Neat looking service. From a security standpoint, it is a bit terrifying that it could be logging everything, no?
We don't log any SSH usage details, ever.
Will you accept liability for compromised servers that result from a fault in your code, service or practices when the policies you recommend are implemented in accordance with your documentation?