Terms of service
Terms of service
Provided by WinServ Tecnologia da Informação (company registration number — CNPJ — available on request at contact@winserv-auth.com), for the winserv · wifi service — captive-portal authentication for UniFi Wi-Fi networks. By creating a portal or consenting to our applications in Microsoft Entra, you accept what is written here.
1. What the service does
We authenticate whoever connects to your Wi-Fi network — with your organization's Microsoft account or with a voucher code — and authorize the device on your UniFi controller. The authorization lives on your controller; we decide who gets in, you remain the owner of the network.
The self-service plan is sold by tier — up to 50, 100, 250 or 500 people with active access — at the prices on the home page. Each distinct person in your organization with at least one authorized device counts; a device pre-registered in someone's name counts as that person, and visitor vouchers do not count. Usage is shown in your console. If you go over your tier, we tell you by e-mail and agree the change with you — nobody is blocked for going over the number.
2. What depends on you
- Keeping the UniFi controller reachable from the internet, with a valid certificate, and a dedicated local Site Administrator account for us, restricted to one site.
- Allowing in the firewall and the walled garden what the network requirements list.
- Maintaining in Microsoft Entra the group that defines who has access. Whoever is in the group gets in — the list is yours, and so is the consequence of one name too many in it.
- Using the service only on your own network and for people you have authorized.
Failures caused by any of these items are not a service outage. Most support requests start here.
3. Data
What we read, what we keep and how to revoke it is described in privacy, including what each Entra application accesses. In short: we identify who got in and with which device, and we do not touch e-mail content, files or network traffic.
You are the controller of your users' data; we act as a processor, handling it only to provide the service. We treat your controller credentials and the session tokens as confidential, encrypted at rest with a key of your portal's own.
4. Availability
We work to keep the service available, with no contracted SLA by default. One point worth understanding: an outage on our side does not disconnect people already connected — the authorization is on your controller and lasts up to 30 days. What becomes unavailable is authenticating new devices.
We carry out maintenance and updates without prior notice when no impact is expected; changes that require action from you are announced by e-mail.
5. Acceptable use
Do not use the service for unauthorized access to third-party networks, to get around another organization's security controls, or to try to obtain data beyond your own. We may suspend a portal that is causing harm to third parties or to our infrastructure, notifying you as soon as possible.
6. Termination
You can end the service whenever you want: remove our applications from your Entra and turn off the external portal on the controller. Devices already authorized stay connected until their authorization expires on your own controller.
Once the contract ends, we delete your portal's data; database backups that still contain it expire within 30 days. There is no export to recover: nothing we keep survives a reconnection — a sign-in rebuilds everything.
7. Limits
The service is provided as is. We are not liable for lost profits or indirect damages. Our liability, where it exists, is limited to the amount paid for the service in the 12 months before the event.
8. Changes and jurisdiction
Material changes to these terms are announced 30 days in advance. Brazilian law applies, in the courts of the district where WinServ is domiciled.
Questions: contact@winserv-auth.com.