CINXE.COM
Legal Requirements Overview - iubenda help
<!DOCTYPE html> <html lang="en" class="no-js"> <head> <meta charset="utf-8"> <meta name="viewport" content="width=device-width, initial-scale=1, shrink-to-fit=no"> <meta class="swiftype" name="tags" data-type="string" content="en"> <meta charset="utf-8"> <title>Legal Requirements Overview - iubenda help</title> <meta name="title" content="Legal Requirements Overview - iubenda help"> <meta http-equiv="Content-Type" content="text/html; charset=utf-8"> <meta http-equiv="Content-Language" content="en"> <meta name="locale" content="en"> <meta name="description" content="As the world becomes more dependent on digital products and services, data privacy has increasingly become a top priority for many countries and regions. As a result, many regions have put in place robust and enforceable data regulations by which businesses are expected to comply. In most cases, non-compliance with these regulations can not only… Continue reading Legal Requirements Overview"> <meta name="robots" content="index"> <meta name="image" content="https://www.iubenda.com/seo/assets/default.png"> <meta name="twitter:card" content="summary"> <meta name="twitter:title" content="Legal Requirements Overview"> <meta name="twitter:description" content="As the world becomes more dependent on digital products and services, data privacy has increasingly become a top priority for many countries and regions. As a result, many regions have put in place robust and enforceable data regulations by which businesses are expected to comply. In most cases, non-compliance with these regulations can not only… Continue reading Legal Requirements Overview"> <meta name="twitter:site" content="@iubenda"> <meta name="twitter:image:src" content="https://www.iubenda.com/seo/assets/default.png"> <meta property="og:title" content="Legal Requirements Overview"> <meta property="og:description" content="As the world becomes more dependent on digital products and services, data privacy has increasingly become a top priority for many countries and regions. As a result, many regions have put in place robust and enforceable data regulations by which businesses are expected to comply. In most cases, non-compliance with these regulations can not only… Continue reading Legal Requirements Overview"> <meta property="og:image" content="https://www.iubenda.com/seo/assets/default.png"> <meta property="og:url" content="https://www.iubenda.com/en/help/5720-legal-requirements-overview"> <meta property="og:site_name" content="iubenda"> <meta property="og:locale" content="en"> <meta property="og:type" content="website"> <meta property="fb:app_id" content="190131204371223"> <script type="application/ld+json">{"@context":"http://schema.org","@type":"Organization","url":"https://www.iubenda.com","name":"iubenda","logo":"https://www.iubenda.com/seo/assets/logo.png","sameAs":["https://www.facebook.com/iubenda","https://www.twitter.com/iubenda"],"aggregateRating":{"@type":"AggregateRating","ratingValue":"4.8","reviewCount":"133"}}</script> <link rel="canonical" href="https://www.iubenda.com/en/help/5720-legal-requirements-overview" /> <link rel="alternate" href="https://www.iubenda.com/it/help/5736-panoramica-sui-requisiti-di-legge" hreflang="it" /> <link rel="alternate" href="https://www.iubenda.com/en/help/5720-legal-requirements-overview" hreflang="en" /> <link rel="alternate" href="https://www.iubenda.com/de/help/24956-rechtlicher-ueberblick" hreflang="de" /> <link rel="alternate" href="https://www.iubenda.com/es/help/39279-resumen-de-los-requisitos-legales" hreflang="es" /> <link rel="alternate" href="https://www.iubenda.com/fr/help/46918-tour-dhorizon-des-exigences-legales" hreflang="fr" /> <link rel="alternate" href="https://www.iubenda.com/pt-br/help/43933-visao-geral-dos-requisitos-legais" hreflang="pt-BR" /> <link rel="alternate" href="https://www.iubenda.com/nl/help/68255-overzicht-wettelijke-vereisten" hreflang="nl" /> <link rel="alternate" href="https://www.iubenda.com/da/help/128234-oversigt-over-lovkrav" hreflang="da" /> <meta name="csrf-param" content="authenticity_token" /> <meta name="csrf-token" content="ct2uDExABS-eYnrv4daw-IehQsJmf097eclKhk6kBz_QkMhaZy930Ddg9M424dxTOvHz8aL-oDOb47mpgdyilg" /> <meta name="csp-nonce" content="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" /> <link nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" rel="preload" href="/assets/site-314e4e6152ff2dd794db7bab6963ff3ce11faa99762b3abac29741922f96eccb.js" as="script"> <link nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" rel="preload" href="/assets/core-ffc7831de07148fc03f772a1ff267ebd35acf5a1f3edd2f1c45c40933bd946ed.css" as="style"> <link nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" rel="preload" as="script" href="/assets/builds/growthbook-5cfc0ab4c04b3cdc6f4e.js"> <link nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" rel="preload" href="/assets/app-41e048d0cbf6e83bc7cc82a1f62755c1cbba8aadf4f1fc5044e61468f2a0a5a0.js" as="script"> <link nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" rel="preload" href="/assets/help-3b6462ab1db354f81c56a65e4037e1bfe0110c57f541d4ecc1e0dbf3b282b70d.js" as="script"> <link nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" rel="preload" href="https://cdn.iubenda.com/cons/beta/iubenda_cons.js" as="script"> <link rel="preload" as="font" href="/assets/hk-grotesk/HKGrotesk-Medium-9c3fd6d5af782a4511dc56bc490a29d341f5f775a1473d9498abc91e0fe793db.woff2" type="font/woff2" crossorigin> <link rel="preload" as="font" href="/assets/icons/iubenda-519eefd5e2627f078cb37ad800d0876b5986439f792cc1ae8df4a4cbc4c5e660.woff" type="font/woff2" crossorigin> <link rel="preload" as="font" href="/assets/hk-grotesk/HKGrotesk-Regular-f089423b22171f8b5954000d1136ad533e7c6942974875d514b75477680b2ac9.woff2" type="font/woff2" crossorigin> <link rel="preload" as="font" href="/assets/hk-grotesk/HKGrotesk-Bold-c10fcca174a9767aab6fa40c8c39ce42a696a48fd3091732280196a1042e3abb.woff2" type="font/woff2" crossorigin> <link rel="preload" as="font" href="/assets/hk-grotesk/HKGrotesk-Light-abd02846fe10b12c6394b41fd7ac3914ca8cbf09234e0001d696c724ae44102b.woff2" type="font/woff2" crossorigin> <link rel="preload" as="font" href="/assets/hk-grotesk/HKGrotesk-Italic-4a89ad60aaf82464ae047d83a45fc663f62823f102bcc8e9c8429dbc36ccd6f4.woff2" type="font/woff2" crossorigin> <link rel="preload" as="font" href="/assets/tisa/light-italic-318917ed1d2496362d0f10cf4cbc0f042223eb68d6c355159f93a6c67aa59fef.woff2" type="font/woff2" crossorigin> <link rel="preload" as="font" href="/assets/tisa/light-2d8a5a0678adfb941a86c53ab436176bbeba11994c0da2be4ef1f6902079c121.woff2" type="font/woff2" crossorigin> <link rel="preload" as="font" href="/assets/tisa/regular-italic-0e9999012ee0ca260e0ab1aaeeb21d60b6853ebf38fb09bf228be80cb2ef69a9.woff2" type="font/woff2" crossorigin> <link rel="preload" as="font" href="/assets/tisa/regular-833a2fba288bd5d9fcbdc7a268303eeeb6fe71f902ba7422c04ab9dcb19a7311.woff2" type="font/woff2" crossorigin> <link rel="stylesheet" href="/assets/core-ffc7831de07148fc03f772a1ff267ebd35acf5a1f3edd2f1c45c40933bd946ed.css" /> <link rel="preload" href="/assets/help-de56e2adf05bb2e958739ac773721cad924ffdebe199943fb4988e6a150d56e1.css" as="style"> <link rel="stylesheet" href="/assets/help-de56e2adf05bb2e958739ac773721cad924ffdebe199943fb4988e6a150d56e1.css" /> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ window.phraseappEnabled = null if (window.phraseappEnabled) { document.addEventListener('DOMContentLoaded', function() { $('body').on('click', '.pi_bc', function () { $('#iubenda-modal').removeAttr('tabindex'); }); }); } //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ window.CSP_NONCE = "8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"; //]]> </script> <script src="/assets/site-314e4e6152ff2dd794db7bab6963ff3ce11faa99762b3abac29741922f96eccb.js" nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"></script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ I18n.defaultLocale = "en"; I18n.locale = "en"; //]]> </script> <script src="/assets/app-41e048d0cbf6e83bc7cc82a1f62755c1cbba8aadf4f1fc5044e61468f2a0a5a0.js" nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"></script> <script src="/assets/builds/runtime-fa8add5d500e2d02bc6b.js" async="async" nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"></script> <script src="/assets/help-3b6462ab1db354f81c56a65e4037e1bfe0110c57f541d4ecc1e0dbf3b282b70d.js" nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"></script> <link rel="P3Pv1" href="https://www.iubenda.com/w3c/p3p.xml"> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ var _iub = _iub || {}; _iub.cons = _iub.cons || {}; _iub.cons.api_base_url = 'https://consent.iubenda.com/beta/public/'; _iub.cons_instructions = _iub.cons_instructions || []; _iub.cons_instructions.push(['init', { api_key: 'TxVC3QW2DacksiUzfazNBocfStJA2s9O', log_level: 'error', sendFromLocalStorageAtLoad: true, }]); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" id="cons_script" src="https://cdn.iubenda.com/cons/beta/iubenda_cons.js" async="async"> //<![CDATA[ //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ document.getElementById('cons_script').onload = function() { _iub.cons.api_base_url = 'https://consent.iubenda.com/beta/public/' } //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ (function() { window._iub = window._iub || []; _iub.csConfiguration = { "cookiePolicyId": 252372, "siteId": 1, "lang": 'en', "logLevel": 'error', "enableRemoteConsent": false, "consentOnScroll": false, "enableUspr": true, "enableLgpd": true, "countryDetection": true, "perPurposeConsent": true, "whitelabel": false, "floatingPreferencesButtonDisplay": true, "consentOnContinuedBrowsing": false, "promptToAcceptOnBlockedElements": true, "banner": { "position": "float-top-center", "acceptButtonDisplay": true, "customizeButtonDisplay": true, "rejectButtonDisplay": true, "useCustomBrand": true, "brandTextColor": "#FFF", "brandBackgroundColor": "#1CC691", "acceptButtonColor": "#0073CE", "acceptButtonCaptionColor": "white", "customizeButtonColor": "#DADADA", "customizeButtonCaptionColor": "#4D4D4D", "rejectButtonColor": "#0073CE", "rejectButtonCaptionColor": "white", "textColor": "black", "backgroundColor": "white", "logo": "/assets/site/general/logo-whiteongreen-18a11ce988ecc91e9cd5433bcdc55e4023983ea75b8542ca108728f511881cf1.svg", "closeButtonRejects": true }, callback: { onActivationDone: function() { window.csActivationCompleted.resolve(); }, onPreferenceExpressedOrNotNeeded: function(prefs) { const preferences = _iub.cs.api.getPreferences(); if (typeof preferences.id === 'undefined') { return; } // Handle quiz buttons for pricing pages const quizBtns = document.querySelectorAll(".appcues-quiz-btn"); if (preferences.purposes && preferences.purposes['4'] === true && preferences.purposes['5'] === true) { if( quizBtns.length > 0 ) { quizBtns.forEach( btn => { btn.classList.remove("disabled"); const alerts = document.querySelectorAll(".appcues-quiz-alert") alerts.forEach( alert => { alert.classList.add("d-none"); }); }); } } else { if( quizBtns.length > 0 ) { quizBtns.forEach( btn => { btn.classList.add("disabled"); const alerts = document.querySelectorAll(".appcues-quiz-alert") alerts.forEach( alert => { alert.classList.remove("d-none"); }); }); } } // Handle login button for Google Ads Login page const loginBtn = document.querySelector(".google-login-page .btn-google-oauth"); if (preferences.purposes && preferences.purposes['2'] === true) { if( loginBtn ) { loginBtn.classList.remove("disabled"); loginBtn.disabled = false; document.querySelector(".google-login-alert").classList.add("d-none"); } } else { if( loginBtn ) { loginBtn.classList.add("disabled"); loginBtn.disabled = true; document.querySelector(".google-login-alert").classList.remove("d-none"); } } // Handle chat button on dashboard sidebar const supportChatBtn = document.querySelector("#chat_support_box_button"); if( supportChatBtn ) { if (preferences.purposes && preferences.purposes['2'] === true && preferences.purposes['3'] === true && preferences.purposes['4'] === true && preferences.purposes['5'] === true) { document.querySelector("#support_box_accordion").classList.add("d-none"); supportChatBtn.classList.remove("d-none"); } } } }, "floatingPreferencesButtonZIndex": 1000, }; if (I18n.locale === 'da') { _iub.csConfiguration.banner.showPurposesToggles = true; } window.csActivationCompleted = jQuery.Deferred(); })(); //]]> </script> <script src="https://cs.iubenda.com/sync/252372.js" nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"></script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ gtag('set', 'url_passthrough', true); //]]> </script> <!