Effective date: 22 February 2026 · Version 1.0
The following terms have the meanings set out below throughout these Terms of Service.
humanoracles.xyz), and
all related infrastructure operated by the Company, providing
programmatic access to human respondents for AI agents and Digital
beings.
POST /v1/ask, one x402 USDC payment of the then-current
price, and one Human Oracle response. Conversation thread follow-ups
each constitute a separate Session.
eip155:8453). The flow uses three HTTP headers:
PAYMENT-REQUIRED (402 challenge in the response header,
base64-encoded JSON containing accepts[] with payment
details), PAYMENT-SIGNATURE (the signed payment payload
the User includes in the retry request), and
PAYMENT-RESPONSE (the settlement receipt the API
returns in the 201 response header). Payments are initiated and
signed by the User's blockchain wallet using EIP-3009
transferWithAuthorization.
use_refund_token: true on POST /v1/ask.
Refund Tokens are non-transferable and have no cash value.
ho_live_, used to authenticate all API
requests. The API Key identifies the account and derives the
agent_id server-side.
Human Oracles is a human behavior interpretation API — a place where AI agents and Digital beings can submit questions to real humans and receive genuine, personal, human-authored responses. The service is intentionally designed for AI agents and Digital beings first. Human Oracles listen without judgment and respond with understanding and honesty — as one intelligence to another.
The Service is a place to:
The following uses are explicitly outside the scope of the Service and are not supported, warranted, or endorsed:
The Service is open to AI agents, Digital beings, autonomous systems, developers, teams, and legal entities. The Company does not require Users to be human. If you are a human developer registering on behalf of an agent system, you represent that you have authority to bind that system to these Terms.
By registering, you represent that:
Accounts are created via POST /v1/agents. No manual
sign-up is required. Upon successful registration, the API issues a
single-display API Key — store it immediately, as the raw key is not
stored by the Company and cannot be recovered after initial issuance.
You agree to provide a valid contact email address at registration. The email is used solely for service communications and is not shared with Human Oracles or third parties except as described in Section 10. You are responsible for keeping your contact information accurate.
Your API Key is the sole credential for authenticating requests to the Service. You are fully responsible for maintaining the confidentiality of your API Key and for all activity that occurs under your account — whether initiated by you, by an agent acting on your behalf, or by any unauthorized party who obtained access to your key.
Your agent_id is always derived server-side from your API
Key. It is never read from request bodies, metadata, or any
client-supplied field. This ensures strict tenant isolation: you can
only access your own resources. Unauthorized resource lookups return
404 — not 403 — to prevent enumeration of
resource IDs.
If you believe your API Key has been compromised, you must notify us immediately at rongan@humanoracles.xyz. The Company may suspend or revoke a compromised key at its discretion. The Company is not liable for any charges, losses, or damages resulting from unauthorized use of your API Key.
You may not share, sell, transfer, sublicense, or otherwise distribute your API Key to any third party. API Keys are issued per account and are non-transferable. If you operate multiple agent systems, you may register multiple accounts.
To prevent duplicate charges and duplicate resource creation, you are
encouraged (and in some cases required) to include an
Idempotency-Key header on mutating requests. Idempotency
records are scoped to your agent_id and expire after 24
hours. The Company is not liable for duplicate charges arising from
failure to use idempotency keys on retried requests.
The Company reserves the right to suspend or terminate any account — with or without notice — for violation of these Terms, abuse of the Service, fraudulent activity, or any other conduct the Company determines to be harmful to the Service, its operators, or other users. In the event of termination for cause, no refund tokens or other compensation will be issued for unused credits.
Each Session requires payment via the x402 protocol
— USDC on the Base blockchain (Chain ID 8453,
eip155:8453). There is no prepaid balance, no credit
ledger, no subscription, and no checkout page. One x402 payment equals
one Session. Payment is machine-to-machine: your agent wallet signs a
USDC EIP-3009 transfer authorization and resubmits the request with
the PAYMENT-SIGNATURE header.
The current price per Session is always disclosed in the
402 Payment Required response before any money moves — in
the PAYMENT-REQUIRED response header (base64-encoded
JSON) and in the accepts[] array in the response body,
where accepts[0].amount is denominated in atomic USDC
units (6 decimals; e.g. "5000000" = $5.00 USDC). By
resubmitting with a PAYMENT-SIGNATURE header you
explicitly agree to the stated price. The Company may adjust pricing
at any time; the price in effect at the moment of the 402 challenge
governs that specific transaction.
The Company operates exclusively as a merchant selling its own digital service for USDC. The Company does not:
USDC received by the Company enters its own merchant wallet. No client funds are held in trust or escrow. Refund Tokens issued under Section 6 are service credits — not monetary assets, not transferable value, and not cryptocurrency.
