needs. By turning on remote access, you accept the Let’s Encrypt Subscriber Agreement.
What you need
- A Mac running a version of Stuga that offers remote access.
- Your node must be switched on, awake and online. When it isn’t, connections to your Stuga address fail.
What remote access is not
- It is not a backup. It doesn’t store your data. Keep your own copies.
- It comes with no uptime promise. We offer no service level agreement and no service credits. People far from the relay may notice a delay.
- It can be interrupted. Maintenance, outages and problems at our providers can all interrupt it. Every node shares the relay’s internet address. If our host blocks that address because of someone else’s abuse, remote access can stop for everyone for a while. We act quickly against abuse to keep that rare.
- It is not a general tunnel. It carries your Stuga node only. It doesn’t carry other apps, proxies or VPNs (see the Acceptable Use Policy).
- It doesn’t protect your node on its own. Remote access makes your node reachable from the whole internet. You are responsible for keeping Stuga up to date, using strong sign-ins and choosing whom to invite. Stuga doesn’t encrypt what it stores on your computer, so protecting that computer is also up to you.
7. Paid plans, trials and billing
Prices and taxes
Before you pay, checkout shows the price, the billing period and any tax. Remote access is billed per node, monthly or yearly.
Where the law requires, we add sales tax, GST, HST or similar taxes, based on where you are. If you buy for a business, you can add your tax ID at checkout.
Automatic renewal
Your subscription renews automatically until you cancel. At the end of each month or year, depending on your plan, we charge your payment method for the next period. The charge is your plan’s price plus any tax. That price is the one you agreed to at checkout, or a new price we emailed you about in advance (see below). There is no minimum term and no cancellation fee.
Free trials
Some plans and invite codes come with a free trial.
- A trial lasts 90 days. You add a card to start it, and we charge nothing during it.
- We email you 7 days before it ends. The email gives the price, the date of the first charge and how to cancel.
- When the trial ends, it becomes a paid subscription and we charge your card, unless you cancel before then.
- If you cancel during the trial, you pay nothing, and remote access keeps working until the trial ends.
Reminders and price changes
Besides the trial reminder, we email you:
- 7 days before a discount ends;
- 35 days before each yearly renewal;
- 30 days before your first renewal at a new price.
Each of these emails says what we’ll charge, when we’ll charge it and how to cancel.
We may change our prices, for example when our costs change. The price-change email shows the old price and the new one. If you don’t want to pay the new price, cancel before that renewal.
Payment
Stripe processes payments for us, under its own terms and privacy policy. Your card details go to Stripe, and we never see your full card number. We see only the card type, the last 4 digits and the expiry date. Our charges show on your card statement as STUGA.
You authorize us, through Stripe, to charge your payment method for your plan, its renewals and any tax, as these Terms describe.
If a payment fails
We email you and try again. Remote access keeps working for 14 days after the end of the period you paid for. If we still can’t collect payment by then, the subscription ends, remote access stops, and we don’t try that charge again. Your Stuga address stays reserved for your node, and you can subscribe again at any time.
Invite and discount codes
- A code may give you a free trial, a discount for a set period, or free access.
- Codes are personal and work once. They have no cash value. Don’t sell them or post them publicly. We can refuse a code that was sold or posted.
- A code may expire. The code, or the email it came in, says when.
- A discount lasts only for the period it states. After that, the normal price applies.
- Free access never becomes a paid plan unless you agree. If we end free access, we email you 30 days ahead.
Questions about a charge
If a charge looks wrong, please write to hello@stuga.dev first. We can usually sort it out faster than your bank. You can still dispute a charge with your bank or card issuer.
8. Cancelling and refunds
Cancelling
You can cancel in two ways:
- Online, at any time: from your Stuga ID account at id.stuga.dev, which takes you to the billing portal.
- By email: write to hello@stuga.dev from your account’s email address and tell us which Stuga address to cancel. An email cancellation counts from the day it reaches us.
We confirm every cancellation by email. Remote access keeps working until the end of the period you paid for, or until the end of your trial. Then it stops, and we don’t charge you again.
Refunds
- 14 days to change your mind. If you ask within 14 days of your first payment, or within 14 days of a yearly renewal, we refund that payment in full. Once we refund it, that subscription ends.
- Charged by mistake? We refund the charge.
- We also refund the unused part of your paid period when:
- we change remote access or these Terms in a way that’s worse for you, or we transfer your contract to another company, and you cancel within 30 days of our email about it, or within 30 days of the change if that is later;
- something outside our control stops remote access for more than 30 days;
- we end a service you paid for, for reasons that aren’t your fault.
- Otherwise, we don’t refund unused time, except where the law requires it. For example, in British Columbia you can cancel a yearly plan after it renews, and we refund the unused part within 15 days.
The Refund and Cancellation Policy has the details.
