545 Data Governance contracts
Credit Account Application Form by EasyLegalDocs
Open Legal Library
This document is a template for an application to open a credit account. It collects personal, employment, and credit history information from an applicant. The form also includes an authorization for the financial institution to check the applicant's creditworthiness.
Cookie Policy by EasyLegalDocs
Open Legal Library
This document outlines the Cookie Policy for a website, explaining what cookies are, how they are used to enhance user experience and site functionality, and how users can control or disable them. It clarifies that disabling cookies may affect site performance and refers to the Privacy Policy for personal data management.
Data Protection Addendum (DPA) by Bonterms
Bonterms
This document is a Bonterms Data Protection Addendum (DPA) designed to be attached to an existing agreement between a Customer and a Provider. It outlines the terms for processing personal data, including details on the subject matter, technical and organizational measures, cross-border transfer mechanisms, and region-specific terms, ensuring compliance with data protection regulations. It requires the parties to specify the main agreement, DPA effective date, and subprocessor list, along with any additional agreed terms and signatures to formalize the addendum. This DPA helps parties meet their obligations regarding data privacy and security when one party processes data on behalf of another. It is structured to incorporate various schedules covering critical aspects of data processing and protection, making it a comprehensive framework for managing data privacy responsibilities within a commercial relationship. The document is designed to be adaptable through its schedules for specific processing details and region-specific legal requirements. It also provides clear fields for identifying the main agreement it attaches to, the effective date of the DPA, and details regarding subprocessors, ensuring all necessary information is captured for a legally sound data processing agreement. The inclusion of fields for customer and provider signatures, names, titles, and companies ensures proper execution and accountability for the terms outlined in the addendum. This DPA is a crucial component for any service agreement involving the processing of personal data, helping to mitigate risks and ensure legal compliance for both the customer and the provider involved in the data exchange. Its modular structure, with various schedules, allows for detailed customization and adherence to diverse regulatory landscapes, making it a robust tool for managing data protection obligations in a dynamic legal environment. The document's emphasis on technical and organizational measures, as well as cross-border transfer mechanisms, highlights its comprehensive approach to data security and international data flow compliance. This DPA serves as a foundational legal instrument for establishing clear roles and responsibilities in data processing activities, thereby safeguarding personal data and fostering trust between the contracting parties. It is essential for any business relationship where data processing is a core component, providing a clear and enforceable framework for data protection. The document's design facilitates easy integration with existing contracts, making it a practical solution for businesses seeking to formalize their data protection commitments. The inclusion of a setup page simplifies the process of customizing the DPA to specific contractual needs, ensuring that all relevant details are captured effectively. Overall, this DPA is a vital legal tool for managing data protection obligations in today's data-driven business landscape. It provides a structured and adaptable framework for ensuring compliance with global data privacy regulations, protecting both the customer and the provider from potential legal liabilities. The document's clear layout and comprehensive coverage of data protection aspects make it an indispensable resource for businesses engaged in data processing activities. Its focus on key terms and schedules ensures that all critical elements of data protection are addressed, providing a robust legal foundation for secure data handling. This DPA is particularly useful for companies operating internationally, as it includes provisions for cross-border data transfers and region-specific terms, allowing for compliance with diverse legal requirements. The document's emphasis on transparency and accountability in data processing helps to build trust and maintain strong business relationships. It is an essential component of any modern service agreement that involves the handling of personal data, offering a clear and enforceable framework for data protection. The DPA's structure allows for easy customization to meet the unique needs of different organizations and their data processing activities. This ensures that the addendum is not only legally compliant but also practical and effective in real-world scenarios. The document's comprehensive nature, covering everything from technical measures to legal jurisdictions, makes it a powerful tool for managing data protection risks. It is designed to be user-friendly, with clear instructions for filling in the necessary information, making it accessible to a wide range of users. The DPA's commitment to standardized legal terms, as indicated by
AI Standard Clauses by Bonterms
Bonterms
This document provides standard clauses for incorporating Artificial Intelligence (AI) features into an existing cloud service agreement. It addresses critical aspects such as the use of customer data for AI training, intellectual property rights over AI inputs and outputs, and liability for potential infringement by AI-generated content. The template offers various options for each clause, allowing for customization based on specific business needs.
End User Agreement (for Marketplaces) by Bonterms
Bonterms
This Bonterms Standard End User Agreement outlines the terms for customers to subscribe to cloud services or software products offered by a provider through an online marketplace. It details usage rights, data handling, warranties, limitations of liability, and intellectual property, ensuring a clear framework for the digital product transaction.
Cloud Terms (SaaS) by Bonterms
Bonterms
This document is a cover page designed to execute the Bonterms Cloud Terms (Version 1.0) for a Software as a Service (SaaS) agreement. It incorporates the standard Bonterms Cloud Terms by reference and allows for the specification of key deal terms, governing law, and courts of authority. Additionally, it provides sections to include various essential attachments such as an Acceptable Use Policy, Service Level Agreement, and Data Protection Addendum.
Business Associate Agreement by Bonterms
Bonterms
This Bonterms Standard Business Associate Agreement (BAA) is designed for use between a Customer and a Business Associate. It outlines the responsibilities of the Business Associate in handling protected health information (PHI) in compliance with HIPAA regulations. This agreement is typically incorporated into a larger main service agreement between the parties.
Data Protection Addendum (DPA) by Bonterms
Open Legal Library
This document is a Data Protection Addendum (DPA) designed to be attached to a main agreement between a Customer and a Provider. It outlines the obligations of both parties regarding the processing of personal data, ensuring compliance with various data protection laws like GDPR, CCPA, and UK GDPR. The DPA covers aspects such as subprocessing, data security measures, handling data subject requests, and cross-border data transfers.
