StripeCheckup runs a fixed set of read-only checks against a Stripe account using an API key you provide, and reports what it finds. It is a mechanical diagnostic tool, not a security audit, not accounting advice, and not a guarantee that your integration has no other issues. A "pass" means the specific condition checked was not detected — it does not certify your integration is bug-free. A "skip" means the key you provided lacked permission to run that check, not that the check passed.
You are responsible for the scope of the API key you provide. We strongly recommend a restricted, read-only key limited to the resources listed on the audit page. StripeCheckup makes no write calls to your Stripe account under any circumstance.
The $49 charge is one-time, billed via Stripe, for a single audit report. It is non-refundable once the report has been generated, since the report itself is the deliverable and cannot be "returned." If payment succeeded but no report was generated due to a fault on our end, contact us with your session ID for a refund.
The service is provided as-is with no warranty. We are not liable for decisions made based on its output.