Terms of Service
These Terms of Service ("Terms") govern your use of the DevsFTP desktop application, website, and related services provided via devsftp.com. By downloading, compiling, or using DevsFTP, you agree to these Terms.
1. License & Open-Source Rights
DevsFTP is free, open-source software licensed under the GNU General Public License v3.0 (GPL-3.0-or-later).
- You are granted the freedom to run, inspect, study, modify, compile, and redistribute the Software subject to the terms of the GPL-3.0 license.
- The full license text is bundled with the source code and application binaries.
- Nothing in these Terms restricts or supersedes your statutory freedoms granted under the GNU GPL-3.0.
2. Local-First Client Architecture & Zero Server Storage
DevsFTP is designed from the ground up as an offline-capable, local-first workstation application. DevsFTP does not store, host, or process any of your files, passwords, or data on our servers.
- Zero Server Storage: DevsFTP operates no central cloud relays, proxy gateways, database backends, or middleman storage nodes. We never intercept, read, inspect, or retain your files, credentials, or session logs.
- Direct Peer-to-Server Traffic: All connections and transfers over SFTP, FTP, FTPS, WebDAV, Amazon S3, Dropbox, Google Drive, and Microsoft OneDrive occur directly between your device and your designated remote host or cloud provider endpoint.
- Local Key Vault: Master passwords, SSH keys, cloud OAuth tokens, and connection configurations are stored locally on your device and encrypted via AES-256-GCM (PBKDF2 with 800,000 iterations). You maintain exclusive ownership and control over your encryption keys and data.
3. Connection Protocols & Operational Responsibilities
When using DevsFTP to connect to remote servers and services, you are solely responsible for ensuring you have proper authorization and for the commands and configurations you execute:
A. SFTP & SSH Operations
- Host Key Verification: When connecting via SFTP or SSH, DevsFTP records host key fingerprints locally in
known_hosts.json. You are responsible for inspecting and verifying host fingerprint authenticity when prompted. Ignoring host key change warnings may expose your session to Man-in-the-Middle (MITM) attacks.
- SSH Tunneling & Port Forwarding: You are responsible for ensuring that any local, remote, or dynamic SOCKS5 SSH tunnels created through DevsFTP comply with your network security policies, acceptable use rules, and administrative authorizations.
B. Plaintext FTP vs. FTPS Security
- Assumption of Risk for Plaintext FTP: Standard File Transfer Protocol (RFC 959) transmits authentication credentials and file contents in cleartext across the network. If you choose to connect using plaintext FTP, you acknowledge and assume all security risks associated with unencrypted transmissions over public or untrusted networks. DevsFTP strongly recommends using SFTP or FTPS for sensitive operations.
- FTPS TLS Validation: FTPS connections validate certificates against your operating system trust store. Bypassing certificate warnings is performed at your sole discretion and risk.
C. Embedded SSH Terminal & Shell Execution
- Terminal Command Responsibility: Interactive terminal sessions run directly on the connected host via an integrated Xterm.js console. You bear exclusive responsibility for all shell commands, system modifications, process terminations, privilege escalations, or scripts initiated within terminal sessions. DevsFTP provides no rollback for destructive commands executed on remote shells.
4. Third-Party Cloud Services (Dropbox, Google Drive, Microsoft OneDrive, Amazon S3)
DevsFTP provides client interfaces to connect with third-party cloud infrastructure and storage platforms. When using these services, you acknowledge and agree to the following provisions:
A. Independent Client & Trademark Notice
DevsFTP is an independent open-source software project. DevsFTP is not affiliated with, endorsed by, sponsored by, or certified by Dropbox, Inc., Google LLC, Microsoft Corporation, or Amazon Web Services, Inc. "Dropbox", "Google Drive", "OneDrive", and "Amazon S3" are trademarks of their respective owners.
