Private beta — legal draft

Private beta terms of use

The conditions this beta is actually operated under: how access is granted, what may not be done with a shared upstream credential, and what a monthly token ceiling does and does not promise.

Draft — pending legal review

This is not a finished contract. The operating legal entity, its registered address and its permitted business activity have not been supplied, and no lawyer has reviewed this text. It is not legal advice. It must be professionally reviewed, and the operator's identity completed, before the service is offered commercially or for a fee.

Document: private beta terms of use, draft version 0.1
Date of this draft: 8 October 2026
Status: not in force. The effective date will be set when the operator's legal identity is supplied and professional review is complete.

1. What GunTech Cloud is, and what it is not

GunTech Cloud is a small, founder-operated gateway that sits between an application and Anthropic's Messages API. It issues project-scoped credentials, enforces a per-key request-per-minute rule and an approximate monthly token ceiling, forwards validated requests to the model, and records request-level usage metadata without storing prompt bodies in that usage ledger. Access is by manual invitation during a private beta.

It is equally important to be precise about what this is not:

Nothing on the website is an offer of service. A pilot request is a request for review, not an order, an entitlement or a contract.

2. Private beta conditions

3. Acceptable use

The following are prohibited, and the list is not a formality: the gateway holds a shared upstream credential, so misuse by one pilot reaches beyond that pilot.

Consequences are proportionate and factual: the operator may revoke keys, stop forwarding requests, withdraw access, and, where a legal obligation or a provider's terms require it, report the matter. The gateway validates requests against an allowlist, so unsupported parameters are rejected before reaching the model; finding another way to send unsupported input is also a breach of these terms.

4. Credentials: issue, custody and revocation

Read this first

5. The token ceiling is not a spending guarantee

Every project has a monthly token ceiling. It is an operational traffic control. It is not a financial limit, it is not a cap on your Anthropic bill, and it must not be used as one.

  • What it counts. The ceiling counts tokens observed by this gateway, in a UTC calendar month. It cannot see usage that did not pass through GunTech Cloud, including calls your application makes to Anthropic directly, calls made with another credential, and usage on any Anthropic account by any other means.
  • How a request is admitted. Before forwarding, the gateway estimates the input tokens from the character length of the content and reserves that estimate plus the request's full max_tokens, because Anthropic reports output tokens only after they have been produced. The request is rejected with 429 budget_exceeded if the settled total, the in-flight reservations and this estimate would together exceed the ceiling. The estimate is deliberately conservative, but it is an estimate: it can be wrong in either direction.
  • How it settles. After a successful call, the reservation is released and the tokens Anthropic reported are recorded. If Anthropic reports more than was reserved, the excess is recorded rather than hidden, so a single expensive request can push the month slightly past the ceiling. If a request fails before inference, its reservation is released in full.
  • Tokens are not currency. A token is a unit of model input and output. It is not a price, it is not money, and no exchange rate between tokens and any currency is published here or should be inferred. Different models and different token categories are priced differently by Anthropic, and that pricing is Anthropic's to set and to change.
  • Anthropic's invoice is authoritative. The record of what is actually charged is the invoice and usage reporting on the operator's Anthropic account. This gateway's counters are a separate, approximate record, and they are reconciled against that invoice separately. Where the two disagree, the provider's figures govern.
  • The upstream account is shared. In the current architecture all pilots and the operator use the same Anthropic account and credential. Usage by one pilot consumes the same account-level quota as any other, and the provider's own limits on requests and tokens per minute can reject a request that this gateway would have allowed. Those limits are Anthropic's, not GunTech Cloud's.
  • What is not offered. No spend cap, no maximum charge, no refund or credit for an overrun, no compensation for a rejected request, and no guarantee that the ceiling will engage before a cost is incurred. If you need a hard monetary limit, set one at your own billing level with your provider, and treat this ceiling as an additional, approximate guardrail rather than the control you depend on.

6. Request handling limits

The gateway's application-facing contract is one route: POST /v1/messages. It accepts a deliberately narrow subset of the upstream contract, and this deployment is configured for a single model, currently claude-sonnet-5-5.

A request can be rejected for quota, rate or validation reasons. The codes are specific, and this is what they mean:

Rejections and failures
StatusMeaning
401The project key is missing, malformed, unknown or revoked. A revoked key is deliberately indistinguishable from an unknown one.
422The request body failed validation: an unsupported parameter, a wrong type, a value outside the limits above, or a body over the size cap. Nothing was forwarded to the model.
429 rate_limitedThe project's per-minute request window is exhausted. Nothing was forwarded.
429 budget_exceededForwarding would exceed the project's monthly token ceiling. Nothing was forwarded, and no completion is fabricated.
503 not_configuredThe operator's upstream credential is not configured for this deployment. The gateway fails visibly rather than returning an invented response.
502, 504The upstream service was unavailable, returned something unusable, or timed out. Provider error text is not echoed back, because it can quote the prompt.

7. Disclaimer and limitation of liability

The service is provided as is and as available, as a private beta, without warranties of any kind, whether express or implied, including any implied warranty of merchantability, fitness for a particular purpose, title or non-infringement, and without any warranty that the service will be uninterrupted, timely, secure or free of errors, that defects will be corrected, or that any data will be preserved.

8. Availability, suspension and changes to the service

9. Fees

No fees are charged during the private beta, no prices are published, and no checkout exists. In the current architecture the operator bears Anthropic's API charges on the operator's own account; those charges are between the operator and Anthropic and are not resold to a pilot as tokens. If a paid service is introduced, it will be a separate agreement with its own terms, a real refund position, a tax position and a support workflow in place before any payment is requested. Nothing in these terms obliges a pilot to pay anything, and no charge can arise from continued use of the beta.

10. Changes to these terms

The operator may revise these terms. A revision is published on this page with a new version number and date, and a material change affecting an active pilot will also be raised through the channel used to reach that pilot. Continued use of the service after a change is published means the change is accepted. A pilot that does not accept a change can ask the operator to withdraw its access, and the project keys will be revoked under section 4. This is draft version 0.1, dated 8 October 2026, and it is not in force.

11. Governing law and disputes

These terms are intended to be governed by the laws of the Republic of Indonesia, and disputes are intended to be subject to the courts of Indonesia. That is a draft position for professional review, including whether a different venue, a language of proceeding or an arbitration clause is appropriate, and nothing here waives any mandatory protection available to you under the law of your own jurisdiction. No choice of law has been agreed with any pilot yet, and this paragraph will not be relied on as a settled term until that review is complete.

12. Operator status

To be completed before commercial launch

Operator identity

The legal name of the operating entity, its legal form, its registered address, its company registration number and the business activity it is permitted to carry on have not been supplied to this document. This section is the place they will occupy, inserted verbatim from the operator's registration documents, together with the professional review of these terms, before the service is offered commercially or for a fee. No legal name, address, registration number or tax identifier is printed on this page, because none has been supplied; anything that looked like one would be fabricated.

One address, delivery not yet verified

Contact route

One address is configured to receive mail for this domain, [email protected], and the domain's mail exchanger records point to Cloudflare Email Routing, so mail addressed there is accepted at the DNS level. That is not the same as a working mailbox: inbound delivery and outbound replies have not both been tested, and this project's release gate requires that test before an address is offered as a working channel. Treat the address as unverified, because a message sent to it may not reach the operator and a reply may not arrive. There is no phone number and no postal address for this product, and none should be assumed. The verified contact route will be published here and in the privacy statement when both directions are confirmed.

13. Related documents