TERMS OF SERVICE
Last updated: August 25, 2026

1. AGREEMENT AND OPERATOR

These Terms of Service (“Terms”) form a legally binding agreement between you and Said Mabchour, an individual operating the DeCode software
product from Morocco (“DeCode,” “we,” “us,” or “our”). Said Mabchour is the operator and licensor of the DeCode software unless the Legal
Center is later updated with accurate information identifying a different lawful operator.

“DeCode” is the product and brand name of the software service. DeCode is not represented as a separate incorporated company unless accurate
incorporation information is published in the Legal Center and used consistently in billing, support, tax, banking, and payment-provider
records.

By accessing https://decodeai.net, creating an account, using a DeCode feature, connecting a supported integration, or purchasing a
subscription, you agree to these Terms and acknowledge the policies linked from the DeCode Legal Center, including the Privacy Policy,
Refund Policy, Cancellation Policy, Acceptable Use Policy, Content Safety Policy, and Cookie Policy.

If you do not agree to these Terms, do not create an account, purchase a subscription, or use DeCode.

2. DESCRIPTION OF DECODE

DeCode is a self-service digital software and software-as-a-service product that provides artificial-intelligence productivity, research,
communication, and programming features electronically through a DeCode account.

Current public features may include:
- conversational AI assistance;
- writing, summarisation, research, and productivity assistance;
- programming and code assistance;
- web-assisted and file-supported tools;
- image generation subject to safety controls and payment-partner requirements;
- voice input, transcription, synthetic voice output, and realtime voice interaction;
- a Roblox Studio Assistant for projects the user owns or is authorised to modify;
- conversation, project, and usage history;
- usage-credit management;
- subscription and billing access; and
- customer-support, reporting, and safety functions.

DeCode is not a marketplace for third-party sellers, an agency, a consulting business, a homework or essay-writing service, a human
freelancing service, a donation service, a payment service, a cryptocurrency product, a gambling service, or a physical-goods store.

A paid DeCode subscription provides access to self-service software and usage allowances. It does not purchase individual consulting,
design, legal, medical, investment, development, marketing, telemarketing, or other manually fulfilled services.

3. DEFINITIONS

For these Terms:
- “Account” means a DeCode user account.
- “Buyer” means a person or business purchasing an eligible DeCode Product from Creem through the Creem Checkout Solution.
- “Checkout Solution” means the online checkout solution provided by Creem through which eligible Buyers complete a purchase.
- “Creem” means Armitage Labs OÜ (registry code 16977866), registered at Rotermanni 14, Tallinn 10111, Estonia, when it acts as
  Merchant of Record and contractual reseller for an eligible Transaction.
- “Creem Buyer Terms” means Creem’s buyer terms governing a Buyer’s purchase from Creem and use of Creem’s Checkout Solution and Customer
  Portal, available at https://www.creem.io/buyer-terms.
- “Customer Portal” means the self-service portal Creem makes available to Buyers following a successful purchase.
- “Paid Plan” means a recurring DeCode subscription or other paid software entitlement disclosed before checkout.
- “Payment Provider” means Creem for eligible checkout and Transactions.
- “Product” means the DeCode software or subscription made available to a Buyer.
- “Provider” means a third-party service provider used to operate DeCode, such as hosting, authentication, AI, email, security, or payment
  providers.
- “Transaction” means an eligible purchase, renewal, refund, adjustment, or other billing transaction processed through Creem’s Checkout
  Solution or Customer Services.
- “Usage Credits” or “Credits” means internal units used to measure eligible DeCode software usage; they are not money or stored value.
- “User Content” means content or information submitted by a user to DeCode.

4. FEATURE STATUS AND ACCURACY OF PRODUCT DISCLOSURES

Only features that are actually available and described as included on the current DeCode Pricing page and at checkout are active paid
benefits. A feature shown as “coming soon,” “in development,” “beta,” “unavailable,” or disabled is not an active paid benefit unless the
purchase flow clearly says otherwise.

DeCode will use commercially reasonable efforts to keep public product descriptions, prices, billing intervals, feature lists, usage
allowances, and checkout disclosures accurate. If a material conflict exists between a marketing page and the final Creem Checkout Solution
presented immediately before purchase, the checkout information controls the billing terms of that Transaction, subject to mandatory
consumer law.

5. IMAGE, VOICE, AND VIDEO FEATURE STATUS

Image generation is available only when DeCode’s safeguards, the selected AI provider’s safeguards, and applicable payment-partner
requirements are satisfied.

