255 Cybersecurity contracts
Content Removal Policies Github Private Information Removal Policy (GitHub)
OpenLegalLibrary
This document outlines a company's policy and process for requesting the removal of private information from its platform. It specifically addresses high-risk content that poses a security threat, such as exposed access credentials. The policy details what constitutes private information for removal, appropriate request types, and the steps involved for both the requesting party and the content poster.
Privacy Policies Github General Privacy Statement (GitHub)
OpenLegalLibrary
This Privacy Statement outlines how a company handles personal data collected from users interacting with its services. It details the types of data collected, the purposes for processing, and how data may be shared with affiliates, service providers, and other third parties. The document also explains user privacy rights, international data transfer mechanisms like the DPF, and specific provisions for US state residents regarding their data protection rights and choices, including cookie management options. It clarifies the roles of Data Controller and Data Processor, especially when an organization provides a user's account, and emphasizes the company's commitment to data security and compliance with relevant privacy laws like GDPR and US state regulations. Users can exercise their rights, manage cookie preferences, and contact the Data Protection Officer for concerns, ensuring transparency and control over their personal information. The statement also addresses data retention, security measures, and provides information for minors, along with details on how changes to the statement will be communicated. It includes translations into other languages for broader accessibility. This comprehensive document serves as a guide for users to understand their privacy in relation to the company's services, covering everything from data collection to dispute resolution processes. It also highlights the company's adherence to various data privacy frameworks and its commitment to protecting user data. The document also provides specific disclosures for California residents, including categories of personal information collected and shared, and their rights under California privacy laws. It also includes information for residents of Colorado, Connecticut, Virginia, and Nevada, detailing their additional rights and the company's practices regarding their personal information. This ensures that users from different jurisdictions are aware of their specific rights and how the company handles their data in compliance with local regulations. The document also explains the use of cookies and tracking technologies, providing users with choices and controls over non-essential cookies. It details the types of cookies used, their purposes, and how users can manage their cookie preferences, including browser settings and industry opt-out programs. This section aims to give users a clear understanding of how their online activity is tracked and how they can control it. Overall, the Privacy Statement is designed to be a transparent and informative resource for users to understand their data privacy rights and the company's practices. It covers a wide range of topics from data collection to dispute resolution, ensuring that users are well-informed about how their personal information is handled. The document also emphasizes the company's commitment to security and compliance with various data protection laws and frameworks. It also provides contact information for users to address any questions or concerns regarding their privacy. This comprehensive approach ensures that users have all the necessary information to make informed decisions about their data. The document also includes information about international data transfers and the mechanisms used to protect personal data when it is transferred across borders. This is particularly important for users in the EEA, UK, and Switzerland, as it addresses their concerns about data protection in other countries. The document also explains the company's participation in the Data Privacy Framework (DPF) program, which provides a mechanism for transferring personal data from the EU, UK, and Switzerland to the US. This demonstrates the company's commitment to complying with international data transfer regulations. Finally, the document includes a section on information for minors, stating that the services are not intended for individuals under the age of 13 and outlining the steps to take if a minor's personal data is inadvertently collected. This shows the company's commitment to protecting the privacy of children. The document also provides information on how changes to the Privacy Statement will be communicated to users, ensuring that they are always aware of any updates to the company's privacy practices. This ensures transparency and allows users to stay informed about how their data is handled. The document also includes translations into other languages, making it accessible to a wider audience. This demonstrates the company's commitment to providing clear and understandable privacy information to all its users, regardless of their language. The document also explains the company's use of web beacons and pixel tags in email marketing, providing users with information on how their email interactions are tracked. This transparency helps users understand how their engagement with email communications is monitored. The document also details the use of mobile identifiers for analytics on mobile devices, explaining how these are used for sales and marketing purposes on enterprise marketing pages. This provides users with a comprehensive understanding of tracking technologies across different platforms. The document also explains the use of flash cookies, also known as Local Shared Objects (LSOs), for collecting and storing