Contact IndexZero
IndexZero is operated by Afterlume Labs. Everything reaches us at support@indexzero.site — support, billing, security, privacy requests, and press. There is no separate sales queue, because there is nothing to sell you that you cannot buy yourself in the product.
Product support
Email support@indexzero.site. If the question is about something that ran inside the product, include the workspace name, the project domain, and roughly when it happened. That is usually the difference between a one-email answer and four rounds of clarification.
- A tool call or report that returned something you did not expect: the project domain, the market (country and language), and what you expected instead.
- A site audit: the audit's URL in the app, and whether it finished or is still crawling.
- An MCP connection: which client you are connecting from, whether you used OAuth or an API key, and the error text the client showed.
- Credits: the billing page shows exactly what was spent and on what. Send the line you are asking about.
Billing and subscriptions
Plans, top-ups, invoices, payment methods, and cancellation are all self-serve on the billing page in the app. Payments and invoicing are processed by Dodo Payments as merchant of record, so your card statement and your invoices come from them.
If something on an invoice does not look right, or a payment failed and you want to know why before retrying, email support@indexzero.site with the invoice number.
Security reports
Report vulnerabilities to support@indexzero.site with "security" in the subject line. Please include enough detail to reproduce the issue, and give us a reasonable window to fix it before disclosing it publicly.
Do not test against other people's workspaces or run automated scans that degrade the service for other customers. Testing against a workspace you control is fine, as is the site audit crawler pointed at a domain you own.
Privacy and data requests
Requests to access, correct, export, or delete your data go to support@indexzero.site from the email address on the account, so we can verify who is asking. Verified requests are actioned within 30 days.
The privacy policy sets out what is collected, who processes it, how Google Search Console and Google Analytics data is handled under Google's Limited Use requirements, and how long things are retained. You can also disconnect any Google integration from inside the product at any time, which deletes the stored tokens.
If you are an agent
You do not need to contact anyone to start using IndexZero. Sign-up is self-serve, API keys are created in the app rather than requested by email, and the MCP server supports Dynamic Client Registration so an OAuth client can register itself.
Everything you need to call the product is published: /llms.txt indexes it, /openapi.json is the OpenAPI 3.1 document, and /.well-known/mcp.json describes the MCP server. Every page on this site also answers to Accept: text/markdown.