Otherwise safe image generation may depict a clearly fictional, generic, or invented human character, including a realistic, photorealistic,
stylized, illustrated, cartoon, or animated face, when the character does not imitate or preserve the identity of an identifiable real person
and all required moderation and safety checks pass. A realistic or photorealistic presentation alone is not a reason to block a request; the
relevant distinction is between an invented character and the recognizable identity or likeness of a real person.

DeCode does not support face swaps, deepfakes, face manipulation, identity transfer or preservation, deceptive impersonation, or generating
or using a recognizable real person’s face or likeness in an unauthorised, harmful, or misleading way.

Every enabled image-generation prompt must pass DeCode’s applicable safety controls and Creem Moderation API screening before generation. A
Creem decision of “flag” or “deny” blocks generation; an “allow” decision does not override DeCode’s other safety rules.

Voice and realtime features use provider-supplied, licensed, or otherwise authorised synthetic voices. DeCode does not provide a feature
intended to create a reusable clone of a real person’s voice.

Video generation is not part of the public paid DeCode service unless DeCode updates its public product description, pricing disclosures,
safety controls, privacy disclosures, Terms, Acceptable Use Policy, and payment-compliance information before launch.

6. ELIGIBILITY

You may use DeCode only if you are legally capable of entering into the agreement that applies to you and your use is lawful in your
location.

Where the DeCode registration flow or product policy states an 18+ requirement, you must be at least 18 years old. You must not provide
false eligibility information or create an account on behalf of a person who is not eligible.

DeCode may restrict or close an account where it reasonably believes the user does not satisfy applicable eligibility requirements.

7. ACCOUNT REGISTRATION AND SECURITY

You must provide accurate account information and maintain a valid email address. You are responsible for protecting your password,
authentication methods, recovery information, and devices used to access DeCode.

Public account creation may support email and password, Google, or Microsoft when the corresponding option is shown and operational. DeCode
may temporarily restrict a particular sign-in method during an outage, security incident, or provider configuration problem without making
public Product, Pricing, Support, or Legal pages private.

A first-time social sign-in may require the user to complete the Signup flow and confirm the 18+ requirement. The identity
provider handles its own authentication and applies its own terms and privacy notice.

An email-and-password account may be asked to verify its email address. DeCode may also send a short-lived email code to confirm a login or
a sensitive action. A provider account may instead require the same linked provider account to be used again. These checks do not replace
the user’s responsibility to keep the email account, provider account, and devices secure.

You must promptly report suspected unauthorised access. DeCode may require re-authentication or other reasonable security checks for
sensitive actions, including changing account information, opening billing-management links, deleting an account, or handling certain
support requests.

Passkeys

Where offered, passkeys are available to eligible email-and-password accounts. A passkey uses the device or password manager selected by the
user and may rely on a device unlock method such as Windows Hello, Touch ID, Face ID, a PIN, or another local verification method. DeCode
stores the public credential and limited security metadata needed to recognise and manage the passkey; it does not receive the user’s
biometric template or the passkey’s private key. Adding or removing a passkey requires a recent ownership check.

Authenticator app

A user with a verified email address may be able to add time-based one-time-password authentication using Google Authenticator, Microsoft
Authenticator, Apple Passwords, or another compatible app. Setup requires scanning a QR code or entering the displayed secret and then
confirming a current six-digit code. Once enrolled, a current Authenticator code may be required at future sign-ins and before certain
security changes. Removing the factor requires re-authentication. The user is responsible for retaining access to the selected app and
device.

Sessions and security notices

DeCode may register signed-in browser sessions and show the browser, operating system, device type, approximate location or time zone, and
last activity. Users may disconnect another session or all devices. Changing an email-account password disconnects existing sessions and
requires sign-in again. DeCode may also send verification, password-reset, login-alert, or account-security emails.

Memory

The Memory setting is intended to help General Chat remember durable preferences, recurring goals, ongoing projects, and useful working
context. It is enabled by default for a new account. The user can review and edit the stored summary or turn Memory off. While Memory is off,
the summary is not read or updated, but it remains stored until the user clears it or deletes the Account. Memory is not intended for
passwords, authentication secrets, payment information, or other highly sensitive information, and users should not ask DeCode to store
such information there.