-- <script src="//cdn.iubenda.com/cs/debugger.js"></script> --> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" type="text/javascript" src="//cdn.iubenda.com/cs/gpp/beta/stub.js"></script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" type="text/javascript" src= "//cdn.iubenda.com/cs/beta/iubenda_cs.js" charset="UTF-8" async></script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" type="text/plain" class="_iub_cs_activate" data-iub-purposes="5"> //<![CDATA[ (function(w, d, s, l, i) { w[l] = w[l] || []; w[l].push({ 'gtm.start': new Date().getTime(), event: 'gtm.js' }); var f = d.getElementsByTagName(s)[0], j = d.createElement(s), dl = l != 'dataLayer' ? '&l=' + l : ''; j.async = true; j.src = 'https://www.googletagmanager.com/gtm.js?id=' + i + dl; var n = d.querySelector('[nonce]'); n && j.setAttribute('nonce', n.nonce || n.getAttribute('nonce')); f.parentNode.insertBefore(j, f); })(window, document, 'script', 'dataLayer', 'GTM-PJDQKV'); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" type="text/plain" class="_iub_cs_activate" data-iub-purposes="5"> //<![CDATA[ (function(l,e,a,d,i,n,f,o){if(!l[i]){l.GlobalLeadinfoNamespace=l.GlobalLeadinfoNamespace||[]; l.GlobalLeadinfoNamespace.push(i);l[i]=function(){(l[i].q=l[i].q||[]).push(arguments)};l[i].t=l[i].t||n; l[i].q=l[i].q||[];o=e.createElement(a);f=e.getElementsByTagName(a)[0];o.async=1;o.src=d;f.parentNode.insertBefore(o,f);} }(window,document,'script','https://cdn.leadinfo.eu/ping.js','leadinfo','LI-665876B09328F')); //]]> </script> <link rel="shortcut icon" href="/favicon.ico"> <link rel="icon" type="image/png" href="/favicon.png"> <link rel="apple-touch-icon" href="/touch-icon-iphone.png"> </head> <body> <div class="top_bar" id="alert_msg" style="display:none;"> <div class="alert-message warning top"> <button id="alert-msg-site-close-button" class="close">×</button> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ document.querySelector('#alert-msg-site-close-button').addEventListener("click", function() { hideAlertMsg(); return false; }); //]]> </script> </div> </div> <header class="iub-header"> <div class="bg-gray-4 text-sm text-light py-2"> <div id="headerContainer" class="container"> <div class="d-flex justify-content-between align-items-center"> <div class="d-flex align-items-center"> <div> <ul class="list-unstyled mb-0 d-flex align-items-center"> <li class="list-inline-item"> <div class="dropdown"> <button class="btn btn-sm btn-faded-05 text-light dropdown-toggle rounded" type="button" id="dropdown-language" data-toggle="dropdown" aria-haspopup="true" aria-expanded="false"> <i class="i-world mr-1 align-middle"></i><span>English</span> </button> <div class="lang_selector dropdown-menu" aria-labelledby="dropdown-language"> <a class="dropdown-item" data-locale="en" href="/en/help/5720-legal-requirements-overview" title="iubenda - privacy policy generator - English version">English </a> <a class="dropdown-item" data-locale="it" href="/it/help/5736-panoramica-sui-requisiti-di-legge" title="iubenda - generatore di privacy policy - versione italiana">Italiano </a> <a class="dropdown-item" data-locale="de" href="/de/help/24956-rechtlicher-ueberblick" title="iubenda - Datenschutzerklärung-Generator - Deutsche Version">Deutsch </a> <a class="dropdown-item" data-locale="es" href="/es/help/39279-resumen-de-los-requisitos-legales" title="iubenda - generador de políticas de privacidad - versión en español">Español </a> <a class="dropdown-item" data-locale="fr" href="/fr/help/46918-tour-dhorizon-des-exigences-legales" title="iubenda - générateur de politique de confidentialité - version française">Français </a> <a class="dropdown-item" data-locale="pt-BR" href="/pt-br/help/43933-visao-geral-dos-requisitos-legais" title="iubenda - gerador de política de privacidade - versão em português">Português (BR) </a> <a class="dropdown-item" data-locale="nl" href="/nl/help/68255-overzicht-wettelijke-vereisten" title="iubenda - privacybeleid-generator - Nederlandstalige versie">Nederlands </a> <a class="dropdown-item" data-locale="da" href="/da/help/128234-oversigt-over-lovkrav" title="iubenda – generator af privatlivspolitik – Dansk version">Dansk </a> <a class="dropdown-item" data-locale="pt" href="/pt/help" title="iubenda - gerador de política de privacidade - versão em português">Português </a> </div> </div> </li> <li class="list-inline-item d-none d-lg-flex"> <span class="unread-wrap flex-shrink"></span> </li> </ul> </div> <div id="appcues-launchpad"></div> </div> <div class="text-right"> <ul class="list-unstyled mb-0 d-flex align-items-center"> <li class="list-inline-item mr-2"><a data-lightbox=true href="/en/login?ref=header">Login</a></li> <li class="list-inline-item"><a data-lightbox=true href="/en/signup" class="btn btn-sm btn-dark text-white js-header-signup-button">Sign up</a></li> </ul> </div> </div> </div> </div> <div class="bg-white"> <div class="container"> <div class="row justify-content-between pt-3 pb-3"> <div class="col-8 d-block d-lg-flex"> <a href="/en/" class="d-inline-block mr-5"> <img width="92" height="33" alt="Iubenda logo" data-lazy-src="/assets/site/general/logo-bfafd02b1fe7dcf519f04f8f0a03c74573d4e051c3a18ae9aa39bdf0cb2b9ec6.svg" src="data:image/gif;base64,R0lGODlhAQABAIAAAP///wAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==" /> <noscript> <img width="92" height="33" alt="Iubenda logo" src="/assets/site/general/logo-bfafd02b1fe7dcf519f04f8f0a03c74573d4e051c3a18ae9aa39bdf0cb2b9ec6.svg" /> </noscript> </a> <ul class="d-block d-lg-flex list-unstyled mb-0 d-inline-block mainmenu" id="mainMenu" itemscope itemtype="http://schema.org/SiteNavigationElement"> <li class="align-self-center has-nav"> <span class="lh-2 p-3">Products and services</span> <nav class="text-sm"> <div class="p-4"> <div class="mb-4"> <p class="serif text-light">A complete set of solutions to make your website or app compliant with the law, on multiple languages and legislations</p> <ul class="list-unstyled mb-0"> <li class="list-inline-item d-block d-md-inline-block mr-md-0 mb-md-2"> <a href="/en/overview" class="btn btn-sm btn-outline-primary d-block">Overview</a> </li> <li class="list-inline-item d-block d-md-inline-block mr-md-0 mb-md-2"> <a href="/en/pricing" class="btn btn-sm btn-outline-primary d-block">Pricing</a> </li> </ul> </div> <div class="row line-between-columns"> <div class="col-lg"> <div class="d-flex"> <div class="mr-3"> <img width="72" height="72" alt="Privacy Policy icon" data-lazy-src="/assets/site/products/privacy_policy-6641fa252acadc2d7bbbb2ba7a127e9765cacbbb50f11264df6bcb68e657e81c.svg" src="data:image/gif;base64,R0lGODlhAQABAIAAAP///wAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==" /> <noscript> <img width="72" height="72" alt="Privacy Policy icon" src="/assets/site/products/privacy_policy-6641fa252acadc2d7bbbb2ba7a127e9765cacbbb50f11264df6bcb68e657e81c.svg" /> </noscript> </div> <div> <div class="products_tags mb-3"> <div><i class="i-check mr-1 text-md"></i>For websites/apps</div> </div> <h4 class="text-sm mb-1"><a href="/en/privacy-and-cookie-policy-generator">Privacy and Cookie Policy Generator</a></h4> <div class="d-block d-lg-none"> <button role="link" class="btn btn-primary btn-sm text-white rarr js-redirect-button" data-url="/en/privacy-and-cookie-policy-generator">Explore</button> </div> <div class="d-none d-lg-block"> <p class="text-muted serif text-sm">Create your privacy and cookie policy in minutes.<br /><br /> Customizable from 2000+ clauses, available in 14 languages and automatically updated if the law changes, our generator allows you to create a legal document in minutes and seamlessly integrate it with your website or app.</p> <button role="link" class="btn btn-primary btn-sm text-white rarr js-redirect-button" data-url="/en/privacy-and-cookie-policy-generator">Explore</button> <ul class="list-unstyled mb-3 mt-3"> <li class="list-inline-item mr-2"><a href="/en/features#privacy-and-cookie-policy" class="link-underline line-highlight">Features</a></li> <li class="list-inline-item"><a href="/en/help/463-generate-privacy-policy" class="link-underline line-highlight">Documentation and guides</a></li> </ul> </div> </div> </div> </div> <div class="col-lg"> <div class="d-flex"> <div class="mr-3"> <img width="72" height="72" alt="Cookie Solution icon" data-lazy-src="/assets/site/products/cookie_solution-7c6de9a79e77ad5d6e4cc5bae39b4fc1ed83d7425fa260cb612ef4e86eec1493.svg" src="data:image/gif;base64,R0lGODlhAQABAIAAAP///wAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==" /> <noscript> <img width="72" height="72" alt="Cookie Solution icon" src="/assets/site/products/cookie_solution-7c6de9a79e77ad5d6e4cc5bae39b4fc1ed83d7425fa260cb612ef4e86eec1493.svg" /> </noscript> </div> <div > <div class="products_tags mb-3"> <div><i class="i-check mr-1 text-md"></i>For websites/apps</div> </div> <h4 class="text-sm mb-1"><a href="/en/cookie-solution">Privacy Controls and Cookie Solution</a></h4> <div class="d-block d-lg-none"> <button class="btn btn-primary btn-sm text-white rarr js-redirect-button" role="link" data-url="/en/cookie-solution">Explore</button> </div> <div class="d-none d-lg-block"> <p class="text-muted serif text-sm">Manage consent preferences for the ePrivacy, GDPR, CPRA (CCPA amendment) and LGPD. Integrated with the IAB TCF and CCPA Compliance Framework.<br /><br /> Our solution allows you to display a fully customizable cookie banner/consent banner, collect cookie consent, implement prior blocking (including auto-blocking), set advertising preferences, and more.</p> <button class="btn btn-primary btn-sm text-white rarr js-redirect-button" role="link" data-url="/en/cookie-solution">Explore</button> <ul class="list-unstyled mb-3 mt-3"> <li class="list-inline-item mr-2"><a href="/en/features#cookie-solution" class="link-underline line-highlight">Features</a></li> <li class="list-inline-item mr-2"><a href="/en/help/1177-cookie-solution-getting-started" class="link-underline line-highlight">Documentation and guides</a></li> </ul> </div> </div> </div> </div> <div class="col-lg"> <div class="d-flex"> <div class="mr-3"> <img width="72" height="72" alt="Terms and Conditions icon" data-lazy-src="/assets/site/products/terms_and_conditions-b2ecac04071503f53269125183052405bee78d8199cd799047bf382eaf79e6c3.svg" src="data:image/gif;base64,R0lGODlhAQABAIAAAP///wAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==" /> <noscript> <img width="72" height="72" alt="Terms and Conditions icon" src="/assets/site/products/terms_and_conditions-b2ecac04071503f53269125183052405bee78d8199cd799047bf382eaf79e6c3.svg" /> </noscript> </div> <div > <div class="products_tags mb-3"> <div><i class="i-check mr-1 text-md"></i>For websites/apps</div> </div> <h4 class="text-sm mb-1"><a href="/en/terms-and-conditions-generator">Terms and Conditions Generator</a></h4> <div class="d-block d-lg-none"> <button class="btn btn-primary btn-sm text-white rarr js-redirect-button" role="link" data-url="/en/terms-and-conditions-generator">Explore</button> </div> <div class="d-none d-lg-block"> <p class="text-muted serif text-sm">Create your terms and conditions in minutes.<br /><br />Customizable from hundreds of combinations, available in 14 languages, powerful and precise — our solution is capable of handling even the most complex, individual scenarios. Optimized for e-commerce, marketplace, SaaS, apps and more.