AI Standard Clauses by Bonterms
Open Legal Library
These AI Standard Clauses provide a model for terms governing a customer's use of AI features within a provider's cloud service. They cover crucial aspects like data training policies, intellectual property rights for inputs and outputs, liability for infringement, and specific restrictions on AI feature usage. Designed as an addendum, these clauses can be adapted to various cloud service agreements.
Business Associate Agreement by Bonterms
Open Legal Library
This document is a Standard Business Associate Agreement (BAA) that outlines the obligations of a Business Associate when handling Protected Health Information (PHI) on behalf of a Customer. It ensures compliance with HIPAA and HITECH Act regulations regarding the use, disclosure, and safeguarding of PHI, including reporting requirements for breaches and security incidents. This agreement is typically incorporated into a main service agreement between the parties to ensure legal compliance for healthcare-related data handling activities. It details permitted uses and disclosures, safeguard requirements, and event reporting protocols for PHI, ensuring the protection of sensitive health information in accordance with federal law. The document also specifies the roles and responsibilities of both the Customer and the Business Associate, including provisions for subcontractors and data disposition upon termination. It is designed to be executed via a cover page that specifies key terms and any additional modifications, making it a flexible yet comprehensive legal instrument for managing PHI. The agreement ensures that the Business Associate adheres to the same privacy and security standards as the Customer, particularly concerning access, amendment, and accounting of PHI disclosures. It also addresses the minimum necessary rule for PHI use and disclosure, and compliance with applicable HITECH Act requirements. Overall, this BAA serves as a critical legal framework for entities that handle PHI to maintain regulatory compliance and protect patient data. It is structured with clear definitions and clauses covering various aspects of PHI management, making it suitable for organizations operating under HIPAA regulations. The document also includes provisions for the duration of the agreement and the proper disposition of PHI upon its termination or expiration, ensuring continued data protection even after the primary service agreement concludes. This comprehensive approach helps both parties meet their legal obligations and mitigate risks associated with PHI handling. The agreement also clarifies the relationship between the BAA and any main agreement, establishing an order of precedence in case of conflicts, and explicitly states that there are no third-party beneficiaries, reinforcing the direct contractual relationship between the Customer and the Business Associate. It further defines the parties as independent contractors, ensuring clarity in their legal relationship. The document is designed to be adaptable, allowing for additional terms and modifications through its cover page, which enhances its utility for various business arrangements involving PHI. This structure ensures that while the core terms remain standard, specific operational details can be customized to fit the unique needs of each engagement. The inclusion of detailed definitions for terms like "Breach," "Covered Entity," "Security Incident," and "Unsecured PHI" provides a clear understanding of the regulatory landscape and the specific events that trigger reporting and mitigation obligations. This level of detail is crucial for ensuring that both parties are fully aware of their responsibilities and the standards they must uphold. The BAA also addresses the availability of internal records to government agencies, ensuring transparency and cooperation with regulatory bodies for compliance determinations. This provision underscores the serious nature of HIPAA compliance and the need for accountability in handling PHI. Furthermore, the agreement mandates that Business Associates mitigate any harmful effects of impermissible PHI use or disclosure, demonstrating a commitment to proactive risk management. This proactive approach is essential for protecting individuals' health information and maintaining trust in healthcare-related services. The document also outlines the Customer's obligations, such as implementing appropriate safeguards and informing the Business Associate of any limitations or changes in privacy practices, ensuring a collaborative approach to PHI protection. This shared responsibility is fundamental to effective HIPAA compliance. Finally, the BAA's emphasis on the minimum necessary principle for PHI use and disclosure aligns with core HIPAA tenets, promoting data minimization and enhanced privacy protection. This principle ensures that only the essential information is accessed and shared, further safeguarding sensitive health data. The document's clear and comprehensive nature makes it an indispensable tool for any entity involved in the processing or handling of Protected Health Information. It provides a robust legal framework that supports compliance, protects data, and clarifies responsibilities, thereby reducing legal and operational risks for both the Customer and the Business Associate. The inclusion of specific reporting timelines, such as the "Response Period," ensures that any incidents are addressed promptly and effectively, which is crucial for mitigating potential harm and maintaining regulatory compliance. This focus on timely action is a key component of effective data security and privacy management. The agreement's detailed provisions for subcontractors also extend the reach of HIPAA compliance, ensuring that all entities in the data handling chain adhere to the same stringent standards. This comprehensive coverage is vital for preventing data breaches and maintaining the integrity of PHI across all operational touchpoints. Overall, this Standard Business Associate Agreement is a well-crafted legal instrument that provides a solid foundation for secure and compliant PHI management in various business contexts. Its clarity, comprehensiveness, and adaptability make it a valuable asset for organizations navigating the complexities of healthcare data regulations. The document's emphasis on both proactive measures and responsive actions ensures a holistic approach to PHI protection, benefiting all stakeholders involved. It serves as a testament to the importance of robust legal agreements in safeguarding sensitive health information in today's interconnected digital environment. The agreement's structure, with a clear cover page for customization and detailed standard terms, balances flexibility with regulatory rigor, making it highly effective for diverse operational needs. This balance is crucial for ensuring that the agreement remains relevant and enforceable across different business scenarios. The explicit incorporation of HIPAA and HITECH Act definitions and requirements directly into the agreement simplifies compliance efforts for both parties, reducing ambiguity and promoting adherence to federal standards. This direct integration is a significant advantage for legal and operational teams. Furthermore, the BAA's focus on the