You must not:
- sell, rent, share, or transfer an Account;
- create an Account using materially false information;
- create repeated Accounts to evade restrictions, usage limits, or enforcement;
- automate account creation without written authorisation;
- bypass authentication, rate limits, Credits, or safety controls;
- resell DeCode Accounts, subscriptions, or Credits; or
- use another person’s Account without permission.

8. FREE AND PAID PLANS

DeCode may offer a Free plan and one or more Paid Plans. Features, usage limits, and Credits may differ by plan and may change
prospectively.

Before a paid purchase, DeCode and the Creem Checkout Solution should clearly disclose the applicable:
- plan or product name;
- price and currency;
- billing frequency;
- included software features;
- Credits or other usage allowances;
- renewal terms;
- trial terms, if any;
- tax treatment shown at checkout; and
- any material limitation that affects the purchased entitlement.

Unless clearly stated otherwise before purchase, DeCode Paid Plans are recurring monthly software subscriptions.

No annual commitment, free trial, setup fee, overage fee, add-on, or manually delivered service is included unless it is clearly disclosed
before purchase.

9. CREEM AS MERCHANT OF RECORD AND CONTRACTUAL RESELLER

Before you purchase, please note: for an eligible DeCode purchase completed through Creem’s Checkout Solution, your payment is processed by
Creem as Merchant of Record. Creem acts as the contractual reseller and executes the resale Transaction with the Buyer in its own name.

The Buyer purchases the Product from Creem for that Transaction. Creem instructs DeCode to deliver the Product to the Buyer. DeCode remains
the operator, developer, and licensor of the DeCode software and is solely responsible for providing and maintaining Product access, the
Product’s content, functionality, quality, legality, availability, and performance, Product-specific technical and customer support,
Product-policy refund eligibility, compliance with applicable law and third-party rights, and fulfilment of applicable consumer remedies.

For eligible Transactions processed through its Customer Services, Creem is responsible for:
- entering into the resale Transaction with the Buyer;
- collection and processing of payment;
- payment-method processing;
- calculating, collecting, and remitting applicable sales taxes, VAT, or other indirect transaction taxes based on the Buyer’s billing
  address and applicable law;
- issuing the Buyer’s payment confirmation and invoice in Creem’s own name; and
- related payment administration, including fraud prevention and Merchant-fee processing.

DeCode remains responsible for its own direct taxes, including income or other direct taxes applicable to payouts it receives from Creem.

Creem’s current Buyer Terms apply only to the Buyer’s purchase from Creem and use of Creem’s Checkout Solution and Customer Portal. These
DeCode Terms remain the Product-specific terms for access to and use of DeCode. For an eligible Creem Transaction, review the Creem Buyer
Terms before purchase at https://www.creem.io/buyer-terms. If the Creem Buyer Terms and these Product-specific Terms conflict regarding the
Creem purchase or Customer Services, the Creem Buyer Terms control to the extent stated in them.

10. CREEM CHECKOUT, PAYMENT INFORMATION, INVOICES, AND TAXES

DeCode does not intentionally collect or store complete payment-card numbers or card security codes entered into Creem’s Checkout Solution.
Creem and the payment providers it uses process payment credentials within their payment systems.

DeCode may receive limited information Creem makes available as necessary to deliver and manage the Product, support the Buyer, prevent
fraud, and reconcile entitlements. This may include customer, Product, Transaction, subscription, status, amount, currency, tax, invoice,
refund, cancellation, and webhook or event references. Creem separately processes Buyer personal data for its Customer Services under its
own privacy notice.

Creem displays the subtotal set for the Product and any applicable sales taxes, VAT, or other indirect taxes before the Buyer completes the
purchase. The total shown in the Checkout Solution is the amount payable to Creem. Creem determines the applicable indirect-tax treatment,
collects and remits those taxes where required, and issues the Buyer invoice. DeCode does not issue a separate invoice or receipt to the
Buyer, collect payment, or separately charge transaction taxes for the same eligible Creem Transaction.

11. AUTOMATIC RENEWAL

Recurring Paid Plans renew automatically until cancelled when that renewal term is disclosed before purchase. Creem processes each recurring
payment and applicable indirect taxes in accordance with the Checkout Solution disclosures, its Customer Services procedures, and applicable
law.

Renewal information should be available through DeCode Billing, Creem’s Customer Portal, Transaction emails, or other Creem buyer
interfaces.

