Terms of Service
Last updated: 10 September 2026
Plain English summary
- We provide managed Magento hosting and support as agreed in your plan. Third-party extensions and integrations are not guaranteed.
- We run backups, monitoring, and security hardening, but you are responsible for your Magento licence, admin credentials, and acceptable use.
- Please keep your own independent backup somewhere we do not control. Our included backups are held on a separate disk on the same server, and off-site copies are an optional add-on, but a serious compromise of third-party software can destroy data and backups alike, and no host can promise otherwise.
- Invoices are due on time. Plans renew automatically unless cancelled with reasonable notice.
- Our liability is limited to the fees you have paid. English and Welsh law applies.
The full terms below are the legally binding version.
1. About EveryHost and scope
These terms govern the managed hosting services provided by EveryHost ("we", "us", "our") to you ("the customer", "you"). By placing an order or using our services, you agree to these terms.
EveryHost is a UK-based managed hosting provider. We specialise in Magento and eCommerce hosting, offering shared, VPS, and dedicated server plans with varying levels of support, security, and performance.
EveryHost is a trading name of Raplin Ventures Ltd, a company registered in England and Wales under company number 17276917. Our registered office is 71-75 Shelton Street, Covent Garden, London WC2H 9JQ. Our trading address, and the address for all service correspondence, is International House, 126 Colmore Row, Birmingham B3 3AP. Contracts under these terms are with Raplin Ventures Ltd.
Our services include server provisioning, management, monitoring, security hardening, and technical support as described in your chosen plan. Services outside your plan scope may be available at additional cost.
2. Orders, onboarding, and service start
Orders placed through our website or agreed via correspondence are subject to acceptance by us. We reserve the right to decline any order at our discretion.
Once an order is accepted and payment received, we will begin provisioning your hosting environment. Provisioning timescales vary by plan type: shared and VPS environments are typically ready within 24 hours, while dedicated servers may take longer depending on hardware availability.
During onboarding, we may request access credentials, domain details, or other information needed to configure your environment. You are responsible for providing accurate and timely information to avoid delays.
3. Support scope and exclusions
All plans include access to our UK-based support team. Support covers server-level issues including operating system, web server configuration, PHP, database performance, caching layers, and security patching.
What we support:
- Server and infrastructure issues (networking, storage, compute)
- PHP, MySQL/MariaDB, Redis, Varnish, OpenSearch, and Nginx configuration
- Magento security patching and server hardening
- Backup and restore operations
- SSL certificate installation and renewal
- DNS guidance and migration assistance
What falls outside standard support:
- Third-party Magento extensions, custom modules, or theme development
- Integration with external services (ERP, CRM, payment gateways) beyond server-level connectivity
- Magento application-level debugging unless included in your plan
- Performance issues caused by poorly optimised custom code
We are happy to assist with excluded items on a best-effort or consultancy basis where time allows, but we cannot guarantee resolution of issues originating from third-party code.
4. Backups and restores
We maintain automated backups as part of our service. Included backups are held on a separate disk on the server that hosts your account; how often they run and how long they are kept depends on the disk space available on that server. They are not held off-site. Customers who want an additional encrypted copy held outside our hosting servers and outside the control panel's backup system can add our Bastion off-site backup service.
An important limitation you should understand. Separating backup storage reduces risk, but it does not remove it. An attacker who obtains privileged access to a server, or to the platform or control panel that manages it, may be able to reach, encrypt or destroy the data on that server and any backups reachable from it. This is not theoretical: during 2026, attackers exploiting a vulnerability in widely used hosting control panel software deliberately searched for and deleted backups before encrypting the systems they had compromised, specifically to prevent recovery.
For that reason, the backups we hold are a safety net and a convenience. They are not a guarantee of recovery and they are not a substitute for your own backup strategy. We strongly recommend that you keep at least one recent copy of your store files and database in a location outside our infrastructure and outside our control, and that you test that you can restore from it. We are happy to advise on how to set this up.
While we take reasonable care over backup integrity, we cannot guarantee that every backup will be complete, uncorrupted, or restorable in every scenario, and in particular we cannot guarantee that backups will survive a compromise, ransomware event or other destructive attack of the kind described above.
Restore requests should be made via our support channels. We will make reasonable efforts to restore data promptly, though restoration times depend on the size and complexity of the environment.
5. Security, third-party software, and incident response
All hosting plans include our Sentinel security suite, which provides WAF protection, malware scanning, file integrity monitoring, and proactive hardening measures.
Software we do not write. Your hosting environment depends on software produced by third parties, including the server operating system, any hosting control panel, virtualisation and hypervisor software, the web server, database, PHP, Magento or Adobe Commerce itself, and any extensions, themes or integrations installed on your store. We select and configure this software with reasonable skill and care, and we apply security updates within a reasonable period of the vendor releasing them, prioritised by severity. We do not, however, control how that software is written or when its vendors discover, disclose or fix defects in it.
Previously unknown vulnerabilities. A vulnerability that the vendor has not yet discovered, disclosed or fixed, commonly called a zero-day, cannot be patched by anyone until a fix exists. Vulnerabilities of this kind have been exploited in the wild for months before public disclosure, including in hosting control panel software during 2026. Where no patch or vendor mitigation was available at the time, or where a defect was not publicly known, we are not liable for loss arising from its exploitation. This does not apply where we have failed to apply a patch or mitigation that was available to us, which remains our responsibility.