B. Provider Terms & Compliance
Your access to third-party cloud storage via DevsFTP is conditioned on your active account status and strict compliance with the terms established by each respective provider:
C. Amazon S3 & Object Storage Terms (API & Egress Fees)
- Provider Bandwidth & Request Fees: Cloud object storage platforms (AWS S3, Wasabi, Backblaze B2, MinIO, Cloudflare R2, DigitalOcean Spaces) frequently assess fees for API requests (
GET, PUT, LIST) and bandwidth egress. You are solely responsible for all usage fees and financial charges incurred with your storage provider resulting from file transfers, directory comparisons, or automated sync jobs initiated through DevsFTP.
- IAM Least-Privilege Recommendation: When configuring S3 connections, you are strongly advised to generate dedicated IAM credentials limited to the specific bucket namespace and operations (
s3:ListBucket, s3:GetObject, s3:PutObject, s3:DeleteObject) rather than using root or unconstrained administrator credentials.
D. Scope of Access & Data Privacy
- Strictly User-Initiated: DevsFTP accesses third-party cloud APIs exclusively to execute the file transfers, directory browsing, file deletion, and folder synchronization tasks you explicitly request.
- Direct Communication: Authentication flows and file transfers take place directly between your device and the cloud provider's official API endpoints. No intermediate servers or proxy relays are involved.
- Local Token Storage: OAuth tokens and secrets remain stored on your local workstation in encrypted profiles and are never transmitted to DevsFTP.
- No Advertising or Resale: Cloud account data, file contents, and metadata are never sold, rented, leased, disclosed to third parties, or used for targeted advertising or AI model training.
E. Service Quotas, Rate Limits & Availability
Third-party providers enforce storage quotas, bandwidth limitations, and API rate limits (e.g., HTTP 429 responses). DevsFTP implements automatic backoff handling, but you acknowledge that DevsFTP is not responsible for transfer interruptions, service outages, or account restrictions imposed by third-party cloud providers.
5. File Synchronization, Watchers & Backup Obligations
DevsFTP provides advanced productivity tools including Visual Directory Comparison, Save-to-Upload Watchers, and Automated Sync Schedulers. Use of these features is subject to the following operating safeguards:
- Operator Discretion in Batch Sync: When utilizing Visual Directory Compare or Batch Sync, you are solely responsible for reviewing file differences, timestamps, and directionality (local-to-remote, remote-to-local, or bidirectional mirror) before confirming synchronization. Overwritten or deleted files cannot be restored by DevsFTP.
- Save-to-Upload Watcher Verification: When the Save-to-Upload external IDE watcher is activated, local file saves immediately trigger remote file uploads. You are responsible for verifying target server directories and branch paths to avoid inadvertently overwriting production assets.
- Independent Backup Obligation: You agree that you are solely responsible for maintaining verified, independent backups of critical data before executing file synchronizations, transfers, or remote file deletions. DevsFTP does not provide remote snapshot recovery or file versioning rollbacks.
6. User Responsibilities & Acceptable Use
You agree to use DevsFTP responsibly and in accordance with all applicable laws. You agree that you will not:
- Use the Software to gain unauthorized access to computer systems, networks, or storage endpoints.
- Disrupt, overburden, or attack servers, networks, or cloud infrastructure.
- Transmit computer viruses, worms, malware, or illegal material.
- Violate export control regulations or the intellectual property rights of third parties.
7. Disclaimer of Warranties & Limitation of Liability
TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW:
- "As Is" Disclaimer: DevsFTP is provided on an "AS IS" and "AS AVAILABLE" basis without warranty of any kind, express or implied, including merchantability, fitness for a particular purpose, and non-infringement.
- Limitation of Liability: In no event shall the authors, copyright holders, or contributors of DevsFTP be liable for any direct, indirect, incidental, special, or consequential damages (including data loss, downtime, lost profits, or business interruption) arising out of the use or inability to use this Software.
8. Contact & Updates
We may update these Terms from time to time. Updated versions will be posted at https://devsftp.com/terms/. Continued use of the Software after modifications indicates your acceptance of the updated Terms.
For questions or inquiries regarding these Terms, contact our support team at support@devsftp.com.