Public API Terms of Service

LoyaltyDog Ltd · Last updated 16 September 2026

These terms are an addendum to the LoyaltyDog programme terms at loyalty.dog. They apply when you subscribe to Public API Access. Entity: LoyaltyDog Ltd, principal place of business Zichron Yaakov, Israel. Contact: legal@loyalty.dog.

1. The product

Public API Access is a subscription to use the documented HTTP API at api.loyalty.dog (versioned /v2, docs at docs.loyalty.dog). Creating or holding a credential is not itself the billed item. Dashboard login, digital passes, and first-party POS plugins are the existing LoyaltyDog programme and are not replaced by this product.

2. Who pays

Fees apply only to production use of public keys prefixed ld_live_ (and ld_test_ keys issued under a paid plan). They do not apply to dashboard session login, legacy JWT app keys or opaque legacyToken values, or first-party POS / platform traffic (Shopify, Clover, EPOS Now, WooCommerce / WordPress plugins).

3. Plans

USD, billed monthly via Stripe, auto-renewing. No free live production plan. Sandbox (ld_test_) is included with every paid plan. The fee is a flat monthly amount. Included calls per public key per UTC month are 100,000 on Standard, 250,000 on Growth, and 600,000 on Scale. Overage billing, if introduced, will be notified under section 10.

  • Standard — $29 / month
  • Growth — $59 / month
  • Scale — $119 / month
  • Enterprise — quoted; not self-serve

4. Keys and security

Public secrets are shown once, stored hashed, and are your responsibility. Use a secret manager; do not commit keys; rotate on staff change; revoke on leak. Do not use ld_test_ to move live wallet or gift-card value.

5. Limits, freeze, non-payment

We may rate-limit or quota public keys. Failed payment or abuse may freeze public keys (HTTP 402) until cured. Freeze of public keys must not by itself suspend dashboard login or POS / legacy credentials. Chargebacks may freeze public keys immediately.

6. Acceptable use

No key sharing across unrelated organisations; no probing of undocumented, wallet-protocol, webhook, or admin routes; no resale of API output except to operate your programme; no competitive scraping of confidential APIs.

7. Cancel and refunds

Cancel in Stripe Customer Portal. Access continues to the end of the paid period unless frozen for fraud. Fees are non-refundable except where law requires. Month-to-month; no long-term commitment.

8. No SLA in gen-1

The Service is provided as is and as available unless a separate written order says otherwise. We do not warrant uninterrupted or error-free operation. Except where law forbids, total liability for claims related to Public API Access shall not exceed the amounts you paid for it in the twelve months preceding the claim.

9. Privacy and DPA

The Privacy Policy and Data Processing Addendum form part of these terms. You are controller of End Customer Data; LoyaltyDog is processor of that data and controller of your account, billing, and security logs.

10. Changes

We may update these terms. Material fee or API-scope changes will be notified at least 30 days before they apply to a renewal. Continued use after notice is acceptance.