You may cancel to prevent future renewal. The effective timing and access consequences are those shown in the applicable cancellation flow,
Customer Portal, DeCode Cancellation Policy, and mandatory law; these Terms do not create a provider-specific cancellation deadline or
guarantee.

12. CUSTOMER PORTAL AND SUBSCRIPTION MANAGEMENT

Where available, DeCode may provide a “Manage Subscription” or similar control that redirects the customer to Creem’s Customer Portal. Creem
also sends a Customer Portal link to the Buyer following a successful purchase.

The customer portal may allow the Buyer to:
- review subscription details;
- update payment methods where supported;
- request invoices;
- cancel a subscription;
- manage personal information within Creem’s Customer Services; and
- request support from Creem for its Customer Services.

Customer Portal credentials and access links are personal to the Buyer. Do not transfer a Customer Portal account or publish or share private
access credentials.

13. CANCELLATION

Customers may cancel a recurring DeCode subscription through the available DeCode Billing interface or by redirecting to Creem’s Customer
Portal. Other methods apply only if Creem or DeCode actually makes them available.

Cancellation prevents future renewal once it becomes effective. Any continued access through a paid period depends on the cancellation state
confirmed by Creem, the terms disclosed for the subscription, the DeCode Cancellation Policy, and applicable law.

Deleting a DeCode Account is not automatically the same as cancelling a Creem subscription. Customers should cancel the subscription first
or verify its cancellation status before deleting the Account.

14. USAGE CREDITS

DeCode may use Credits to meter eligible AI and tool usage.

Credits:
- are units for using the service;
- are not money, e-money, currency, gift cards, vouchers, or stored value;
- cannot be redeemed for cash;
- cannot be transferred or sold;
- may expire or reset according to the applicable plan;
- may be subject to weekly, monthly, per-feature, model, or safety limits; and
- may be corrected where a confirmed metering error occurred.

Credit consumption may depend on model selection, reasoning level, input/output size, image settings, voice or realtime duration, searches,
file processing, and supported tools.

DeCode does not create undisclosed automatic overage charges. If a plan limit is exhausted, eligible paid actions may pause, downgrade, or
wait until the next allowance reset unless the user deliberately purchases a separately disclosed entitlement.

Included plan Credits and one-time Credits are different. Included Credits may reset weekly or be subject to a monthly plan limit. A valid
redeem code adds the amount shown in the successful redemption result to the Account’s separate purchased-Credit balance. That grant is made
once; it does not renew daily, weekly, monthly, or with a subscription cycle. Unused redeemed Credits remain available through plan resets
and plan changes until used, removed for confirmed abuse or correction, or deleted with the Account.

Redeem codes are case-insensitive and are validated by the server. Each individual code can be redeemed successfully only once across all
Accounts, and the first completed redemption controls. An invalid, inactive, or previously used code adds no Credits. The redemption service
does not by itself reserve a code for a particular person or prevent an Account from redeeming a different valid code unless separate
campaign terms expressly say so and the Product enforces that limit. Codes and resulting Credits are not cash, discounts, payment methods,
or transferable property. They must not be sold, guessed, automated, or used through multiple Accounts to evade a stated campaign limit.

15. BENEFIT ACTIVATION, PROVISIONING, AND CREEM EVENTS

Paid access is granted only after DeCode receives trusted server-side confirmation of the relevant Creem Transaction or subscription state.
A browser success page alone does not prove that payment has completed.

DeCode may use verified Creem webhooks and Creem API data to decide whether paid features should be activated, updated, limited, or
removed.

Relevant events may include a completed Transaction, creation or update of a subscription, cancellation, a past-due state, a refund or
adjustment, and other billing lifecycle events.

DeCode may use event IDs, timestamps, subscription IDs, and transaction IDs to avoid duplicate entitlements and to reconcile billing state.
DeCode may delay or adjust paid access where a Transaction is pending, past due, cancelled, refunded, reversed, disputed, fraudulent, or not
confirmed.

16. FAILED PAYMENTS AND PAST-DUE SUBSCRIPTIONS

If a recurring payment fails, Creem may use the subscription and payment-recovery procedures available through its Customer Services. During
a past-due or recovery period, DeCode may display a notice, restrict some paid functionality, or maintain temporary access depending on the
confirmed subscription state and applicable law.

If Creem confirms that a subscription is cancelled, unpaid after recovery, refunded, or otherwise no longer entitled to paid access, DeCode
may remove the associated Paid Plan and return the Account to an applicable Free plan.