information about service usage, particularly for advertisements and videos. This ensures users are aware of all types of tracking technologies employed. The document also clarifies that the company and its partners share collected or inferred information with third parties for various purposes, including targeted advertising. This transparency helps users understand the extent of data sharing. The document also provides a table detailing different types of cookies, such as required, analytics, social media, and advertising cookies, along with their descriptions and purposes. This structured information makes it easier for users to understand the specific functions of each cookie type. The document also offers various options for users to disable non-essential cookies, including specific settings on enterprise marketing pages, browser controls, tracking blockers, and industry opt-out programs. This empowers users to manage their cookie preferences effectively. The document also explains that these cookie choices are browser-specific, advising users to apply their preferences across all devices and browsers they use to access the services. This ensures consistent privacy settings across different platforms. The document also reiterates that the company does not sell or share the personal information of known minors under 16 years of age, reinforcing its commitment to child privacy. This provides reassurance to users about the protection of minors' data. The document also clarifies that the company does not engage in profiling in furtherance of decisions that produce legal or similarly significant effects concerning the consumer, as defined by Colorado law. This addresses specific concerns for Colorado residents. The document also states that the company does not sell covered information as defined under Nevada Revised Statutes, providing specific assurance to Nevada residents. This ensures compliance with state-specific regulations. The document also provides a dedicated email address for California Customers to request information about the disclosure of personal information to third parties for direct marketing purposes under the
Github Terms Github Terms For Additional Products And Features (GitHub)
OpenLegalLibrary
This document outlines the specific terms and conditions for various additional products and features offered by a service provider, supplementing a user's main service agreement. It details usage policies, billing, and limitations for functionalities such as Actions, Advanced Security, Codespaces, and Copilot. Users agree to these terms when utilizing the additional products and features.
Security Policies Github Bug Bounty Program Legal Safe Harbor (GitHub)
OpenLegalLibrary
This document outlines the legal safe harbor provided by GitHub for security researchers participating in its bug bounty program. It protects researchers from civil or criminal action for good faith violations of the policy, aligning their authorized conduct with laws like the CFAA and DMCA. The policy also details how GitHub handles sharing vulnerability reports with affected third parties, ensuring researcher anonymity and protection from legal action.
Acceptable Use Policies Github Active Malware Or Exploits (GitHub)
OpenLegalLibrary
This document outlines GitHub's policy regarding the use of its platform for active malware or exploits. It clarifies that while malicious attacks are prohibited, security research into vulnerabilities and exploits is generally permitted due to its educational value. The policy also details how GitHub handles instances of widespread abuse of dual-use content, including temporary restrictions and an appeals process.
Data Processing Agreement by Common Paper
OpenLegalLibrary
This Data Processing Agreement (DPA) outlines the terms under which a service provider (Processor) handles personal data on behalf of a customer (Controller or Processor). It ensures compliance with major data protection regulations like GDPR, UK GDPR, and CCPA, detailing aspects such as subprocessors, security measures, international data transfers, and incident response protocols.
Cloud Service Agreement by Common Paper
OpenLegalLibrary
This is a comprehensive Cloud Service Agreement template designed for the provision of cloud-based services. It includes an Order Form for specific business terms, Key Terms for legal specifics like governing law and liability, and detailed Standard Terms covering service access, restrictions, privacy, payment, termination, warranties, indemnification, and confidentiality. The template also incorporates a Service Level Agreement (SLA) with commitments for uptime and response times.
Service Level Agreement by Common Paper
OpenLegalLibrary
This template outlines a comprehensive Cloud Service Agreement and an integrated Service Level Agreement. It defines the terms for a customer's access to and use of cloud services, including subscription details, payment processes, and specific commitments regarding service uptime and response times. The agreement also covers critical legal aspects such as warranties, liability limitations, indemnification, and confidentiality.
Privacy Policies Github Candidate Privacy Policy (GitHub)
OpenLegalLibrary
This GitHub Candidate Privacy Policy outlines the types of personal information collected from job applicants and candidates during the recruitment process. It details how this data is used, shared with third parties, and retained, while also informing candidates about their rights regarding their personal information.
Data Protection Addendum (DPA) by Bonterms
OpenLegalLibrary
The Bonterms Data Protection Addendum (DPA) is a modular, lawyer-vetted addendum that supplements core SaaS or service agreements to address data processing obligations, cross-border transfers, security, and privacy compliance. It is part of Bonterms’ widely trusted library of open, lawyer-vetted standard agreements.