Public API Terms of Service
LoyaltyDog Ltd · Last updated 16 September 2026
These terms are an addendum to the LoyaltyDog programme terms at loyalty.dog. They apply when you subscribe to Public API Access. Entity: LoyaltyDog Ltd, principal place of business Zichron Yaakov, Israel. Contact: legal@loyalty.dog.
1. The product
Public API Access is a subscription to use the documented HTTP API at api.loyalty.dog (versioned /v2, docs at docs.loyalty.dog). Creating or holding a credential is not itself the billed item. Dashboard login, digital passes, and first-party POS plugins are the existing LoyaltyDog programme and are not replaced by this product.
2. Who pays
Fees apply only to production use of public keys prefixed ld_live_ (and ld_test_ keys issued under a paid plan). They do not apply to dashboard session login, legacy JWT app keys or opaque legacyToken values, or first-party POS / platform traffic (Shopify, Clover, EPOS Now, WooCommerce / WordPress plugins).
3. Plans
USD, billed monthly via Stripe, auto-renewing. No free live production plan. Sandbox (ld_test_) is included with every paid plan. The fee is a flat monthly amount. Included calls per public key per UTC month are 100,000 on Standard, 250,000 on Growth, and 600,000 on Scale. Overage billing, if introduced, will be notified under section 10.
- Standard — $29 / month
- Growth — $59 / month
- Scale — $119 / month
- Enterprise — quoted; not self-serve
4. Keys and security
Public secrets are shown once, stored hashed, and are your responsibility. Use a secret manager; do not commit keys; rotate on staff change; revoke on leak. Do not use ld_test_ to move live wallet or gift-card value.
5. Limits, freeze, non-payment
We may rate-limit or quota public keys. Failed payment or abuse may freeze public keys (HTTP 402) until cured. Freeze of public keys must not by itself suspend dashboard login or POS / legacy credentials. Chargebacks may freeze public keys immediately.
6. Acceptable use
No key sharing across unrelated organisations; no probing of undocumented, wallet-protocol, webhook, or admin routes; no resale of API output except to operate your programme; no competitive scraping of confidential APIs.
7. Cancel and refunds
Cancel in Stripe Customer Portal. Access continues to the end of the paid period unless frozen for fraud. Fees are non-refundable except where law requires. Month-to-month; no long-term commitment.
8. No SLA in gen-1
The Service is provided as is and as available unless a separate written order says otherwise. We do not warrant uninterrupted or error-free operation. Except where law forbids, total liability for claims related to Public API Access shall not exceed the amounts you paid for it in the twelve months preceding the claim.
9. Privacy and DPA
The Privacy Policy and Data Processing Addendum form part of these terms. You are controller of End Customer Data; LoyaltyDog is processor of that data and controller of your account, billing, and security logs.
10. Changes
We may update these terms. Material fee or API-scope changes will be notified at least 30 days before they apply to a renewal. Continued use after notice is acceptance.