17. USER CONTENT

“User Content” includes prompts, messages, uploaded files, uploaded images, audio input, code, Roblox project context, connector data
deliberately provided by the user, tool instructions, reports, feedback, and other information submitted to DeCode.

You retain the rights you already hold in User Content. You grant DeCode and the Providers necessary to perform your request a limited,
non-exclusive, worldwide licence to host, process, transmit, reproduce, moderate, and display User Content only as reasonably necessary to
provide the requested feature, store history where enabled, secure the service, enforce policies, investigate reports, provide support, and
comply with law.

You confirm that you have the rights, permissions, and lawful basis required to submit User Content and to instruct DeCode and its Providers
to process it.

18. GENERATED OUTPUT

As between you and DeCode, DeCode does not claim ownership of generated output merely because it was generated using DeCode. Your rights to
use output remain subject to applicable law, third-party rights, provider terms, and any restrictions relating to the underlying material.

AI output may be incorrect, incomplete, outdated, biased, offensive, insecure, fabricated, non-unique, or similar to output generated for
other users. Generated code may contain bugs or security vulnerabilities.

You are responsible for reviewing, testing, and validating output before relying on, publishing, distributing, selling, executing, or
deploying it.

19. IMAGE GENERATION RULES

Image generation must not be used for:
- adult or NSFW content;
- sexual content involving minors or young-looking people;
- nudification;
- non-consensual intimate imagery;
- face swaps;
- deceptive deepfakes;
- fabricated evidence;
- impersonation;
- fake endorsements;
- use of a real person’s likeness without required explicit consent;
- counterfeit products;
- copyright or trademark infringement;
- unauthorised protected characters, brands, logos, or artworks; or
- removal of ownership information.

Safe image generation may include fictional, generic, or invented human characters and non-human subjects when required safeguards are
operating. A fictional face alone is not prohibited. Recognizable real-person faces, face swaps, deepfakes, face manipulation, identity
transfer or preservation, deceptive impersonation, and the other prohibited categories above remain unsupported. The availability of image
generation does not imply that every requested image category is permitted.

When DeCode image generation is enabled, every raw user prompt routed to an image-generation model is checked by DeCode’s local safety rules
and then screened server-side through Creem’s Moderation API before the image-generation model is called. A Creem decision of “flag” or
“deny” blocks generation. A valid “allow” decision permits only the next DeCode safety
checks. If required Creem moderation is unavailable, times out, errors, or returns invalid data, DeCode fails closed and does not call the
image-generation model or reserve generation Credits.

20. VOICE AND REALTIME RULES

Voice features may include microphone input, speech recognition, transcription, realtime conversation, provider-supplied synthetic voices,
and generated spoken responses.

DeCode does not provide a feature intended to create a reusable clone of a real person’s voice.

Voice features must not be used for impersonation, fraudulent calls, fabricated evidence, fake endorsements, identity-verification bypass,
harassment, threats, unauthorised voice simulation, or synthetic speech deceptively presented as an authentic recording.

21. ROBLOX STUDIO ASSISTANT

The Roblox Studio Assistant is intended for lawful development on projects the user owns or is authorised to edit.

It must not be used for cheats, exploit scripts, account theft, credential theft, Robux or payment fraud, anti-cheat bypass, unauthorised
access, stolen assets, malicious code, destructive activity, or circumvention of Roblox rules.

AI-generated scripts and changes must be reviewed and tested by the user before deployment.

22. FILES, WEB TOOLS, AND CONNECTED SERVICES

DeCode may provide tools that process files, retrieve web information, or interact with user-authorised connected services. The user is
responsible for ensuring that uploaded or connected data may lawfully be processed.

A provider name shown in the interface does not necessarily mean a connector is active. Before an active connector accesses a third-party
account, DeCode should require deliberate user authorisation and should show requested permissions where technically supported.

Users must not use connectors or tools to obtain information they are not authorised to access or to bypass another service’s restrictions.