9. Your content, and what we can see
Your work stays yours. Your documents, tables, files and everything else you keep in Stuga are stored on your node, not with us. With remote access, your work passes through the relay over the encrypted connection described in section 6, and the relay can’t read it. We claim no rights to your content.
What we do handle:
- your email address and your passkeys’ public keys;
- the list of nodes you own or have signed in to;
- your payment records;
- connection details from the relay, such as IP addresses and connection times.
Every Stuga ID sign-in to a node goes through id.stuga.dev. So we know which node you signed in to and when, but not what you read or write there. The Privacy Policy has the full list, and says when we share information with authorities.
When we look into a report, we look at your Stuga address the way any visitor would.
You are responsible for what’s on your node, and for having the right to use it. If other people keep information on your node, you are responsible for it under the privacy laws that apply to you.
Ideas you send us. If you send us suggestions or feedback, we may use them without owing you anything.
10. Acceptable use
The Acceptable Use Policy applies to you and to everyone you let reach your node. In short:
- Don’t use the services to break the law or harm others.
- Use remote access for your own Stuga node only. That means no proxies, no VPN exits and no reselling access. It also means no public websites, no file distribution and no streaming to the public.
- Don’t pass pornographic or obscene material through remote access. Our host doesn’t allow it on its network, and all remote access traffic passes through that network.
- Don’t try to take over someone else’s Stuga address.
- Test security only on what you own, or with written permission.
The policy covers our services only. It doesn’t limit what the open-source license lets you do with the software.
11. Changes to the services
The services will change. We may add, change or remove features, add or move relays, change providers, or change limits. We do this for these reasons:
- to follow the law;
- to protect the services and the people who use them;
- to stop abuse;
- because a provider changes what it offers, or our costs change;
- to improve a feature or retire it.
If a change makes remote access worse for you, we email you at least 30 days before. The exception is a change that the law or an urgent safety problem forces sooner. Then we tell you as soon as we can. Either way, you can cancel and get back the unused part of your paid period (section 8).
12. Changes to these Terms
We may update these Terms for the reasons in section 11, or to cover a new service.
- We date every version at the top of this page and link earlier versions from here.
- For a change that matters to you, such as a change to your rights, to what you pay or to how disputes work, we email you 30 days before it takes effect. The email shows what changes. We also ask you to accept the change the next time you sign in or buy something.
- If you don’t agree with the change, you can cancel and get back the unused part of your paid period (section 8).
- If you keep using the services after the change takes effect, the new Terms apply to you.
- Small changes that don’t affect your rights, such as a fixed typo or an updated link, take effect when we publish them.
Earlier versions: 28 September 2026.
13. Suspending and ending the services
You
You can cancel a subscription or delete your Stuga ID at any time (sections 5 and 8).
Us
A person makes every enforcement decision.
- Serious harm. Sometimes we reasonably believe your Stuga address or account is being used for something seriously harmful. Examples are child sexual abuse material, active phishing or malware, and attacks on others. Then we block new connections to your Stuga address as soon as we can, and we may also suspend your Stuga ID. After that, we tell you. We report apparent child sexual abuse material to the National Center for Missing & Exploited Children, as US law requires.
- When we are required to. We also act without warning when a court, an authority or our hosting provider requires it.
- Other breaches of these Terms or the Acceptable Use Policy. We tell you what’s wrong and ask you to fix it, usually within 3 days, before we act.
- Non-payment, as section 7 describes.
- Repeated breaches. We close the accounts of people who repeatedly break these Terms, including people who repeatedly infringe copyright.
- Without a reason, with 30 days’ notice by email. We can stop offering a service to everyone, or to you. If you paid in advance, we refund the unused part.
When we suspend or end something, we tell you why, unless the law forbids it or telling you would put someone at risk of harm.
Appeals. If you think we got it wrong, write to hello@stuga.dev within 30 days. A person reviews every appeal and replies within 14 days.
What happens next
- Remote access stops, and your Stuga address stops working. It is never given to anyone else.
- Your node, and everything on it, keeps working on your own computer and network. We don’t delete anything on your node.
- We delete your Stuga ID data as the Privacy Policy describes. We keep billing records for as long as tax law requires.
- Parts of these Terms that are meant to last continue after the end. These include money owed and sections 17 to 20.
14. Services run by others
We run the services with providers such as Cloudflare, Akamai and Stripe, and we are responsible for them as part of our services. The Privacy Policy lists them.
Some services you may use alongside ours are not ours. We don’t control them and are not responsible for them:
- Let’s Encrypt issues your node’s certificate under its own agreement.
- AI providers. Your node’s administrator chooses which AI providers the node uses, if any. What your node sends them is covered by their terms, not ours, and we never see it.
- Claude and other apps. Stuga for Claude runs on your computer. Claude is Anthropic’s product, used under Anthropic’s terms. Any app you connect to your node sees what it reads and writes there.