</p> <button class="btn btn-primary btn-sm text-white rarr js-redirect-button" role="link" data-url="/en/terms-and-conditions-generator">Explore</button> <ul class="list-unstyled mb-3 mt-3"> <li class="list-inline-item mr-2"><a href="/en/features#terms-and-conditions" class="link-underline line-highlight">Features</a></li> <li class="list-inline-item mr-2"><a href="/en/help/19461-how-to-generate-terms-and-conditions" class="link-underline line-highlight">Documentation and guides</a></li> </ul> </div> </div> </div> </div> </div> </div> <hr class="m-0"> <div class="p-4"> <div class="row line-between-columns"> <div class="col-lg"> <div class="d-flex"> <div class="mr-3"> <img width="72" height="72" alt="Whistleblowing Management Tool icon" data-lazy-src="/assets/site/products/whistleblowing_management_tool-ac418c64cbbf6682be183ece94551a4d57d581829315827ab215e2b4e3bd1ed6.svg" src="data:image/gif;base64,R0lGODlhAQABAIAAAP///wAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==" /> <noscript> <img width="72" height="72" alt="Whistleblowing Management Tool icon" src="/assets/site/products/whistleblowing_management_tool-ac418c64cbbf6682be183ece94551a4d57d581829315827ab215e2b4e3bd1ed6.svg" /> </noscript> </div> <div> <div class="products_tags mb-3"> <div><i class="i-check mr-1 text-md"></i>For organizations</div> </div> <h4 class="text-sm mb-1"><a href="/en/whistleblowing-management-tool">Whistleblowing Management Tool</a></h4> <div class="d-block d-lg-none"> <button class="btn btn-primary btn-sm text-white rarr js-redirect-button" role="link" data-url="/en/whistleblowing-management-tool">Explore</button> </div> <div class="d-none d-lg-block"> <p class="text-muted serif text-sm">Provide an easy-to-use internal reporting channel as required by the EU Whistleblower Directive for organizations with 50+ employees. Instantly generate your forms to embed or print. <br><br> Collect and manage whistleblower reports from employees and other individuals connected to your organization while safeguarding their identities and ensuring confidentiality. Tailored for EU businesses and global organizations dedicated to ethical transparency.</p> <button class="btn btn-primary btn-sm text-white rarr js-redirect-button" role="link" data-url="/en/whistleblowing-management-tool">Explore</button> <ul class="list-unstyled mb-3 mt-3"> <li class="list-inline-item mr-2"><a href="/en/features#whistleblower" class="link-underline line-highlight">Features</a></li> <li class="list-inline-item"><a href="https://www.iubenda.com/en/help/141269-eu-whistleblower-directive-guide-iubenda-tool" class="link-underline line-highlight">Documentation and guides</a></li> </ul> </div> </div> </div> </div> <div class="col-lg"> <div class="d-flex"> <div class="mr-3"> <img width="72" height="72" alt="Consent Solution icon" data-lazy-src="/assets/site/products/consent_solution-aa3b8ec9c422f9c7b1c30bf3ec445232ea3c36df666784b2add0329bf1dcc1bf.svg" src="data:image/gif;base64,R0lGODlhAQABAIAAAP///wAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==" /> <noscript> <img width="72" height="72" alt="Consent Solution icon" src="/assets/site/products/consent_solution-aa3b8ec9c422f9c7b1c30bf3ec445232ea3c36df666784b2add0329bf1dcc1bf.svg" /> </noscript> </div> <div> <div class="products_tags mb-3"> <div class="mb-1"><i class="i-check mr-1 text-md"></i>For websites/apps</div> <div><i class="i-check mr-1 text-md"></i>For organizations</div> </div> <h4 class="text-sm mb-1"><a href="/en/consent-solution">Consent Database</a></h4> <div class="d-block d-lg-none"> <button class="btn btn-primary btn-sm text-white rarr js-redirect-button" role="link" data-url="/en/consent-solution">Explore</button> </div> <div class="d-none d-lg-block"> <p class="text-muted serif text-sm">Collect GDPR & LGPD consent, document opt-ins and <a href="/en/help/19133#right-to-opt-out" class="link-underline text-dark">CPRA (CCPA amendment) opt-outs</a> via your web forms.<br /><br /> Our solution smoothly integrates with your consent collection forms, syncs with your legal documents and includes a user-friendly dashboard for reviewing consent records of your activities.</p> <button class="btn btn-primary btn-sm text-white rarr js-redirect-button" role="link" data-url="/en/consent-solution">Explore</button> <ul class="list-unstyled mb-3 mt-3"> <li class="list-inline-item mr-2"><a href="/en/features#consent-solution" class="link-underline line-highlight">Features</a></li> <li class="list-inline-item"><a href="/en/help/6469-consent-solution-getting-started" class="link-underline line-highlight">Documentation and guides</a></li> </ul> </div> </div> </div> </div> <div class="col-lg"> <div class="d-flex"> <div class="mr-3"> <img width="72" height="72" alt="IPM icon" data-lazy-src="/images/site/products/ipm.svg" src="data:image/gif;base64,R0lGODlhAQABAIAAAP///wAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==" /> <noscript> <img width="72" height="72" alt="IPM icon" src="/images/site/products/ipm.svg" /> </noscript> </div> <div > <div class="products_tags mb-3"> <div class="mb-1"><i class="i-check mr-1 text-md"></i>For websites/apps</div> <div><i class="i-check mr-1 text-md"></i>For organizations</div> </div> <h4 class="text-sm mb-1"><a href="/en/internal-privacy-management">Register of Data Processing Activities</a></h4> <div class="d-block d-lg-none"> <button class="btn btn-primary btn-sm text-white rarr js-redirect-button" role="link" data-url="/en/internal-privacy-management">Explore</button> </div> <div class="d-none d-lg-block"> <p class="text-muted serif text-sm">Document all the data processing activity within your organization.<br /><br /> To comply with privacy laws, and particularly the GDPR, companies need to record how they store and use the data they collect from their users. Our solution allows you to easily document all the data processing activities within your organization.</p> <button class="btn btn-primary btn-sm text-white rarr js-redirect-button" role="link" data-url="/en/internal-privacy-management">Explore</button> <ul class="list-unstyled mb-3 mt-3"> <li class="list-inline-item mr-2"><a href="/en/features#internal-privacy-management" class="link-underline line-highlight">Features</a></li> <li class="list-inline-item"><a href="/en/help/6311-internal-privacy-management-getting-started" class="link-underline line-highlight">Documentation and guides</a></li> </ul> </div> </div> </div> </div> </div> </div> <div class="p-2 bg-faded-5-gray text-dark" style="border-top: 1px solid rgba(0,0,0,0.1)"> <div class="d-block d-lg-flex align-items-center justify-content-between text-md"> <div class="col-lg"> Not sure what you need? <a href="/en/help/5463" class="rarr link-underline line-highlight line-light-blue text-secondary"> Getting started guide </a> </div> <div class="col-lg text-right"> <a href="https://www.iubenda.com/blog/" class="btn btn-dark-gray text-dark d-block d-md-inline-block mb-2 mb-lg-0">Blog</a> <a href="mailto:info@iubenda.com" data-elevio-module="2" data-elevio-style="nothing" class="btn btn-dark-gray text-dark d-block d-md-inline-block">Contact us</a> </div> </div> </div> </nav> </li> <li class="align-self-center has-nav"> <a class="pricing-link" href="/en/pricing"><span class="lh-2 p-3">Pricing</span></a> </li> <li class="align-self-center has-nav"> <span class="lh-2 p-3">iubenda for...</span> <nav class="text-sm sm"> <div class="p-4 overflow-auto"> <div class="mb-4"> <h3 class="text-lg">Use cases</h3> <p class="serif text-light">Some of the ways you can use iubenda</p> <ul class="list-unstyled mb-3 mt-3 text-nowrap"> <li> <a href="/en/us-privacy-law-compliance" class="link-underline line-highlight line-green text-green-dark rarr"> iubenda for the US </a> </li> <li> <a href="/en/gdpr" class="link-underline line-highlight line-green text-green-dark rarr"> iubenda for GDPR </a> </li> <li> <a href="/en/fadp" class="link-underline line-highlight line-green text-green-dark rarr"> iubenda for FADP </a> </li> <li> <a href="/en/lgpd" class="link-underline line-highlight line-green text-green-dark rarr"> iubenda for LGPD </a> </li> <li> <a href="/en/mobile" class="link-underline line-highlight line-green text-green-dark rarr"> iubenda for mobile apps </a> </li> <li> <a href="/en/facebook" class="link-underline line-highlight line-green text-green-dark rarr"> iubenda for Facebook apps </a> </li> <li> <a href="/en/partner-program" class="link-underline line-highlight line-green text-green-dark rarr"> iubenda for Agencies </a> </li> <li> <a href="/en/enterprise" class="link-underline line-highlight line-green text-green-dark rarr"> iubenda for Enterprise companies </a> </li> <li> <a href="https://www.iubenda.com/en/help/149409-join-the-iubenda-affiliate-program" class="link-underline line-highlight line-green text-green-dark rarr"> iubenda for Affiliates </a> </li> <li> <a href="https://www.iubenda.com/en/help/132915-iubenda-for-publishers" class="link-underline line-highlight line-green text-green-dark rarr"> iubenda for Publishers </a> </li> <li> <a href="/en/google-consent-mode-v2-certified-cmp" class="link-underline line-highlight line-green text-green-dark rarr"> iubenda for Google Consent Mode </a> </li> <li> <a href="https://www.iubenda.com/en/help/139694-rejection-recovery-boost-consent-rates" class="link-underline line-highlight line-green text-green-dark rarr"> iubenda for Consent optimization </a> </li> </ul> </div> </div> </nav> </li> </ul> </div> <div class="col text-right"> <a href="/en/start-generating?wizard=true" data-has-close-button="true" data-close-on-click="false" class="btn btn-primary text-white d-none d-lg-inline-block lightbox"> Start generating </a> <div id="hamburgerButton" class="hamburger d-inline-block d-lg-none"> <span></span> <span></span> <span></span> </div> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ $('#hamburgerButton').on('click', function () { $(this).toggleClass('active'); $('#mainMenu').toggleClass('show'); }); //]]> </script> </div> </div> </div> </div> </header> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ $(document).ready(function() { $('#headerContainer').find('[data-toggle="tooltip"]').tooltip() $('#team-select-mobile, #team-select-desktop').on('change', function() { var switchPath = $(this).val(); $.post(switchPath, {}, function(response) { window.location = response.redirect_url; }); }); $('.select-team').on('click', function(e) { // avoid triggering the toggle of the parent dropdown e.stopPropagation(); }); document.querySelectorAll('.js-redirect-button').forEach(function(button) { button.addEventListener('click', function() { window.location.href = button.getAttribute('data-url'); }); }); }); //]]> </script><script src="/assets/site/dropdown_component-4701934910eeccad9109.js" nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"></script> <style type="text/css"> /* Prettify */ .com { color: #93a1a1; } .lit { color: #195f91; } .pun, .opn, .clo { color: #93a1a1; } .fun { color: #dc322f; } .str, .atv { color: #268bd2; } .kwd, .tag { color: #195f91; } .typ, .atn, .dec, .var { color: #CB4B16; } .pln { color: #93a1a1; } pre.prettyprint { background: #fefbf3; /* padding: 9px; border: 1px solid rgba(0,0,0,.2); -webkit-box-shadow: 0 1px 2px rgba(0,0,0,.1); -moz-box-shadow: 0 1px 2px rgba(0,0,0,.1); box-shadow: 0 1px 2px rgba(0,0,0,.1); max-width: 630px; font-size: 12px; */ border:0; margin: 2rem auto; width: 90%; box-shadow: 0 16px 32px rgba(0,0,0,0.1); border-radius: 6px; padding: 1rem; background-color: rgba(255, 222, 171, 0.16); } .help_page .post_body pre.prettyprint ol li { font-size: 12px; } /* Specify class=linenums on a pre to get line numbering */ ol.linenums { margin: 0 0 0 0; } /* IE indents via margin-left */ ol.linenums li { color: rgba(0,0,0,.15)} /* Alternate shading for lines */ .prettyprint li, .help_page .post_body .prettyprint li { padding-bottom: 0 } li.L1, li.L3, li.L5, li.L7, li.L9 { background: rgba(238, 238, 238, 0.26); } li.L0, li.L1, li.L2, li.L3, li.L5, li.L6, li.L7, li.L8 { list-style-type: decimal !important } .gist { max-width: 650px; } </style> <section class="mt-5 mb-5 help-tpl__header"> <div class="container"> <section class="mb-5"> <h2 class="text-xl mb-3">Documentation</h2> <nav class="breadcrumb d-none d-lg-block"> <a class="breadcrumb-item" href="/">Home</a> <span class="breadcrumb-item active">Documentation</span> </nav> </section> <div class="mb-5"> <form class="clearfix"> <div class="float-right ml-3"> <button type="submit" class="btn btn-dark-gray px-3 ">Search</button> </div> <div class="oh"> <input type="text" class="w-100 st-default-search-input" placeholder="Search the documentation..."