Terms of use
Last updated 12 August 2026
Cofound is an early-stage product run by one person. These terms are short and say what actually matters rather than covering every eventuality.
Using the service
You need a GitHub account to sign in, and access to this deployment is limited to an allow list. You are responsible for what you and your teammates do with the agent, and for the code it produces on your behalf.
Do not use Cofound to:
- work on code you do not have the right to work on
- generate malware, or anything designed to gain unauthorised access to a system
- attack the service, or work around its access controls or rate limits
- put personal data about other people into a project without a lawful basis
The agent writes code, and it is sometimes wrong
Output is generated by a language model. It can be incorrect, insecure, or subtly wrong in ways that look right. Cofound runs static checks on the agent's work and, when you connect a machine, can run your own tests, and neither of those makes the output correct. Review what it produces before you rely on it, exactly as you would review a pull request from someone you have not worked with before.
You own what you put into Cofound. As between you and Cofound, you own the output too. Cofound claims no rights over your code.
The local runner, which deserves its own section
Cofound can connect to a runner on your own computer so the agent can run your tests. If you choose to do that, understand what you are agreeing to:
- The commands are chosen by a language model. Nobody wrote them deliberately in advance.
- In a shared project, a teammate's prompt is what causes them. The runner asks you to approve every command by default, and you should keep it that way unless you have thought hard about the alternative.
- It runs with your permissions, in the directory you choose. It cannot run a shell, escalate privileges, or work outside that directory, and it is still running real commands on your machine.
- You are responsible for what happens on your own computer. Cofound is not liable for damage, data loss or disclosure resulting from commands you approved.
The runner is provided as source you can read before you run it. Reading it before pasting a token is a reasonable thing to do, and it is short on purpose.
Third parties
Cofound sends your prompts and project content to a model provider in order to work, and uses GitHub, Vercel and other services described in the privacy policy. Their terms apply to what they do with data once it reaches them. If you supply your own API key, your agreement with that provider governs that usage.
Availability
There is no uptime commitment. Projects and their history are deleted 30 days after last use, automatically. Keep anything you care about in a repository rather than only here.
Liability
The service is provided as is, without warranties. To the extent the law allows, Cofound is not liable for indirect or consequential loss, lost data, or lost profit. Nothing here limits liability for death, personal injury, or fraud, because that cannot be limited.
Ending it
You can stop using Cofound at any time; see the privacy policy for how to remove your data. Access may be withdrawn if these terms are broken, or if the service is shut down.
Governing law
These terms are governed by the laws of England and Wales.