Legal & Compliance
This document outlines #about's legal obligations, compliance frameworks, and user rights. We maintain strict adherence to international data protection standards, accessibility guidelines, and intellectual property regulations. Please review this document carefully before using our services or platforms.
1. Scope & Commitment
This Legal & Compliance framework applies to all digital services, websites, applications, and business operations conducted by #about ("the Company"). By accessing or utilizing our platforms, you acknowledge that you have read, understood, and agree to be bound by these terms.
#about is committed to maintaining the highest standards of ethical business practices, regulatory compliance, and user transparency. This document will be updated periodically to reflect changes in legislation, technology, or our operational practices.
2. Data Protection & Privacy
#about complies with the General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), California Privacy Rights Act (CPRA), and applicable international data protection laws.
2.1 Data Collection & Processing
We collect only data necessary for service delivery, communication, and legal compliance. Processing is conducted under lawful bases including contract performance, legitimate interest, consent, and legal obligation.
2.2 User Rights
- Right to Access: Request a copy of personal data we hold.
- Right to Rectification: Correct inaccurate or incomplete data.
- Right to Erasure: Request deletion where legally permissible.
- Right to Portability: Receive data in a structured, machine-readable format.
- Right to Restrict/Objact: Limit processing or object to specific uses.
3. Terms of Service
Access to #about's digital platforms and services is contingent upon acceptance of these terms. Violations may result in service suspension or termination.
3.1 Eligibility & Accounts
Users must be at least 18 years of age or possess legal capacity in their jurisdiction. Account holders are responsible for maintaining credential security and reporting unauthorized access immediately.
3.2 Acceptable Use
Prohibited activities include but are not limited to: unauthorized scraping, malicious code injection, impersonation, trademark infringement, or violating applicable export control laws.
3.3 Termination & Modification
#about reserves the right to modify, suspend, or terminate services with 30 days written notice, except in cases of material breach or legal requirement where immediate action is necessary.
5. Accessibility Compliance
#about is committed to digital inclusion and complies with Section 508, the Americans with Disabilities Act (ADA), and the European Accessibility Act (EAA). Our web platforms target WCAG 2.1 Level AA conformance.
5.1 Standards Implemented
- Semantic HTML5 structure & ARIA landmarks
- Keyboard navigation & focus management
- Color contrast ratios meeting 4.5:1 (text) and 3:1 (UI components)
- Alt text, captions, and transcript requirements for media
- Responsive design tested across assistive technologies
If you experience barriers, please contact our accessibility team. We will provide alternative formats or accommodations within 5 business days.
6. Information Security
Security is integrated into our development lifecycle. We maintain a risk-based approach aligned with ISO 27001 principles and NIST Cybersecurity Framework.
6.1 Technical Controls
- AES-256 encryption for data at rest; TLS 1.3 for data in transit
- Role-based access control (RBAC) with principle of least privilege
- Regular penetration testing & vulnerability scanning (quarterly)
- Multi-factor authentication (MFA) for all administrative access
6.2 Incident Response
In the event of a data breach, #about will notify affected individuals and relevant supervisory authorities within statutory timeframes (72 hours under GDPR, prompt notification under CCPA). Incident reports are published transparently when appropriate.
7. Intellectual Property
All content, branding, software, and creative works published on #about's platforms are protected under applicable copyright, trademark, and trade secret laws.
7.1 Ownership & Licensing
Unless explicitly stated otherwise, #about retains ownership of original works. Client deliverables are transferred upon full payment per project agreements. Third-party assets are used under valid licenses or fair use doctrines.
7.2 Trademark Notice
The #about name, logo, and related identifiers are registered trademarks. Unauthorized use, reproduction, or commercial exploitation is strictly prohibited. DMCA claims may be submitted through our designated agent.
8. Disclaimers & Limitation of Liability
Services are provided "as is" without warranties of uninterrupted, error-free, or virus-free operation. #about disclaims liability for indirect, incidental, or consequential damages arising from service use, to the fullest extent permitted by law.
Information provided through our platforms is for general guidance and does not constitute legal, financial, or professional advice. Users are responsible for verifying compliance with local regulations. Links to third-party sites do not imply endorsement, and we assume no liability for external content.
9. Third-Party & Certifications
#about integrates with vetted service providers and maintains transparency regarding data flows. Key compliance certifications and frameworks include:
- ISO 27001: Information Security Management (Certified)
- SOC 2 Type II: Security, Availability, Confidentiality (Annual Audit)
- GDPR/CCPA: Data Protection Officer appointed; DPAs available upon request
- Accessibility: VPAT 2.4 available; WCAG 2.1 AA target
Subprocessors are reviewed for security posture, data residency compliance, and contractual safeguards. A current list is maintained in our vendor transparency report.
10. Contact & Data Subject Requests
For compliance inquiries, data subject requests, accessibility accommodations, or legal notices, please contact our dedicated team:
| Department | Contact | Response Time |
|---|---|---|
| Privacy & Data Protection | dpo@about.company | 30 days (statutory) |
| Legal & Compliance | legal@about.company | 5 business days |
| Accessibility Support | accessibility@about.company | 3 business days |
| Security Incident Reporting | security@about.company | Immediate (24/7 monitoring) |
Postal correspondence may be directed to:
#about Legal Department
Compliance Office, Suite 400
123 Innovation Drive, San Francisco, CA 94107, USA