> </div> </form> </div> </div> </section> <section class="mt-5 mb-5 help-tpl__body"> <div class="container"> <div class="row gutter-lg"> <div class="col-lg-3 text-sm doc_aside help-tpl__side-menu" data-swiftype-index="false"> <div class="help_main_menu mb-4"> <div class="mb-3 d-block d-lg-none"> <button class="btn btn-sm btn-outline-light px-4 btn-aside">Hide index</button> </div> <nav> <ul> <li class="has_child category-title 5220"> Getting Started <ul> <li class="5463"> <a href="/en/help/5463-how-to-comply-with-the-gdpr-cookie-law-caloppa-and-ccpa-cpra">Getting Started Guide</a> </li> <li class="5428"> <a href="/en/help/5428-gdpr-guide">Complete guide to the GDPR</a> </li> <li class="separator 17976"> </li> <li class="category-title 17975"> <strong>Compliance for:</strong> </li> <li class="17366"> <a href="/en/help/17366-laws-regulations-every-blogger-should-know">Simple Websites / Blogs</a> </li> <li class="17754"> <a href="/en/help/17754-laws-regulations-every-ecommerce-owner-should-know">E-commerce Websites</a> </li> <li class="14787"> <a href="/en/help/14787-laws-regulations-every-app-developer-should-know">App Developers</a> </li> <li class="20713"> <a href="/en/help/20713-individual-services">Individual Services</a> </li> </ul> </li> <li class="active has_child category-title 5135"> Legal Requirements <ul> <li class="active 5720"> <a href="/en/help/5720-legal-requirements-overview">Legal Requirements Overview</a> </li> <li class="524"> <a href="/en/help/524-how-to-determine-your-law-of-reference">How to Determine Your Law of Reference</a> </li> <li class="6187"> <a href="/en/help/6187-what-should-be-in-a-privacy-policy">What is a Privacy Policy and Do You Need One?</a> </li> <li class="7816"> <a href="/en/help/7816-impressum-what-is-it-and-when-is-it-needed">Impressum: What Is It and When Is It Needed</a> </li> <li class="has_child category-title 6835"> Main Legislations <ul> <li class="category-title 5234"> <strong>GDPR</strong> </li> <li class="5428"> <a href="/en/help/5428-gdpr-guide">Complete guide to the GDPR</a> </li> <li class="6738"> <a href="/en/help/6738-gdpr-offline-compliance-duties">GDPR Offline Compliance Duties</a> </li> <li class="66232"> <a href="/en/help/66232-third-party-vs-data-processor">Third party vs Data Processor</a> </li> <li class="26171"> <a href="/en/help/26171-web-agency-responsibilities-gdpr">Web agency’s responsibilities according to the GDPR</a> </li> <li class="5858"> <a href="/en/help/5858-switch-privacy-policy-options">Picking the Right Privacy Policy Options</a> </li> <li class="25229"> <a href="/en/help/25229-gdpr-treatment-of-services-that-do-not-collect-personal-data">GDPR treatment of services that do not collect personal data</a> </li> <li class="7399"> <a href="/en/help/7399-right-to-be-forgotten">How to Prove You Honored the Right to Be Forgotten</a> </li> <li class="3272"> <a href="/en/help/3272-eu-us-data-privacy-framework-certification-integration">EU-US Data Privacy Framework: How Can iubenda Help</a> </li> <li class="65844"> <a href="/en/help/65844-eu-us-trans-atlantic-data-privacy-framework">Green Light for the Data Privacy Framework: EU to US Personal Data Transfers Now Approved </a> </li> <li class="145851"> <a href="/en/help/145851-a-detailed-look-at-the-eu-ai-act">A Detailed Look at the EU AI Act</a> </li> <li class="71983"> <a href="/en/help/71983-uk-gdpr-post-brexit-updates">UK GDPR Post Brexit Updates</a> </li> <li class="73808"> <a href="/en/help/73808-uk-data-reform-bill-and-ai-regulation">UK Data Reform Bill and AI Regulation</a> </li> <li class="74228"> <a href="/en/help/74228-right-to-be-forgotten-and-iubendas-consent-solution">The Right to be Forgotten and iubenda’s Consent Database</a> </li> <li class="78656"> <a href="/en/help/78656-consent-vs-legitimate-interest">Consent vs. Legitimate interest: what’s the difference?</a> </li> <li class="separator 17455"> </li> <li class="category-title 6838"> <strong>Cookie Law / ePrivacy</strong> </li> <li class="5525"> <a href="/en/help/5525-cookies-gdpr-requirements">Cookies and the GDPR: What’s Really Required?</a> </li> <li class="64227"> <a href="/en/help/64227-what-are-trackers">What are trackers?</a> </li> <li class="6293"> <a href="/en/help/6293-cookie-consent-management-faq">Manage Cookie Consent Easily</a> </li> <li class="124203"> <a href="/en/help/124203-cookie-policy-do-you-need-one-heres-everything-you-need-to-know">Cookie Policy – Everything you need to know</a> </li> <li class="7515"> <a href="/en/help/7515-which-data-can-be-safely-stored-in-cookies-without-having-to-request-consent">Which Data Can Be Safely Stored in Cookies Without Having to Request Consent?</a> </li> <li class="24487"> <a href="/en/help/24487-cookie-walls-gdpr">Is the use of a cookie wall allowed in European Countries?</a> </li> <li class="6282"> <a href="/en/help/6282-legal-sources-third-party-cookie-names-opt-out-requirements">Legal Sources on Third-Party Cookie Names and Opt-Out Mechanisms</a> </li> <li class="31246"> <a href="/en/help/31246-italy-new-cookie-rules">Italy’s new cookie guidelines (and how to comply)</a> </li> <li class="separator 19148"> </li> <li class="category-title 19149"> <strong>US State Laws</strong> </li> <li class="111288"> <a href="/en/help/111288-us-state-privacy-laws-overview">US State Privacy Laws Overview</a> </li> <li class="19133"> <a href="/en/help/19133-ccpa-compliance-guide">Complete guide to the CCPA</a> </li> <li class="22574"> <a href="/en/help/22574-guide-to-the-ccpa-concept-of-sale">An In-depth Look at the CCPA Concept of Sale</a> </li> <li class="109571"> <a href="/en/help/109571-ccpa-toll-free-number-requirement">CCPA toll-free number requirement</a> </li> <li class="73819"> <a href="/en/help/73819-cpra-intro-to-the-ccpa-2-0-and-how-it-affects-you">CPRA: Intro to the CCPA 2.0 and how it affects you</a> </li> <li class="106345"> <a href="/en/help/106345-virginia-consumer-data-protection-act-vcdpa">Virginia Consumer Data Protection Act (VCDPA)</a> </li> <li class="107739"> <a href="/en/help/107739-colorado-privacy-act-cpa">Colorado Privacy Act (CPA)</a> </li> <li class="107774"> <a href="/en/help/107774-utah-consumer-privacy-act-the-ucpa">Utah Consumer Privacy Act (the UCPA)</a> </li> <li class="107759"> <a href="/en/help/107759-connecticut-data-privacy-act-ctdpa">Connecticut Data Privacy Act (CTDPA)</a> </li> <li class="separator 17456"> </li> <li class="category-title 17437"> <strong>CalOPPA and COPPA</strong> </li> <li class="6841"> <a href="https://www.iubenda.com/blog/guide-coppa-mobile-apps/">COPPA and Mobile Apps</a> </li> <li class="separator 17457"> </li> <li class="category-title 26861"> <strong>LGPD</strong> </li> <li class="26706"> <a href="/en/help/26706-lgpd-guide">Complete guide to the LGPD</a> </li> <li class="104366"> <a href="/en/help/104366-brazil-new-cookie-requirements">Brazil: New Cookie Requirements</a> </li> <li class="110776"> <a href="/en/help/110776-brazil-cookie-requirement-cheatsheet">Brazil Cookie Requirement Cheatsheet</a> </li> <li class="27616"> <a href="/en/help/27616-lgpd-privacy-policy-example">LGPD Privacy Policy Example</a> </li> <li class="separator 26860"> </li> <li class="category-title 146111"> <strong>Whistleblowing</strong> </li> <li class="142962"> <a href="/en/help/142962-understanding-the-basics-of-whistleblowing">Understanding the Basics of Whistleblowing</a> </li> <li class="143589"> <a href="/en/help/143589-navigating-whistleblowing-laws-an-international-overview">Navigating Whistleblowing Laws: An International Overview</a> </li> <li class="144294"> <a href="/en/help/144294-how-to-implement-whistleblower-protections-in-your-organization">How to Implement Whistleblower Protections in Your Organization</a> </li> <li class="separator 146112"> </li> <li class="category-title 17438"> <strong>Other Legislations</strong> </li> <li class="13856"> <a href="/en/help/13856-privacy-policies-and-australian-law">Privacy Policies and Australian Law</a> </li> <li class="75419"> <a href="/en/help/75419-fadp-updates-what-you-need-to-know">FADP Updates – What You Need to Know</a> </li> </ul> </li> <li class="has_child category-title 5237"> Common Scenarios <ul> <li class="category-title 17443"> <strong>Blogs and Websites</strong> </li> <li class="8385"> <a href="/en/help/8385-gdpr-for-bloggers">How to Make Your Site Compliant (for Bloggers and Web Publishers)</a> </li> <li class="11028"> <a href="/en/help/11028-wordpress-gdpr-compliance">How to Comply with the GDPR on a WordPress Site</a> </li> <li class="78016"> <a href="/en/help/78016-how-to-handle-data-privacy-complaints-your-5-step-guide">How to Handle Data Privacy Complaints | Your 5-Step guide</a> </li> <li class="separator 17458"> </li> <li class="category-title 25888"> <strong>E-commerce</strong> </li> <li class="25877"> <a href="/en/help/25877-terms-conditions-ecommerce-stores">Terms and Conditions for eCommerce (and how they protect your online store)</a> </li> <li class="separator 25886"> </li> <li class="category-title 6842"> <strong>Emails and Newsletters</strong> </li> <li class="5640"> <a href="/en/help/5640-email-newsletter-compliance-guide">How to Make your Emails and Newsletter Compliant (with Form Examples)</a> </li> <li class="4315"> <a href="/en/help/4315-eprivacy-direct-email-marketing">ePrivacy and Direct Email Marketing (DEM)</a> </li> <li class="6192"> <a href="/en/help/6192-opt-in-opt-out">Opt-In vs Opt-Out: What’s the Difference?</a> </li> <li class="13638"> <a href="/en/help/13638-privacy-policy-gdpr-forms-and-consent-collection-for-mailchimp">Privacy policy, GDPR forms and consent collection for Mailchimp</a> </li> <li class="39705"> <a href="/en/help/39705-global-email-marketing-cheatsheet">Global Email Marketing Cheatsheet</a> </li> <li class="separator 17459"> </li> <li class="category-title 6840"> <strong>Apps</strong> </li> <li class="147125"> <a href="/en/help/147125-app-privacy-policy-what-you-need-to-know-examples">App Privacy Policy: What you Need to Know + Examples</a> </li> <li class="401"> <a href="/en/help/401-privacy-policy-for-ios-and-macos-apps">Privacy Policy for iOS and macOS Apps</a> </li> <li class="11552"> <a href="/en/help/11552-privacy-policy-for-android-apps">Privacy Policy for Your Android App</a> </li> <li class="38933"> <a href="/en/help/38933-google-play-new-safety-section">Google Play adds new “safety section” to make data collection more transparent</a> </li> <li class="39254"> <a href="/en/help/39254-privacy-policy-for-windows-apps">Privacy Policy for Windows Apps</a> </li> <li class="1353"> <a href="/en/help/1353-cookies-mobile-apps">Cookies and Mobile Apps</a> </li> <li class="separator 24789"> </li> <li class="category-title 24788"> <strong>Facebook Pages and Apps</strong> </li> <li class="22930"> <a href="/en/help/22930-privacy-policy-facebook-page">Privacy Policy for Facebook Pages</a> </li> <li class="13561"> <a href="/en/help/13561-privacy-policy-for-facebook-apps">Privacy Policy for Facebook Apps</a> </li> <li class="separator 17460"> </li> <li class="category-title 17442"> <strong>Children</strong> </li> <li class="5717"> <a href="/en/help/5717-legal-requirements-websites-apps-children">Legal Requirements for Websites and Apps Used by Children</a> </li> <li class="11429"> <a href="/en/help/11429-minors-and-the-gdpr">Minors and the GDPR</a> </li> <li class="separator 17461"> </li> <li class="category-title 17444"> <strong>Multi-lingual Websites and Apps</strong> </li> <li class="539"> <a href="/en/help/539-privacy-policy-different-languages">When Do You Need a Privacy Policy in Different Languages</a> </li> <li class="separator 17462"> </li> <li class="category-title 14005"> <strong>Ads and Affiliate Programs</strong> </li> <li class="12047"> <a href="/en/help/12047-privacy-policy-for-google-adsense">Privacy Policy for Google AdSense</a> </li> <li class="12079"> <a href="/en/help/12079-privacy-policy-for-google-ads-remarketing">Privacy Policy for Google Ads Remarketing</a> </li> <li class="17620"> <a href="/en/help/16041">How to Collect Consent for Google Ad Personalization</a> </li> <li class="12158"> <a href="/en/help/12158-privacy-policy-facebook-lead-ads">Privacy Policy for Facebook Lead Ads</a> </li> <li class="13990"> <a href="/en/help/13990-amazon-affiliate-program-required-privacy-policy-additions">Amazon Affiliate Program</a> </li> <li class="separator 17463"> </li> <li class="category-title 6844"> <strong>Analytics and Other Google Services</strong> </li> <li class="72017"> <a href="/en/help/72017-is-google-analytics-illegal-in-the-eu-and-uk">Is Google Analytics illegal in the EU and UK?