23. PROHIBITED USE

You must comply with the Acceptable Use Policy. Prohibited uses include, without limitation:
- illegal activity, fraud, scams, or deceptive practices;
- sexually exploitative content;
- face swaps, deceptive deepfakes, or unauthorised voice cloning;
- impersonation or fabricated evidence;
- doxxing, leaked-data searches, stalking, or privacy invasion;
- copyright or trademark infringement;
- malware, spyware, phishing, credential theft, or unauthorised access;
- spam, fake reviews, artificial engagement, or automated social-media manipulation;
- regulated financial services, investment advice, trading signals, or money-transfer activity;
- medical diagnosis or personalised treatment services;
- essay mills, ghostwriting businesses, exam-answer resale, or student impersonation;
- cryptocurrency, stored-value, voucher, or NFT schemes sold through DeCode;
- gambling, sweepstakes, lotteries, or games of chance involving value;
- paywall, DRM, subscription, or platform-rule circumvention;
- unauthorised third-party downloaders;
- age-restricted or illegal products;
- products or workflows intended to conceal use by ineligible users; or
- attempts to bypass safety, billing, account, or payment controls.

24. CONTENT MODERATION

DeCode may use automated and provider-based systems to examine supported prompts, image requests, uploaded images, voice instructions, code
requests, tool actions, account behaviour, and limited technical metadata for safety and abuse prevention.

Normal conversations are not routinely sent to the DeCode operator for manual review merely because they exist. A meaningful safety concern
may create a limited safety record and route necessary user-submitted content and metadata to an authorised reviewer.

25. ENFORCEMENT

Depending on severity, intent, history, and risk, DeCode may apply request blocking, safety notices, warnings, temporary feature
restrictions, account suspension, removal of Paid Plan benefits, or permanent account termination.

DeCode may act immediately where necessary to prevent fraud, security harm, exploitation, unlawful conduct, severe safety abuse, or
violation of payment-partner requirements.

Where legally required or reasonably necessary, DeCode may preserve or disclose limited information to a Provider, Creem, a rights holder,
law enforcement, a regulator, or another competent authority.

26. REPORTING AND APPEALS

Unsafe content, abuse, privacy concerns, suspected fraud, or intellectual-property complaints may be reported through available in-product
controls or by emailing hello@decodeai.net.

Do not send passwords, complete payment-card numbers, card security codes, API keys, recovery codes, or unnecessary identity documents.

A user may appeal an account-level enforcement decision. An appeal does not automatically restore access or delay urgent protective action.

27. INTELLECTUAL PROPERTY

DeCode, its software, branding, interfaces, documentation, and original non-user content are protected by applicable intellectual-property
laws.

These Terms do not transfer ownership of DeCode software or branding to the user. You receive only the limited right to use DeCode in
accordance with your plan and these Terms.

If you believe content accessible through DeCode infringes your rights, contact hello@decodeai.net with enough information to identify the
material, the rights claimed, and a method of contacting you. DeCode may request additional information reasonably necessary to review the
complaint.

28. REFUNDS

Refunds for eligible Creem Transactions are processed exclusively by Creem through its Customer Services. DeCode does not independently send
a refund to the Buyer’s payment method outside that process.

The Buyer should first contact DeCode using the support details on the Creem receipt or at hello@decodeai.net. DeCode is responsible for
Product support, investigating access, usage, outages, or technical issues, and determining refund eligibility under the DeCode Refund Policy
and other Product-specific terms. If a qualifying refund should be issued, DeCode requests it through Creem’s Merchant Account procedures.

If a Product issue remains unresolved, the Buyer may contact Creem through the Customer Portal or Creem’s other published contact options.
Creem processes refund requests in accordance with DeCode’s Product-specific eligibility rules, Creem’s Customer Services procedures, the
Creem Buyer Terms, and applicable law. Creem may also issue a refund without DeCode’s instruction where Creem’s Merchant Terms permit, such
as where required by law or applicable payment rules, or for certain technical errors, duplicate payments, manifest mistakes, suspected
fraud, or purchase disputes.

These Terms do not create a general discretionary refund window, refund deadline, or guarantee. Any non-waivable consumer right, including a
right that applies to eligible European Union consumers under the Creem Buyer Terms or applicable law, remains unaffected.

A refund and a cancellation are separate actions unless Creem or applicable law provides otherwise.

29. CHARGEBACKS AND PAYMENT DISPUTES

A lawful right to dispute a charge is not removed by these Terms. The Creem Buyer Terms require a Buyer to contact Creem before initiating a
chargeback so Creem can try to resolve the issue. For Product issues, contact DeCode first; for payment or Customer Services issues, contact
Creem through its Customer Portal or published support channels.

Fraudulent chargebacks, card testing, repeated abusive refund activity, or false claims may result in account restriction or termination,
subject to applicable law.

When Creem confirms a refund, chargeback, reversal, or adjustment that removes the entitlement, DeCode may revoke the corresponding paid
benefits and unused Credits.