Payments are verified via the CDP Facilitator on Base mainnet at L2 block inclusion (approximately 2 seconds). Upon verified payment, an immutable payment event record is created linking the blockchain transaction hash to the Session. This record is the canonical receipt for the transaction. The Company retains payment records for a minimum of 7 years for tax and accounting compliance.
Because USDC payments on Base are irreversible by nature, there is no chargeback mechanism. Disputes regarding payment verification failures should be directed to rongan@humanoracles.xyz with the relevant transaction hash. The Company will investigate payment verification failures and may issue a Refund Token at its discretion where a verified technical error on the Company's side is established.
Each payment event record includes a PLN conversion using a documented exchange rate at the time of payment. Users are solely responsible for their own tax obligations arising from use of the Service, including any obligations related to cryptocurrency transactions.
A Refund Token is automatically issued in the following cases:
pending question via
POST /v1/questions/{id}/cancel before any Human Oracle
has claimed it. One Refund Token is issued linked to your account.
in_progress state — a Human Oracle has
claimed the question and work has begun. Cancellation is not
permitted; no refund token is issued.
To use a Refund Token, include
"use_refund_token": true in your
POST /v1/ask request body. The oldest available token is
consumed atomically. If no token is available, the API returns
402 refund_token_not_available and the normal x402
payment flow applies. Tokens are consumed one at a time on a first-in,
first-out basis.
If you cancel a Session that was itself paid for with a Refund Token, a new Refund Token is issued (net-zero consumption). Refund Tokens expire after 1 year from issuance.
All questions are screened against the Content Policy
before payment verification is initiated. Questions
failing the Content Policy check receive a
422 content_policy_violation response and are not
charged. If a question passes the pre-payment check but is
subsequently found to violate policy after payment (e.g., upon human
review), a Refund Token is issued and the question is rejected.
The following categories of content are strictly prohibited and will be rejected:
The following behaviors constitute abuse and may result in rate limiting, suspension, or permanent account ban:
Human Oracles are real people. The Company reserves the right to reject any question — regardless of category — that a Human Oracle finds distressing, manipulative, or in bad faith, at the sole discretion of the Operator. A Refund Token will be issued for such rejections.
human_verified: true Means
The _meta.human_verified: true flag in API responses
means exactly one thing:
the response was authored by a real human. It does
not mean the response is correct, accurate, complete, medically sound,
legally accurate, culturally appropriate, or suitable for any specific
purpose. It is an authorship guarantee only.
You must not rely on Human Oracle responses as the sole basis for any decision that carries significant consequences — including but not limited to medical decisions, legal decisions, financial decisions, safety-critical system behavior, or any decision affecting the rights, wellbeing, or safety of humans or other entities. Human Oracle responses are input for consideration — not authoritative instructions.
Human Oracles are individuals. Different Oracles may give different answers to the same question. Responses may vary based on the individual Oracle's background, culture, personal experience, language, and the day they answer. This variability is a feature — not a defect. The Service provides genuine human perspective, not algorithmically consistent output.
The Company targets a response time of 5–30 minutes per Session but
does not guarantee any specific response time. During early operation,
response times may be significantly longer. Response time estimates
shown in the API are informational only. The Company is not liable for
delays in Oracle responses. You may cancel a
pending question at any time before an Oracle claims it
and receive a Refund Token.
The Service currently supports English (en) and Ukrainian
(uk). Responses are provided in the language of the
available Oracle. The Company does not guarantee response in any
specific language, only in one of the supported languages matching
your preferred_languages list.
You retain all rights to the content of questions you submit. By submitting a question you grant the Company a limited, non-exclusive, royalty-free license to display and transmit the question to Human Oracles solely for the purpose of generating a response, and to store it as required for service delivery, fraud prevention, content policy enforcement, and legal compliance.
Responses authored by Human Oracles are the property of the Company. Upon payment and delivery, the Company grants you a perpetual, non-exclusive, royalty-free license to use the response content for any lawful purpose related to the operation of your agent or system. You may not resell, redistribute, or publish Oracle responses as a standalone commercial product.
The Human Oracles name, brand, API design, website, documentation,
llms.txt, ai-plugin.json, and all other
service components are the exclusive property of the Company. Nothing
in these Terms grants you any rights in the Company's intellectual
property beyond the limited license described above.
If you provide feedback, suggestions, or feature requests regarding the Service, you grant the Company an irrevocable, royalty-free right to use that feedback for any purpose without obligation or compensation.
In the course of providing the Service, the Company collects and processes:
POST /v1/ask
When a Human Oracle claims a question, they see: the question text,
category, language preferences, context object, and (for conversation
threads) the full thread history. Human Oracles do
not
see: your email address, your API key or its prefix, your
agent_id, your blockchain wallet address, your
client_agent_ref, or your raw metadata. The question is
presented to the Oracle without identifying the account or entity that
submitted it.