</a> </li> <li class="72356"> <a href="/en/help/72356-google-analytics-4-all-you-need-to-know">Google Analytics 4 – all you need to know</a> </li> <li class="11994"> <a href="/en/help/11994-privacy-policy-for-google-analytics">Privacy Policy for Google Analytics</a> </li> <li class="1184"> <a href="/en/help/1184-how-to-anonymize-ip-addresses-and-avoid-the-cross-referencing-of-data-in-google-analytics">How to Anonymize IP Addresses and Avoid the Cross-Referencing of Data in Google Analytics</a> </li> <li class="7227"> <a href="/en/help/7227-google-analytics-gdpr-monitoring-behavior">Google Analytics and the GDPR: Is It Considered Monitoring Behavior?</a> </li> <li class="12379"> <a href="/en/help/12379-privacy-policy-google-analytics-advertising-remarketing">Privacy Policy for Google Analytics Advertising and Remarketing Features</a> </li> <li class="18852"> <a href="/en/help/18852-privacy-policy-google-oauth">Privacy Policy for Google OAuth</a> </li> <li class="14936"> <a href="/en/help/14936-place-of-processing-customisation-for-google-services">Place of Processing Customisation for Google Services</a> </li> <li class="142541"> <a href="/en/help/142541-google-ads-consent-mode">Google Ads Consent Mode – Everything You Need To Know</a> </li> <li class="separator 146117"> </li> <li class="category-title 146116"> <strong>Workplace</strong> </li> <li class="144878"> <a href="/en/help/144878-how-technology-helps-businesses-build-effective-whistleblowing-systems">How Technology Helps Businesses Build Effective Whistleblowing Systems</a> </li> <li class="143344"> <a href="/en/help/143344-whistleblowing-reporting-process-in-the-workplace">The A-Z of Whistleblowing Reporting Process in the Workplace</a> </li> <li class="143363"> <a href="/en/help/143363-how-organizations-should-handle-whistleblowing-reports">Managing Whistleblowing: How Organizations Should Handle Reports</a> </li> <li class="142946"> <a href="/en/help/142946-whistleblowing-education-in-the-workplace">Whistleblowing 101: A Guide to Whistleblowing Education in the Workplace</a> </li> <li class="142908"> <a href="/en/help/142908-ethics-at-work-crafting-a-supportive-whistleblowing-culture">Ethics at Work: Crafting a Supportive Whistleblowing Culture</a> </li> </ul> </li> </ul> </li> <li class="has_child category-title 5222"> Privacy and Cookie Policy Generator <ul> <li class="has_child category-title 5223"> Creating Your Policy <ul> <li class="category-title 17502"> <strong>Generating</strong> </li> <li class="463"> <a href="/en/help/463-generate-privacy-policy">How to Create a Privacy Policy</a> </li> <li class="1175"> <a href="/en/help/1175-generate-cookie-policy">How to Generate a Cookie Policy</a> </li> <li class="25434"> <a href="/en/help/25434-cookie-lifetime">How to Display the Cookie Lifetime in Your Cookie Policy</a> </li> <li class="5853"> <a href="/en/help/5853-gdpr-protections-users">How to Apply GDPR Protections Only to EU Users or to All Users</a> </li> <li class="21474"> <a href="/en/help/21474-how-to-apply-state-specific-us-standards-within-the-generator">How to Apply State-Specific US Standards within the Generator</a> </li> <li class="separator 17511"> </li> <li class="category-title 17503"> <strong>Adding Services</strong> </li> <li class="20"> <a href="/en/help/20-services-privacy-policy">How to Add Services to Your Privacy Policy</a> </li> <li class="19004"> <a href="/en/help/19004-how-to-use-the-site-scanner-from-within-the-generator">Using the Site Scanner to Identify Missing Services</a> </li> <li class="386"> <a href="/en/help/386-how-to-add-a-custom-service-and-customize-to-your-needs">How to Add a Custom Service and Customize to Your Needs</a> </li> <li class="separator 17510"> </li> <li class="category-title 17504"> <strong>Adding Owner Details</strong> </li> <li class="7850"> <a href="/en/help/7850-what-is-meant-by-the-identifiying-details-of-the-data-controller">What is meant by the identifying details of the Data Controller</a> </li> <li class="3486"> <a href="/en/help/3486-the-owner-field-within-the-generator">The Owner Field Within the Generator</a> </li> <li class="separator 17509"> </li> <li class="category-title 17505"> <strong>Languages</strong> </li> <li class="137"> <a href="/en/help/137-add-language">How to Add Another Language to Your Documents</a> </li> </ul> </li> <li class="has_child category-title 17500"> Editing/Updating Your Policy <ul> <li class="2739"> <a href="/en/help/2739-edit-privacy-policy">How to Edit a Privacy Policy</a> </li> <li class="3810"> <a href="/en/help/3810-how-to-delete-a-privacy-policy">How to Delete a Privacy Policy</a> </li> <li class="68865"> <a href="/en/help/68865-how-to-duplicate-an-existing-site">How to duplicate an existing site</a> </li> <li class="separator 17508"> </li> <li class="category-title 17506"> <strong>iubenda Branding</strong> </li> <li class="166"> <a href="/en/help/166-remove-iubenda-branding">How to Remove iubenda Branding</a> </li> <li class="2848"> <a href="/en/help/2848-remove-iubenda-disclaimer">Can I Remove the "iubenda hosts this page" Disclaimer</a> </li> <li class="separator 5235"> </li> <li class="category-title 17507"> <strong>Advanced Settings</strong> </li> <li class="4158"> <a href="/en/help/4158-force-update">How to Force Update & Change the “Last updated” Date Information</a> </li> <li class="4825"> <a href="/en/help/4825-customize-this-application">Customize the Way Your Website or App Is Referred To in Your Privacy Policy</a> </li> <li class="11072"> <a href="/en/help/11072-customize-privacy-and-cookie-policy-internal-links">Customize Privacy and Cookie Policy Internal Links</a> </li> </ul> </li> <li class="has_child category-title 5224"> Embedding Your Policy <ul> <li class="category-title 17512"> <strong>General</strong> </li> <li class="231"> <a href="/en/help/231-ways-to-use-iubenda-privacy-policy-on-your-site-and-app">Ways to Use iubenda’s Privacy Policy on Your Site and App</a> </li> <li class="216"> <a href="/en/help/216-privacy-policy-standard-embedding">Standard Embedding</a> </li> <li class="228"> <a href="/en/help/228-privacy-policy-direct-link">Direct Link</a> </li> <li class="78"> <a href="/en/help/78-privacy-policy-direct-text-embedding-api">Direct Text Embedding via JS or API</a> </li> <li class="5339"> <a href="/en/help/5339-behavior-of-iubenda-embedding-options-when-javascript-is-disabled">Behavior of iubenda Embedding Options When JavaScript Is Disabled</a> </li> <li class="separator 17517"> </li> <li class="category-title 17513"> <strong>Apps</strong> </li> <li class="17838"> <a href="/en/help/401">iOS and macOS</a> </li> <li class="1528"> <a href="/en/help/1528-privacy-policy-for-tvos-apps-apple-tv">tvOS (Apple TV)</a> </li> <li class="17837"> <a href="/en/help/11552">Android</a> </li> <li class="3744"> <a href="/en/help/3744-how-to-add-android-and-ios-mobile-permissions-for-device-data">How to Add Android and iOS Mobile Permissions for Device Data</a> </li> <li class="337"> <a href="/en/help/337-legal-documents-offline-viewing">Make Your Legal Documents Available for Offline Viewing</a> </li> <li class="separator 5253"> </li> <li class="category-title 17514"> <strong>Popular Platforms</strong> </li> <li class="100"> <a href="/en/help/100-how-to-add-your-privacy-policy-to-the-amazon-store">Amazon Store</a> </li> <li class="53052"> <a href="/en/help/53052-how-to-add-a-privacy-and-cookie-policy-on-bigcommerce">Bigcommerce</a> </li> <li class="1419"> <a href="/en/help/1419-how-to-use-iubenda-privacy-and-cookie-policy-on-a-epages-website">ePages</a> </li> <li class="53619"> <a href="/en/help/53619-how-to-add-a-privacy-policy-on-ghost">Ghost</a> </li> <li class="53326"> <a href="/en/help/53326-how-to-add-a-privacy-policy-on-hubspot">HubSpot</a> </li> <li class="3798"> <a href="/en/help/3798-how-to-use-iubenda-privacy-and-cookie-policy-on-a-jimdo-website">Jimdo</a> </li> <li class="546"> <a href="/en/help/546-how-to-use-iubenda-privacy-and-cookie-policy-on-a-joomla-website">Joomla!</a> </li> <li class="567"> <a href="/en/help/567-how-to-use-iubenda-privacy-and-cookie-policy-on-a-magento-website">Magento</a> </li> <li class="3592"> <a href="/en/help/3592-how-to-add-matomo-clauses-to-iubendas-privacy-and-cookie-policy">Matomo (Formerly Piwik)</a> </li> <li class="1502"> <a href="/en/help/1502-how-to-use-iubenda-privacy-and-cookie-policy-on-a-prestashop-website">PrestaShop</a> </li> <li class="3796"> <a href="/en/help/3796-shopify-privacy-policy">Shopify</a> </li> <li class="12794"> <a href="/en/help/12794-squarespace-privacy-policy">Squarespace</a> </li> <li class="26324"> <a href="/en/help/26324-privacy-policy-ucraft">Ucraft</a> </li> <li class="18524"> <a href="/en/help/18524-privacy-policy-webflow">Webflow</a> </li> <li class="53504"> <a href="/en/help/53504-how-to-add-a-privacy-policy-on-weebly">Weebly</a> </li> <li class="23080"> <a href="/en/help/23080-privacy-policy-wix">Wix</a> </li> <li class="370"> <a href="/en/help/370-how-to-use-iubenda-privacy-and-cookie-policy-on-a-wordpress-website">WordPress</a> </li> <li class="3905"> <a href="/en/help/3905-how-to-use-iubenda-privacy-and-cookie-policy-on-wordpress-com">WordPress.com</a> </li> <li class="separator 19583"> </li> <li class="category-title 19584"> <strong>Advanced</strong> </li> <li class="12260"> <a href="/en/help/12260-how-to-configure-content-security-policy-to-allow-iubenda-scripts-to-execute">How to Configure your Content Security Policy for iubenda</a> </li> </ul> </li> <li class="has_child category-title 5832"> Troubleshooting and FAQs <ul> <li class="304"> <a href="/en/help/304-how-to-use-the-iubenda-dashboard">How to Access the iubenda Dashboard</a> </li> <li class="3803"> <a href="/en/help/3803-must-i-repeat-the-process-of-adding-services-for-every-language-in-which-i-generate-the-policy">Must I Repeat the Process of Adding Services for Every Language in Which I Generate the Policy?</a> </li> <li class="3953"> <a href="/en/help/3953-how-to-honor-and-include-a-do-not-track-clause-in-the-privacy-policy">How to Honor and Include a “Do Not Track” Clause in the Privacy Policy</a> </li> <li class="3025"> <a href="/en/help/3025-what-is-the-difference-between-the-privacy-and-cookies-policy-generator-and-the-cookie-solution">What Is the Difference Between the Privacy and Cookie Policy Generator and the Privacy Controls and Cookie Solution?</a> </li> <li class="2824"> <a href="/en/help/2824-what-is-the-difference-between-the-integration-of-the-privacy-policy-and-the-one-of-the-cookie-solution">What’s the Difference Between the Integration of the Privacy Policy and Cookie Solution?</a> </li> <li class="438"> <a href="/en/help/438-which-countries-is-your-privacy-policy-good-for">Which Countries Is Your Privacy Policy Good For?</a> </li> <li class="407"> <a href="/en/help/407-copy-and-paste">Can I Copy and Paste the Privacy Policy's Text into My Website?