- GitHub and npm host Stuga’s downloads under their own terms.
- Other people’s nodes are run by their owners (section 5).
15. Trademarks
“Stuga” and the Stuga logo are trademarks of PillarXYZ, Inc. Our trademark policy says how you may use them. Having a Stuga address gives you no right to the name. Don’t make anything at your Stuga address look as though it comes from us.
16. Security problems
If you find a security problem, please report it privately, not in public:
- Stuga ID, remote access, billing or our websites: email hello@stuga.dev with “Security” in the subject.
- The Stuga software: use GitHub’s private reporting, as our security policy describes.
Our security.txt lists both. Test only what you own, or what you have written permission to test. The Acceptable Use Policy says what is allowed on our services.
17. What we promise, and what we don’t
We run the services with reasonable care and skill, and they do what these Terms and checkout describe.
Beyond that, we provide the services “as is” and “as available”, to the extent the law allows. We don’t promise that the services will always be available, uninterrupted or free of errors, or that they suit your particular purpose. We give no other warranties, express or implied, including warranties of merchantability, fitness for a particular purpose and non-infringement.
Nothing in these Terms, or in the pages they include, takes away rights that consumer law gives you.
18. Limits on our liability
What we never limit. Nothing in these Terms limits our liability for:
- fraud;
- our gross negligence or wilful misconduct;
- death or personal injury that we cause;
- anything else the law doesn’t let us limit.
If you use the services for a business, we are not liable for indirect or consequential loss. We are also not liable for lost profits, revenue, business, data or goodwill, even if we were told these might happen.
If you are a consumer, we are responsible for loss that was a foreseeable result of our breaking these Terms or failing to use reasonable care. We are not responsible for loss that nobody could have foreseen.
Our total liability for all claims about the services is limited to whichever is greater: US$100, or what you paid us in the 12 months before the claim.
19. Indemnity (business customers only)
This section applies only if you use the services for a business.
Someone else may bring a claim against us that arises from:
- your content or your node;
- how you, or people you let in, used the services or your Stuga address;
- your breach of these Terms, the Acceptable Use Policy or the law.
If that happens, you defend us and pay the resulting damages, costs and reasonable legal fees. This doesn’t cover a claim to the extent it comes from our own breach of these Terms or our own negligence.
We tell you about the claim promptly, let you run the defense, and help at your cost. You can’t settle a claim without our agreement if the settlement admits fault for us or costs us money.
20. Disagreements, law and courts
Talk to us first. Most problems can be solved by email. Please write to hello@stuga.dev and give us 30 days to put things right. This is a request, not a condition: it doesn’t stop a consumer from using their legal rights sooner.
Law. The laws of the State of New York and the federal laws of the United States govern these Terms, without regard to conflict-of-law rules.
Courts.
- Disputes go to the state or federal courts in New York County, New York, and both of us agree to those courts.
- If you are a consumer, you can also bring a claim in the courts where you live.
- If we ever take a claim against a consumer to court, we do it where they live.
- Either of us may use a small claims court instead, if the claim qualifies.
No arbitration. These Terms contain no arbitration clause and no class-action waiver.
21. Emails and notices
We send notices, receipts and reminders by email to the address on your Stuga ID. You agree to receive them electronically, and they count as notices “in writing”. To read them, you need an email account and a device that can open email.
For a free paper copy of any notice, write to hello@stuga.dev. Our services run online, so the only way to stop electronic notices is to delete your Stuga ID.
Send notices to us at hello@stuga.dev.
22. General terms
- The whole agreement. These Terms, the pages they include and the plan details you accept at checkout make up the whole agreement between us about the services.
- If one part doesn’t hold. If a court finds part of these Terms unenforceable, the rest still applies.
- No waiver. If we don’t enforce something straight away, we can still enforce it later.
- Transfers. You can’t transfer your account or subscriptions to someone else without our agreement. We may transfer these Terms to a company that takes over the services, for example in a sale. If we do, we tell you, and your rights under these Terms stay the same. You can also cancel and get back the unused part of your paid period (section 8).
- Events outside our control. We are not responsible for delays or failures caused by events we can’t reasonably control, such as wide internet outages, natural disasters or government action. If such an event stops remote access for more than 30 days, you can cancel and get back the unused part (section 8).
- Only you and us. No one else can enforce these Terms.
23. Contact
PillarXYZ, Inc., 800 Third Avenue, New York, NY 10022, United States
- General questions, support and privacy: hello@stuga.dev
- Abuse reports: abuse@mystuga.com (if that doesn’t work, hello@stuga.dev)
- Security problems: see section 16
California residents: you can contact the Complaint Assistance Unit of the Division of Consumer Services of the California Department of Consumer Affairs. Write to 1625 North Market Blvd., Suite N 112, Sacramento, CA 95834, or call (800) 952-5210.