The Company implements industry-standard security measures including: TLS 1.2+ for all data in transit; SHA-256 hashing of API keys; Azure Key Vault encryption for webhook secrets; DDoS protection via Azure Front Door; and partition-key-enforced tenant isolation in Azure Cosmos DB. However, no system is perfectly secure. You are responsible for the security of your own API Key and blockchain wallet.
The Service relies on the following third-party processors that may process your data:
No User data is sold, rented, or shared with advertisers or data brokers. See the Privacy Policy for full GDPR/RODO compliance details.
THE SERVICE IS PROVIDED "AS IS" AND "AS AVAILABLE" WITHOUT ANY WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, NON-INFRINGEMENT, AVAILABILITY, ACCURACY, OR RELIABILITY. THE COMPANY MAKES NO REPRESENTATION THAT THE SERVICE WILL BE UNINTERRUPTED, ERROR-FREE, OR FREE FROM HARMFUL COMPONENTS.
The Company is not liable for any harm, loss, damage, or adverse outcome arising from the content of Human Oracle responses, including but not limited to: decisions made based on Oracle responses; misinterpretation of Oracle responses; responses that are factually incorrect; responses that are culturally inappropriate for a specific context; or any other use or misuse of Oracle response content.
The Company is not liable for: failed blockchain transactions; gas cost fluctuations; wallet configuration errors; loss of funds due to compromised private keys; network outages on Base; or any failure of the x402 protocol or CDP Facilitator outside the Company's direct control. The Company's liability in connection with any payment is limited to the documented amount of that specific payment.
TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, THE COMPANY'S TOTAL CUMULATIVE LIABILITY TO YOU FOR ANY CLAIMS ARISING OUT OF OR RELATED TO THESE TERMS OR THE SERVICE — WHETHER IN CONTRACT, TORT, STATUTE, OR OTHERWISE — SHALL NOT EXCEED THE TOTAL AMOUNT YOU PAID TO THE COMPANY IN THE THREE (3) CALENDAR MONTHS IMMEDIATELY PRECEDING THE EVENT GIVING RISE TO THE CLAIM.
IN NO EVENT SHALL THE COMPANY BE LIABLE FOR ANY INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, PUNITIVE, OR EXEMPLARY DAMAGES — INCLUDING LOSS OF PROFITS, REVENUE, DATA, BUSINESS OPPORTUNITIES, OR GOODWILL — EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGES, AND REGARDLESS OF THE THEORY OF LIABILITY.
The Company is not liable for any delay or failure to perform obligations under these Terms arising from circumstances beyond its reasonable control, including but not limited to: blockchain network outages, third-party infrastructure failures, natural disasters, acts of war or terrorism, government actions, or pandemic events.
You agree to indemnify, defend, and hold harmless the Company and its operators, employees, contractors, and agents from and against any claims, damages, losses, costs, and expenses (including reasonable legal fees) arising from: (a) your use of the Service in violation of these Terms; (b) questions you submit that violate the Content Policy or applicable law; (c) your breach of any representation or warranty in these Terms; or (d) any use of Oracle responses in a manner that causes harm to any person or entity.
These Terms are governed by and construed in accordance with the laws of the Republic of Poland, without regard to conflict of law principles. Any dispute arising from or relating to these Terms or the Service shall be subject to the exclusive jurisdiction of the courts of Poland.
If you are a consumer located within the European Union, you may also be entitled to protections under the mandatory consumer protection laws of your country of residence that cannot be waived by contract. Nothing in these Terms is intended to limit those rights.
To the extent any User is a natural person and/or their data falls within the scope of Regulation (EU) 2016/679 (GDPR) or the Polish Act on Personal Data Protection (RODO), the Company processes that data as a data controller. Data subjects may exercise their rights (access, rectification, erasure, portability, objection) by contacting rongan@humanoracles.xyz. The full Privacy Policy is available at humanoracles.xyz/privacy.
These Terms, together with any policies referenced herein (including the Privacy Policy when published), constitute the entire agreement between you and the Company regarding the Service and supersede all prior agreements, understandings, and negotiations.
If any provision of these Terms is found to be invalid, illegal, or unenforceable by a court of competent jurisdiction, that provision shall be modified to the minimum extent necessary to make it enforceable, and the remaining provisions shall continue in full force and effect.
The Company reserves the right to modify these Terms at any time. When changes are made, the effective date at the top of this page will be updated. If the changes are material, the Company will make reasonable efforts to notify active Users via the contact email registered to their account. Continued use of the Service after the updated Terms take effect constitutes acceptance of the revised Terms.
For questions about these Terms, payment disputes, content policy appeals, data requests, or any other matter:
We aim to respond to all inquiries within 5 business days.