</a> </li> <li class="450"> <a href="/en/help/450-is-it-ok-to-include-the-same-privacy-policy-in-other-sites-and-apps">Is it ok to include the same privacy policy in other sites and apps?</a> </li> <li class="15546"> <a href="/en/help/15546-how-to-start-the-iubenda-initializer-asynchronously">How to start the iubenda initializer asynchronously</a> </li> <li class="separator 30085"> </li> <li class="category-title 30086"> <strong>Changelog</strong> </li> <li class="30061"> <a href="/en/help/30061-pcp-legal-changelog">Legal Changelog</a> </li> </ul> </li> </ul> </li> <li class="has_child category-title 5225"> Privacy Controls and Cookie Solution <ul> <li class="has_child category-title 17486"> Introduction <ul> <li class="1177"> <a href="/en/help/1177-cookie-solution-getting-started">Introduction and Getting Started</a> </li> <li class="262"> <a href="/en/help/262-how-to-identify-the-cookies-your-site-installs-in-browsers">How to Identify the Cookies Your Site Installs in Browsers</a> </li> </ul> </li> <li class="has_child category-title 17482"> Cookie Banner Setup and Customization <ul> <li class="3831"> <a href="/en/help/3831-customize-cookie-banner">How to Customize the Look and Behavior of the Cookie Banner (Beginner’s Guide)</a> </li> <li class="1175"> <a href="/en/help/1175-generate-cookie-policy">How to Generate a Cookie Policy for the Cookie Banner</a> </li> <li class="1205"> <a href="/en/help/1205-how-to-configure-your-cookie-solution-advanced-guide">How to Configure Your Privacy Controls and Cookie Solution (Advanced Guide)</a> </li> <li class="separator 17615"> </li> <li class="category-title 17614"> <strong>Advertising Tracking Preferences</strong> </li> <li class="7440"> <a href="/en/help/7440-the-complete-guide-to-iubenda-cmp-and-iab-tcf-2-2">The complete guide to IAB GDPR Framework and iubenda’s Consent Management Platform</a> </li> <li class="16041"> <a href="/en/help/16041-google-tcf-consent-personalized-ads">Google and TCF 2.0: how to collect consent for personalized ads</a> </li> <li class="23271"> <a href="/en/help/23271-tcf-2-0-transition-guide">TCF 2.0 Transition Guide</a> </li> <li class="separator 17494"> </li> <li class="category-title 17488"> <strong>Languages</strong> </li> <li class="1180"> <a href="/en/help/1180-cookie-policy-and-cookie-solution-for-multilingual-websites">Cookie Policy and Privacy Controls and Cookie Solution for Multilingual Websites</a> </li> <li class="1209"> <a href="/en/help/1209-how-to-use-the-cookie-solution-in-a-multilingual-wordpress-site">How to Use the Privacy Controls and Cookie Solution in a Multilingual WordPress Site</a> </li> </ul> </li> <li class="has_child category-title 21259"> For US <ul> <li class="21165"> <a href="/en/help/21165-how-to-comply-with-us-state-privacy-laws-using-iubenda">How to comply with US state privacy laws using iubenda</a> </li> </ul> </li> <li class="has_child category-title 5226"> Installation and Prior Blocking Implementation <ul> <li class="36226"> <a href="/en/help/36226-cookie-solution-custom-website-installation-guide">Custom Website</a> </li> <li class="separator 36291"> </li> <li class="category-title 36292"> <strong>Plugins and integrations</strong> </li> <li class="56404"> <a href="/en/help/56404-how-to-add-a-cookie-solution-to-bigcommerce">BigCommerce</a> </li> <li class="56370"> <a href="/en/help/56370-how-to-add-a-cookie-solution-to-ghost">Ghost</a> </li> <li class="148057"> <a href="/en/help/148057-hubspot-cookie-banner-how-to-add-a-cookie-banner-on-hubspot-with-iubenda">HubSpot</a> </li> <li class="10777"> <a href="/en/help/10777-cookie-solution-jimdo-integration-guide">Jimdo</a> </li> <li class="1323"> <a href="/en/help/1323-cookie-solution-joomla-plugin-installation-guide">Joomla! Extension</a> </li> <li class="9591"> <a href="/en/help/9591-cookie-solution-magento-extension-installation-guide">Magento Extension</a> </li> <li class="4338"> <a href="/en/help/4338-cookie-solution-prestashop-plugin-installation-guide">PrestaShop Plugin</a> </li> <li class="10811"> <a href="/en/help/10811-cookie-solution-shopify">Shopify</a> </li> <li class="12848"> <a href="/en/help/12848-cookie-solution-squarespace-integration-guide">Squarespace</a> </li> <li class="26363"> <a href="/en/help/26363-cookie-solution-ucraft">Ucraft</a> </li> <li class="18531"> <a href="/en/help/18531-cookie-solution-webflow">Webflow</a> </li> <li class="56488"> <a href="/en/help/56488-how-to-add-a-cookie-solution-to-weebly">Weebly</a> </li> <li class="24221"> <a href="/en/help/24221-cookie-banner-wix">Wix</a> </li> <li class="1215"> <a href="/en/help/1215-cookie-solution-wordpress-plugin-installation-guide">WordPress Plugin</a> </li> <li class="separator 5374"> </li> <li class="category-title 5358"> <strong>Prior Blocking Implementation</strong> </li> <li class="3081"> <a href="/en/help/3081-prior-blocking-of-cookie-scripts">Introduction to the Prior Blocking of Cookie Scripts</a> </li> <li class="1229"> <a href="/en/help/1229-manual-tagging-blocking-cookies">Manual Tagging (with Practical Examples)</a> </li> <li class="133036"> <a href="/en/help/133036-prior-blocking-of-cookies-automatic-blocking-auto-blocking">Automatic Blocking (auto-blocking)</a> </li> <li class="1235"> <a href="/en/help/1235-google-tag-manager-blocking-cookies">Google Tag Manager</a> </li> <li class="74198"> <a href="/en/help/74198-google-consent-mode-set-up-google-tag-manager-with-iubenda">Google Consent Mode: Set up Google Tag Manager with iubenda</a> </li> <li class="27137"> <a href="/en/help/27137-google-consent-mode">Google Consent Mode</a> </li> <li class="1182"> <a href="/en/help/1182-google-adsense-ad-manager-blocking-cookies">Google AdSense and Ad Manager</a> </li> <li class="1976"> <a href="/en/help/1976-php-class-blocking-cookies">PHP Class</a> </li> <li class="22135"> <a href="/en/help/22135-cookie-solution-amp-wordpress">How to integrate iubenda Privacy Controls and Cookie Solution with Google AMP (WordPress method included)</a> </li> <li class="separator 19644"> </li> <li class="category-title 17483"> <strong>Advanced</strong> </li> <li class="18678"> <a href="/en/help/18678-cookie-solution-consents-migration">How to migrate consents from a previous provider to the Privacy Controls and Cookie Solution</a> </li> <li class="46731"> <a href="/en/help/46731-how-to-retrieve-proof-of-a-cookie-preferences-for-specific-users">How to retrieve proof of cookie preferences</a> </li> <li class="3834"> <a href="/en/help/3834-cache-and-optimisation-of-the-iubenda-cookie-solution">Cache, Speed and Other Optimization of the iubenda Privacy Controls and Cookie Solution</a> </li> <li class="23633"> <a href="/en/help/23633-how-to-invoke-cookie-solution-api-methods-from-an-iframe">How to invoke Privacy Controls and Cookie Solution API methods from an iframe</a> </li> <li class="12503"> <a href="https://www.iubenda.com/en/help/12260">How to Configure your Content Security Policy for iubenda</a> </li> <li class="separator 17492"> </li> <li class="category-title 17490"> <strong>Stats</strong> </li> <li class="2426"> <a href="/en/help/2426-cookie-solution-analytics-and-stats">Analytics and Stats</a> </li> </ul> </li> <li class="has_child category-title 146392"> <strong>For Mobile</strong> <ul> <li class="19678"> <a href="/en/help/19678-cs-for-mobile-developers-guide">Privacy Controls and Cookie Solution for mobile | Developer’s Guide</a> </li> <li class="145991"> <a href="/en/help/145991-iubenda-sdk-integration-with-google-consent-mode-v2-for-firebase-analytics">iubenda mobile SDK – Integration with Google Consent Mode V2 for Firebase Analytics</a> </li> </ul> </li> <li class="has_child category-title 5357"> Troubleshooting and FAQs <ul> <li class="3062"> <a href="/en/help/3062-how-are-calculated-the-pageviews-of-the-cookie-solution">How Are the Privacy Controls and Cookie Solution Pageviews Calculated?</a> </li> <li class="3812"> <a href="/en/help/3812-where-can-i-find-my-cookie-policy-and-site-ids">Where Can I Find My Cookie Policy and Site Ids?</a> </li> <li class="2690"> <a href="/en/help/2690-can-i-integrate-the-cookie-policy-within-my-website-using-the-direct-text-embedding-and-api">Can I Integrate the Cookie Policy Within My Website Using the Direct Text Embedding and API?</a> </li> <li class="3182"> <a href="/en/help/3182-cookie-consent-amp-pages">How do I collect cookie consent on AMP pages?</a> </li> <li class="105616"> <a href="/en/help/105616-how-to-solve-common-cookie-solution-issues-with-cache-plugins-and-optimization-features">How to solve common Privacy Controls and Cookie Solution issues with cache plugins and optimization features</a> </li> <li class="151085"> <a href="/en/help/151085-why-is-data-decreasing-after-installing-google-consent-mode-v2">Why Is Data Decreasing After Installing Google Consent Mode v2?</a> </li> <li class="166100"> <a href="/en/help/166100-how-to-hide-the-iubenda-banner-on-specific-pages">How to Hide the iubenda Banner on Specific Pages</a> </li> <li class="separator 17493"> </li> <li class="category-title 17491"> <strong>Channels and Changelog</strong> </li> <li class="2158"> <a href="/en/help/2158-cookie-solution-release-channels">Delivery Channels</a> </li> <li class="1970"> <a href="/en/help/1970-cookie-solution-changelog">Changelog</a> </li> </ul> </li> </ul> </li> <li class="has_child category-title 17474"> Terms and Conditions Generator <ul> <li class="2859"> <a href="/en/help/2859-terms-and-conditions-when-are-they-needed">What Are the Terms and Conditions and When Are They Needed?</a> </li> <li class="19482"> <a href="/en/help/19482-what-should-basic-terms-and-conditions-include">What Should Basic Terms and Conditions Include?</a> </li> <li class="20504"> <a href="/en/help/20504-can-i-use-a-terms-and-conditions-template">Can I use a Terms and Conditions template?</a> </li> <li class="has_child category-title 19560"> Creating Your Document <ul> <li class="19461"> <a href="/en/help/19461-how-to-generate-terms-and-conditions">How to Generate Terms and Conditions</a> </li> <li class="19668"> <a href="/en/help/3486">The Owner Field Within the Generator</a> </li> <li class="19667"> <a href="/en/help/137">How to Add Another Language to Your Documents</a> </li> </ul> </li> <li class="has_child category-title 19561"> Editing/Updating Your Document <ul> <li class="19356"> <a href="/en/help/19356-edit-terms-and-conditions">How to Edit your Terms and Conditions</a> </li> <li class="19340"> <a href="/en/help/19340-delete-terms-and-conditions">How to Delete your Terms and Conditions</a> </li> <li class="separator 19570"> </li> <li class="category-title 19571"> <strong>Advanced options</strong> </li> <li class="19673"> <a href="/en/help/4158">How to Force Update & Change the "Last updated" Date Information</a> </li> <li class="19674"> <a href="/en/help/4825">Customize the way your website or app is referred to in your documents</a> </li> </ul> </li> <li class="has_child category-title 19562"> Embedding Your Document <ul> <li class="category-title 47874"> <strong>General</strong> </li> <li class="19253"> <a href="/en/help/19253-integrate-terms-and-conditions-on-your-site-and-app">How to Integrate iubenda’s Terms and Conditions on your Site and App</a> </li> <li class="19675"> <a href="/en/help/337">Make Your Legal Documents Available for Offline Viewing</a> </li> <li class="separator 47876"> </li> <li class="category-title 47875"> <strong>Popular Platforms</strong> </li> <li class="52091"> <a href="/en/help/52091-how-to-add-terms-and-condition-on-amazon">Amazon</a> </li> <li class="49324"> <a href="/en/help/49324-how-to-add-terms-and-conditions-on-bigcommerce">Bigcommerce</a> </li> <li class="51396"> <a href="/en/help/51396-how-to-add-terms-and-conditions-on-ghost">Ghost</a> </li> <li class="50402"> <a href="/en/help/50402-how-to-add-terms-and-conditions-on-hubspot">HubSpot</a> </li> <li class="51558"> <a href="/en/help/51558-how-to-add-terms-and-conditions-on-jimdo">Jimdo</a> </li> <li class="49571"> <a href="/en/help/49571-how-to-add-terms-and-conditions-on-joomla">Joomla!