Criminal acts of third parties. We are not liable for the deliberate criminal acts of third parties, including hacking, ransomware, data theft, destruction of data or backups, or denial of service attacks, except to the extent that such loss is caused by our own failure to use reasonable skill and care.
In the event of a security incident, we will take reasonable steps to contain the threat, notify you without undue delay, and assist with remediation. We cannot guarantee that our security measures will prevent every attack, but we are committed to responding swiftly and transparently. Where an incident involves personal data, we will support you in meeting your own obligations under UK data protection law.
You are responsible for keeping your Magento admin credentials secure, applying application-level patches when advised, keeping extensions and themes up to date or removing those no longer maintained, using strong passwords throughout your environment, and maintaining your own independent backups as described in section 4.
6. Billing, renewals, and cancellation
Hosting plans are billed monthly or annually, as selected at checkout. Prices are quoted exclusive of VAT; VAT at the prevailing UK rate is added at checkout and itemised on your invoice. Invoices are due on the date issued. We accept payment by credit/debit card, Apple Pay, and Google Pay via Stripe.
Plans renew automatically at the end of each billing period at the then-current rate. We will make reasonable efforts to notify you of any price changes in advance.
New hosting plans include a 30-day money-back guarantee: cancel within 30 days of your first hosting purchase and we will refund the hosting fees in full. Beyond that, you may cancel your plan at any time by contacting support. Cancellations take effect at the end of the current billing period. We do not generally provide pro-rata refunds for unused portions of a billing cycle, though we may consider refund requests on a case-by-case basis.
If payment fails, we will attempt to contact you. Persistent non-payment may result in service suspension after reasonable notice.
7. Acceptable use
You agree to use our services lawfully and responsibly. The following are not permitted:
- Hosting content that is illegal under the laws of England and Wales
- Distributing malware, spam, or phishing content
- Running processes that consume excessive shared resources to the detriment of other customers
- Using our servers for cryptocurrency mining
- Attempting to access other customers' data or systems
- Reselling our services without prior written agreement
We reserve the right to suspend or terminate accounts that violate this acceptable use policy, with or without notice depending on severity.
8. Suspension and termination
We may suspend your service if:
- You breach these terms or our acceptable use policy
- Payment remains outstanding after reasonable reminders
- Your environment poses a security risk to our infrastructure or other customers
- We are required to do so by law
Where possible, we will give you notice before suspension and an opportunity to resolve the issue. In cases of serious breach or security threat, we may suspend immediately.
Upon termination, we will retain your data for a reasonable period (typically 14 days) to allow you to retrieve it, after which it will be securely deleted.
9. Liability limitations
To the fullest extent permitted by law:
- Our total liability to you for any claim arising from our services is limited to the fees you have paid to us in the 12 months preceding the claim.
- We are not liable for indirect, consequential, or incidental losses, including but not limited to loss of revenue, profit, data, or business opportunity.
- We are not liable for loss or corruption of data, or for an inability to restore data, where this arises from a defect in third-party software for which no patch or mitigation was available to us, from the criminal acts of third parties, or from an event described in section 10, except to the extent that the loss is caused by our own failure to use reasonable skill and care.
- We are not liable for loss you could have avoided by keeping an independent backup of your data outside our infrastructure, as recommended in section 4.
- We do not exclude or limit liability for death or personal injury caused by our negligence, fraud, or any other liability that cannot be excluded by law.
Nothing in these terms removes our obligation to carry out our services with reasonable skill and care, and nothing in these terms affects the statutory rights of a customer dealing as a consumer.
We provide our services on an "as available" basis. While we aim for high availability, we do not guarantee uninterrupted service and scheduled maintenance may occasionally be required.
10. Events beyond our control
We are not liable for any failure or delay in performing our obligations, or for loss arising from it, where that failure or delay is caused by an event beyond our reasonable control. Such events include, but are not limited to:
- Cyber attacks, including ransomware, destructive attacks, data theft, and denial of service attacks
- Exploitation of a vulnerability in third-party software before the vendor has disclosed it or made a fix available
- Failures, outages, insolvency or withdrawal of service by upstream suppliers, including data centres, network carriers, registrars, certificate authorities and software vendors
- Loss of power, cooling, connectivity, or physical damage to a data centre, including fire, flood and natural disaster
- War, terrorism, civil unrest, epidemic or pandemic, industrial action, and acts of government or regulators, including changes in law
If such an event occurs, we will notify you as soon as reasonably practicable, use reasonable endeavours to limit its effect on your service, and resume normal performance as soon as we reasonably can. Our obligations are suspended for the duration of the event and the time for performance is extended accordingly.
If the event continues for more than 30 days, either party may terminate the affected service by giving written notice, and we will refund fees paid in advance for service not provided.
11. Governing law
These terms are governed by and construed in accordance with the laws of England and Wales. Any disputes arising from these terms or our services shall be subject to the exclusive jurisdiction of the courts of England and Wales.
If any provision of these terms is found to be unenforceable, the remaining provisions will continue in full force and effect.
We may update these terms from time to time. Material changes will be communicated to active customers. Continued use of our services after changes take effect constitutes acceptance of the updated terms.
Questions about these terms? Contact us at support@everyhost.co.uk or call 0333 577 6191.