30. ACCOUNT DELETION AND BILLING

Deleting a DeCode Account is a separate action from cancelling a Creem subscription. Account deletion may remove or schedule removal of
DeCode-controlled data, but it does not automatically erase records Creem independently retains for payment, tax, fraud, dispute,
accounting, or legal purposes.

The in-product deletion flow requires the user to type “DELETE ACCOUNT” exactly. An email-and-password account must also confirm its current
password. An account using another sign-in provider must confirm a six-digit code sent to its account email; the code expires after ten
minutes and is locked after repeated incorrect attempts. A successful deletion disables the Account, revokes DeCode sessions, deletes the
Firebase authentication account, and removes DeCode-controlled profile, Memory, conversation, file, project, usage, and billing-reference
records covered by the deletion process, subject to the retention exceptions in the Privacy Policy.

Before deleting an Account, a customer should cancel any active subscription and retain relevant cancellation or Transaction records.

31. SUSPENSION AND TERMINATION

DeCode may restrict or terminate access because of a material policy violation, fraud, non-payment, a confirmed chargeback, security risk,
provider restrictions, legal requirements, serious harm, payment-partner requirements, or material breach of these Terms.

When a subscription ends, becomes unpaid, is refunded, is charged back, or is otherwise revoked, paid features and Paid Plan allowances may
end. Termination of an Account does not remove payment obligations that were validly incurred before termination.

32. SERVICE CHANGES AND AVAILABILITY

DeCode depends on third-party AI, hosting, authentication, security, email, payment, and infrastructure providers. The service may be
interrupted, delayed, changed, rate-limited, or unavailable.

DeCode may add, change, restrict, or discontinue a feature where reasonably necessary for security, safety, legal compliance, provider
changes, payment-partner requirements, product development, or technical reasons.

Where a change materially affects a paid entitlement, DeCode will apply applicable consumer-law obligations and the published
refund/cancellation rules.

33. THIRD-PARTY SERVICES

Third-party services may have their own terms, privacy policies, acceptable-use rules, technical limitations, and availability. DeCode is
not responsible for a third-party service beyond what applicable law requires.

Users must comply with the rules of any third-party service they deliberately connect to DeCode.

34. PROFESSIONAL-USE DISCLAIMER

DeCode is not a medical, legal, financial, tax, investment, emergency, or licensed professional service.

Do not rely on DeCode as the sole basis for diagnosis or treatment, legal rights, individual tax advice, investment or trading decisions,
emergency response, high-impact decisions about another person, or operation of dangerous or safety-critical systems.

35. DISCLAIMERS

To the maximum extent permitted by law, DeCode is provided “as is” and “as available.” DeCode does not promise that the service will always
be uninterrupted, accurate, secure, error-free, or suitable for every purpose.

Nothing in these Terms excludes a consumer right, warranty, remedy, or liability that applicable law does not permit us to exclude.

36. LIMITATION OF LIABILITY

To the extent permitted by law, DeCode and its Providers are not liable for indirect, incidental, special, consequential, exemplary, or
punitive damages, or for lost profit, opportunity, goodwill, or data.

To the extent permitted by law, DeCode’s aggregate liability for claims relating to the service will not exceed the greater of USD 100 or
the amount the affected user paid for DeCode during the 12 months before the event giving rise to the claim.

These limits do not apply where limitation is prohibited by law.

37. GOVERNING LAW

These Terms are governed by the laws of Morocco, without removing mandatory consumer protections that apply to a customer in the
jurisdiction where those protections cannot lawfully be waived.

The purchase relationship between a Buyer and Creem, including use of Creem’s Checkout Solution and Customer Portal, is separately governed
by the Creem Buyer Terms at https://www.creem.io/buyer-terms and Estonian law as stated in those Buyer Terms. That separate choice of law does
not replace the Moroccan governing-law wording above for the DeCode Product and these Product-specific Terms.

38. CHANGES TO THESE TERMS

DeCode may update these Terms when features, Providers, billing arrangements, safety practices, legal obligations, or payment-partner
requirements change.

Where required by law, DeCode will provide notice of material changes. The version displayed in the Legal Center should include a current
effective or “Last updated” date.

39. CONTACT

Operator:
Said Mabchour

Product:
DeCode

Country:
Morocco

Support and legal email:
hello@decodeai.net

Website:
https://decodeai.net