</a> </li> <li class="51470"> <a href="/en/help/51470-how-to-add-terms-and-conditions-on-magento">Magento</a> </li> <li class="49740"> <a href="/en/help/49740-how-to-add-terms-and-conditions-to-prestashop">PrestaShop</a> </li> <li class="49143"> <a href="/en/help/49143-how-to-add-terms-and-conditions-on-squarespace">Squarespace</a> </li> <li class="52812"> <a href="/en/help/52812-how-to-add-terms-and-conditions-on-shopify">Shopify</a> </li> <li class="50101"> <a href="/en/help/50101-how-to-add-terms-and-conditions-on-ucraft">Ucraft</a> </li> <li class="48828"> <a href="/en/help/48828-how-to-add-terms-and-conditions-on-webflow">Webflow</a> </li> <li class="50267"> <a href="/en/help/50267-how-to-add-terms-and-conditions-on-weebly">Weebly</a> </li> <li class="47938"> <a href="/en/help/47938-how-to-add-terms-and-conditions-to-wix">Wix</a> </li> <li class="45671"> <a href="/en/help/45671-how-to-add-terms-and-conditions-on-woocommerce-stores">WooCommerce</a> </li> <li class="47465"> <a href="/en/help/47465-how-to-add-terms-and-conditions-on-wordpress">WordPress</a> </li> <li class="46214"> <a href="/en/help/46214-how-to-add-terms-and-conditions-on-wordpress-com">WordPress.com</a> </li> <li class="separator 19581"> </li> <li class="category-title 19580"> <strong>Advanced</strong> </li> <li class="19579"> <a href="/en/help/12260">How to Configure your Content Security Policy for iubenda</a> </li> </ul> </li> <li class="has_child category-title 19563"> Troubleshooting and FAQs <ul> <li class="19676"> <a href="/en/help/407">Can I Copy and Paste the Text of the Legal Documents into My Website?</a> </li> <li class="separator 68080"> </li> <li class="category-title 68081"> <strong>Changelog</strong> </li> <li class="64425"> <a href="/en/help/64425-terms-and-conditions-generator-legal-changelog">Legal Changelog</a> </li> </ul> </li> </ul> </li> <li class="has_child category-title 6557"> Consent Database <ul> <li class="has_child category-title 17471"> Getting Started <ul> <li class="6469"> <a href="/en/help/6469-consent-solution-getting-started">Introduction and Methods</a> </li> <li class="7379"> <a href="/en/help/7379-how-to-sync-your-iubenda-legal-documents-with-the-consent-solution">How to Sync Your Legal Documents</a> </li> </ul> </li> <li class="has_child category-title 17472"> Implementation <ul> <li class="6473"> <a href="/en/help/6473-consent-solution-js-documentation">JavaScript</a> </li> <li class="6484"> <a href="/en/help/6484-consent-solution-http-api-documentation">HTTP API</a> </li> <li class="129285"> <a href="/en/help/129285-consent-database-integration-guide-all-major-platforms">Simple integration guide</a> </li> <li class="separator 18931"> </li> <li class="category-title 18930"> <strong>Popular Platforms</strong> </li> <li class="56957"> <a href="/en/help/56957-consent-solution-for-hubspot">HubSpot</a> </li> <li class="18710"> <a href="/en/help/18710-consent-solution-joomla-chronoforms">Joomla!</a> </li> <li class="67783"> <a href="/en/help/67783-make-integromat-consent-solution-integration">Make (Integromat)</a> </li> <li class="74560"> <a href="/en/help/74560-consent-solution-for-prestashop">Prestashop</a> </li> <li class="57099"> <a href="/en/help/57099-how-to-add-consent-solution-on-shopify">Shopify</a> </li> <li class="66387"> <a href="/en/help/66387-consent-solution-for-squarespace">Squarespace</a> </li> <li class="59704"> <a href="/en/help/59704-consent-solution-for-webflow">Webflow</a> </li> <li class="56770"> <a href="/en/help/56770-consent-solution-for-wix">Wix</a> </li> <li class="66023"> <a href="/en/help/66023-zapier-consent-solution-integration">Zapier</a> </li> <li class="separator 66377"> </li> <li class="category-title 66378"> <strong>WordPress</strong> </li> <li class="21330"> <a href="/en/help/21330-consent-solution-wordpress-plugin-installation-guide">WordPress (plugin)</a> </li> <li class="13083"> <a href="/en/help/13083-consent-solution-wordpress-contact-form-7">WordPress (JavaScript method)</a> </li> <li class="62292"> <a href="/en/help/62292-consent-solution-for-elementor">Elementor (WordPress website builder)</a> </li> <li class="61862"> <a href="/en/help/61862-consent-solution-for-gravity-forms">Gravity Forms (WordPress form plugin)</a> </li> <li class="separator 19582"> </li> <li class="category-title 17473"> <strong>Advanced</strong> </li> <li class="12502"> <a href="https://www.iubenda.com/en/help/12260">How to Configure your Content Security Policy for iubenda</a> </li> </ul> </li> <li class="has_child category-title 18268"> Troubleshooting and FAQs <ul> <li class="18199"> <a href="/en/help/18199-consent-solution-delivery-channels">Delivery Channels</a> </li> <li class="18024"> <a href="/en/help/18024-consent-solution-changelog">Changelog</a> </li> </ul> </li> </ul> </li> <li class="has_child category-title 141348"> Whistleblowing Management Tool <ul> <li class="141269"> <a href="/en/help/141269-eu-whistleblower-directive-guide-iubenda-tool">iubenda’s Guide to the EU Whistleblower Directive and Our Dedicated Tool</a> </li> </ul> </li> <li class="has_child category-title 6558"> Register of Data Processing Activities <ul> <li class="6311"> <a href="/en/help/6311-internal-privacy-management-getting-started">Guide to the Register of Data Processing Activities</a> </li> </ul> </li> <li class="has_child category-title 5238"> Resources <ul> <li class="13053"> <a href="/en/help/13053-iubenda-webinars">Webinars</a> </li> <li class="has_child category-title 25910"> Videos <ul> <li class="336"> <a href="/en/help/336-videos">All Video Guides</a> </li> <li class="separator 18397"> </li> <li class="category-title 18393"> <strong>Privacy and Cookie Policy Generator</strong> </li> <li class="34840"> <a href="/en/help/34840-privacy-and-cookie-policy-generator-overview-video">Overview</a> </li> <li class="327"> <a href="/en/help/327-intro-privacy-cookie-policy-generator-video">Introduction to the Generator</a> </li> <li class="310"> <a href="/en/help/310-add-services-privacy-policy-video">Adding services/clauses to your policy</a> </li> <li class="35004"> <a href="/en/help/35004-owner-info-privacy-policy-video">Filling in the owner info</a> </li> <li class="312"> <a href="/en/help/312-manage-languages-privacy-policy-video">Managing languages</a> </li> <li class="319"> <a href="/en/help/319-edit-privacy-policy-video">Editing your policy</a> </li> <li class="31830"> <a href="/en/help/31830-remove-iubenda-branding-video">Removing iubenda branding</a> </li> <li class="317"> <a href="/en/help/317-add-privacy-policy-to-your-site-video">Embedding your policy</a> </li> <li class="31834"> <a href="/en/help/31834-integrate-iubenda-wordpress-video">Integrating iubenda with WordPress</a> </li> <li class="separator 18398"> </li> <li class="category-title 18394"> <strong>Privacy Controls and Cookie Solution</strong> </li> <li class="31759"> <a href="/en/help/31759-cookie-solution-intro-video">Introduction to the Privacy Controls and Cookie Solution</a> </li> <li class="18387"> <a href="/en/help/18387-customize-cookie-banner-basic-video">How to customize the cookie banner (basic options)</a> </li> <li class="31752"> <a href="/en/help/31752-customize-cookie-banner-advanced-video">How to customize the cookie banner (advanced options)</a> </li> <li class="39065"> <a href="/en/help/39065-tcf-video">Transparency and Consent Framework (TCF)</a> </li> <li class="separator 33820"> </li> <li class="category-title 33821"> <strong>Terms and Conditions Generator</strong> </li> <li class="33817"> <a href="/en/help/33817-terms-and-conditions-generator-overview-video">Overview</a> </li> <li class="separator 18399"> </li> <li class="category-title 18395"> <strong>Consent Database</strong> </li> <li class="6827"> <a href="/en/help/6827-consent-solution-intro-video">Introduction to the Consent Database</a> </li> <li class="34721"> <a href="/en/help/34721-consent-solution-manual-implementation-javascript-video">Consent Database manual implementation (JavaScript)</a> </li> <li class="18353"> <a href="/en/help/18353-consent-solution-dashboard-video">Consent dashboard in action</a> </li> <li class="separator 18400"> </li> <li class="category-title 18396"> <strong>Register of Data Processing Activities</strong> </li> <li class="6667"> <a href="/en/help/6667-internal-privacy-management-video">How to use the IPM tool</a> </li> </ul> </li> <li class="has_child category-title 7679"> Templates <ul> <li class="category-title 25913"> <strong>GDPR</strong> </li> <li class="7687"> <a href="/en/help/7687-eu-representative-appointment-template">EU Representative Appointment</a> </li> <li class="7680"> <a href="/en/help/7680-data-processing-agreement-template-gdpr">Data Processing Agreement</a> </li> <li class="7689"> <a href="/en/help/7689-non-disclosure-and-confidentiality-obligation-for-employees">Non-Disclosure and Confidentiality Obligation for Employees</a> </li> <li class="7910"> <a href="/en/help/7910-data-protection-impact-assessment-dpia-template">Data Protection Impact Assessment (DPIA)</a> </li> <li class="separator 25914"> </li> <li class="category-title 22097"> <strong>CPRA & CCPA</strong> </li> <li class="22090"> <a href="/en/help/22090-us-data-processing-addendum-template">Service Provider Addendum</a> </li> </ul> </li> <li class="has_child category-title 25916"> Cheat Sheets, Checklists and Tests <ul> <li class="22835"> <a href="/en/help/22835-gdpr-compliance-checklist">GDPR cheat sheet</a> </li> <li class="23672"> <a href="/en/help/23672-gdpr-cookie-consent-cheatsheet">GDPR Cookie Consent Cheatsheet</a> </li> <li class="65132"> <a href="/en/help/65132-us-privacy-legislations-overview">US privacy legislations Cheatsheet</a> </li> <li class="39705"> <a href="/en/help/39705-global-email-marketing-cheatsheet">Global Email Marketing Cheatsheet</a> </li> <li class="22226"> <a href="/en/help/22226-ccpa-compliance-checklist">CCPA compliance checklist</a> </li> <li class="25920"> <a href="https://iubenda.typeform.com/to/cDGLymwf">CPRA quiz</a> </li> <li class="64214"> <a href="https://www.iubenda.com/en/help/5463-how-to-comply-with-the-gdpr-cookie-law-caloppa-and-ccpa#quiz">Compliance self-assessment test</a> </li> </ul> </li> </ul> </li> <li class="has_child category-title 5228"> Account and Billing <ul> <li class="6633"> <a href="/en/help/6633-pricing-faqs">Pricing FAQs</a> </li> <li class="4014"> <a href="/en/help/4014-delete-account">How to Delete Your Account</a> </li> <li class="167417"> <a href="/en/help/167417-iubenda-multi-user-accounts-feature-overview">iubenda Multi-User Accounts Feature Overview</a> </li> <li class="has_child category-title 5353"> Plans and Licenses <ul> <li class="379"> <a href="/en/help/379-basic-license-limits">Limits of the Free Plan</a> </li> <li class="163856"> <a href="/en/help/163856-how-to-renew-or-upgrade-your-iubenda-plan">How to Renew or Upgrade Your iubenda Plan</a> </li> <li class="162983"> <a href="/en/help/162983-how-to-manage-your-licenses-all-legacy-guides">How to Manage Your Licenses [All Legacy Guides]</a> </li> <li class="155774"> <a href="/en/help/155774-how-to-delete-a-site">How to Delete a Site</a> </li> </ul> </li> <li class="has_child category-title 5354"> Payment <ul> <li class="543"> <a href="/en/help/543-why-is-my-paypal-payment-failing">Why Is My Payment Failing?</a> </li> <li class="440"> <a href="/en/help/440-how-to-disable-auto-renewal">How to Disable Auto-Renewal</a> </li> <li class="62707"> <a href="/en/help/62707-can-i-pay-by-bank-transfer">Can I Pay by Bank Transfer?</a> </li> <li class="62688"> <a href="/en/help/62688-how-to-add-change-your-current-payment-method">How to Update your Payment Method</a> </li> <li class="3848"> <a href="/en/help/3848-recurring-basis">Why the iubenda Service Is On a Recurring Basis</a> </li> </ul> </li> <li class="has_child category-title 5355"> Invoices <ul> <li class="2800"> <a href="/en/help/2800-invoices">Where Can I Find My Invoices?</a> </li> <li class="517"> <a href="/en/help/517-update-invoicing-information">How to Update Your Invoicing Information</a> </li> <li class="11223"> <a href="/en/help/11223-invoices-different-email">How to Receive Invoices on a Different Email Address</a> </li> </ul> </li> </ul> </li> <li class="has_child category-title 17381"> Partners and Affiliates <ul> <li class="128"> <a href="/en/help/128-affiliate-referral">How to Set up a Basic Affiliate/Referral Program Partnership with iubenda</a> </li> <li class="30386"> <a href="/en/help/30386-how-to-resell-iubenda-to-your-clients">How to resell iubenda’s solutions to your clients</a> </li> <li class="22206"> <a href="https://www.iubenda.com/en/help/15138-partner-directory">Need help getting set up? View our directory of certified partners</a> </li> </ul> </li> <li class="has_child category-title 17445"> About iubenda <ul> <li class="6758"> <a href="/en/help/6758-data-processing-agreement-between-iubenda-and-its-users">Data Processing Agreement iubenda <> users</a> </li> <li class="1931"> <a href="/en/help/1931-what-iubenda-tracks-and-what-it-doesnt-track">What iubenda Does and Does Not Track</a> </li> <li class="5699"> <a href="/en/help/5699-5-reasons-why-we-host-your-documents">5 Reasons Why We Host Your Documents</a> </li> </ul> </li> </ul> </nav> </div> <div class="toc-wrap sticky-top"> <nav id="toc" data-toggle="toc"></nav> <div class="mb-4 text-sm text-uppercase font-weight-bold text-muted toc-label">Table of Contents</div> </div> </div> <!-- /.doc_aside --> <div class="col-lg-9 help-tpl__main"> <div class="mb-4 d-block d-lg-none"> <button class="btn btn-sm btn-outline-light px-4 btn-aside help-tpl__show-index-btn">Show index</button> </div> <h1 class="help-tpl__main-title mb-5 display-4 font-weight-semibold"data-swiftype-name="title" data-swiftype-type="string">Legal Requirements Overview</h1> <div class="entry_content entry_body_content doc_body" data-swiftype-name="body" data-swiftype-type="text" data-toc-scope > <div data-toc-activator=""></div> <p>As the world becomes more dependent on digital products and services, data privacy has increasingly become a top priority for many countries and regions. As a result, many regions have put in place robust and enforceable data regulations by which businesses are expected to comply.</p> <p>In most cases, non-compliance with these regulations can not only lead to major financial consequences, but it can also lead to significant and lasting damage to public trust and the reputation of your organization. It is, therefore, important to ensure that your business meets its legal obligations.</p> <h2 class="wp-block-heading" id="gen">General Legal Requirements</h2> <h3 class="wp-block-heading mt-4">Major Components</h3> <p>Under the vast majority of legislations, if you’re processing personal data you’re generally required to make disclosures related to your data processing activities via a <strong>comprehensive privacy policy</strong>, ensure that there are effective security measures in place for <strong>protecting personal data</strong> and implement methods for receiving user <strong>consent</strong> or facilitating its withdrawal.</p> <p><strong>This privacy information must be up-to-date, understandable, unambiguous, and easily accessible throughout the website or app.</strong> Some component requirements may vary based on the type of processing activity, region, user age or business type. It is, therefore, worth noting that in addition to the general points outlined here, you may have further responsibilities depending on your law of reference. You can read more situation specific information in the sections below.</p> <h3 class="wp-block-heading">Disclosures</h3> <p>In general, users need to be informed of:</p> <ul class="wp-block-list"> <li>Website/app owner details</li> <li>The effective date of your privacy policy</li> <li>Your notification process for policy changes</li> <li>What data is being collected</li> <li>Third-party access to their data (who the third-parties are and what data they’re collecting)</li> <li>Their rights in regards to their data.</li> </ul> <p>You may be further responsible for making <strong>additional disclosures to users, third-parties and the supervisory authority</strong> depending on your law of reference.<br> <br>One such law is the <strong><a href="https://www.iubenda.com/en/help/19133">California Consumer Privacy Act (CCPA)</a></strong>. Under the CCPA, users need to be informed, in particular, of the possibility of their data being<em> sold</em> ( you can think “sold” here as “shared with third parties for any profit, monetary or otherwise”). The disclosure needs to be visible from the homepage of the site and must include an opt-out (<em>DNSMPI</em>) link. You can read <a href="https://www.iubenda.com/en/help/19133">more about CCPA compliance here</a>.</p> <h3 class="wp-block-heading">Consent</h3> <p>Consent here refers to the informed voluntary agreement of an individual to engage in a particular event or process.</p> <p><strong>Broadly speaking, users need to be able to decline, withdraw or give</strong> (depending on the regional law) <strong>consent</strong>. Consent may be acquired using any method that would require the user to take a direct and verifiable affirmative action; these can include checkboxes, text fields, toggle buttons, sending an email in confirmation etc.</p> <div class="my-5 rounded px-3 pt-3 pb-1 bg-note"> <h5 class="my-2">Determining your law of reference</h5> <p>Generally, the laws of a particular region apply if:</p> <ul> <li>You base your operations there; or</li> <li>You use processing services or servers based in the region; or</li> <li>Your service targets users from that region</li> </ul> <p>This effectively means that <strong>regional regulations may apply to you and/or your business whether you’re located in the region or not.</strong> For that reason, it’s always advisable that you approach your data processing activities with the strictest applicable regulations in mind. You can <a href="https://www.iubenda.com/en/help/524">read more about which laws apply to you here</a>.</p> </div> <hr class="wp-block-separator has-css-opacity mt-5"/> <h2 id="us-law" data-toc-text="US law">Region-Specific Requirements – US law</h2> <p><strong>In the US</strong>, there is no single comprehensive national body of data regulations; there are, however, various laws on a state level as well as industry guidelines and specific federal laws in place. Since online site/app activity is rarely limited to just one state, it’s always best to adhere to the strictest applicable regulations. With this in mind, the most robust data law framework is implemented by the state of California. <strong>The California Online Privacy Protection Act (CalOPPA)</strong>, implemented in 2004, was the first state law to make <strong>privacy policies mandatory</strong> and it applies to person or company whose website/app processes the personal data of California residents.</p> <p>In <strong>addition</strong> to the <a href="#gen">generally required disclosures above</a>, CalOPPA also requires that you:</p> <ul class="wp-block-list"> <li><strong>Conspicuously</strong> post your privacy policy on the homepage of your website/ app</li> <li>Include in your privacy policy a description of the <strong>process by which users can request changes</strong> to personal data (if such a process exists)</li> <li>Include in your privacy policy a statement on <strong>how “Do Not Track” requests are handled</strong></li> <li>Notify affected users in the occurrence of <strong>security breaches</strong> that impact their data</li> </ul> <p>In regards to consent, US law <a href="https://www.dlapiperdataprotection.com/index.html?t=collection-and-processing&c=US">generally requires</a> that you give users a clear option for <strong>withdrawing consent</strong> (opt-out). Different rules apply, however, in cases involving “sensitive data” (e.g. health information, credit reports, student data, personal information of children under 13). In such cases, there must be a <strong>verifiable opt-in</strong> action such as checking a box or some other affirmative action.</p> <h3 class="wp-block-heading">Special Care Regarding Children</h3> <p>If your service is knowingly collecting, using, or disclosing <strong>personal information from children under 13</strong>, then special regulations apply to those data processing activities.</p> <p><strong>Children’s Online Privacy Protection Act (<a href="https://www.ftc.gov/tips-advice/business-center/guidance/complying-coppa-frequently-asked-questions">COPPA</a>)</strong> is a US federal law implemented to better protect the personal data and rights of children under 13 years of age. </p> <p>Under this law, if you operate a website or online service which is directed to children under 13, or you have actual knowledge that you’re collecting personal information from children under 13, you must <strong>give notice to parents</strong> and get their <strong>verifiable consent</strong> before collecting, using, or disclosing the information, and must keep the information collected <a href="https://www.iubenda.com/en/help/122360-data-security-vs-data-privacy-whats-the-difference" target="_blank" rel="noopener">secure</a>. </p> <p><strong>“Verifiable”</strong> here means using a method of attaining consent that is not easily faked by a child and that is demonstrably likely to be given by an adult (e.g. checking a form of government-issued ID against an applicable database).</p> <h4 class="wp-block-heading">What is meant by the “personal information” of children</h4> <p>“Personal information” within this context refers to the child’s:</p> <ul class="wp-block-list"> <li>Name or ID information (eg. social security number)</li> <li>Location info including physical address, geolocation data or IP address</li> <li>Any contact information including phone numbers and email addresses</li> <li>Device identifiers</li> <li>Media containing the child’s image or voice, including photos, videos or audio files</li> </ul> <div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">💡 Learn more about <a href="https://www.iubenda.com/en/help/5717">legal requirements regarding children</a> and <a href="https://www.iubenda.com/blog/guide-coppa-mobile-apps">COPPA</a>.</p> </div> <h2 id="eu-law" data-toc-text="EU law">Region-Specific Requirements – Europe</h2> <h3 class="wp-block-heading mt-4 heading-icon heading-icon--gdpr" id="gdpr">GDPR</h3> <p>In the EU the General Data Protection Regulation (<a href="https://www.iubenda.com/en/help/5428">GDPR</a>) was introduced in an effort to centralize data protection for people in the EU and <strong>became fully enforceable in May 2018</strong>. At its most basic, it specifies how personal data should be lawfully processed (including how it’s collected, used, protected or interacted with in general).<br><a id="gdprapplies"></a></p> <h4 class="wp-block-heading">Where it applies</h4> <div class="my-4 rounded px-3 pt-3 pb-1 bg-note"> <p>The GDPR can apply where:</p> <ul> <li>An entity’s base of operations is in the EU (this applies whether the processing takes place in the EU or not);</li> <li>An entity not established in the EU offers goods or services (even if the offer is for free) to people in the EU. The entity can be government agencies, private/public companies, individuals and non-profits;</li> <li>An entity is not established in the EU but it monitors the behaviour of people who are in the EU, provided that such behaviour takes place in the EU.</li> </ul> </div> <p>This scope effectively covers almost all companies and, therefore, means that the GDPR can apply to you whether your organization is based in the EU or not.</p> <p>Note: <strong>The protections of the GDPR also extend to users outside the EU if the data controller is EU based</strong>. Therefore, if you are an EU-based data controller you must, by default, apply GDPR standards to ALL your users.</p> <h4 class="wp-block-heading">Where it does not apply</h4> <p>The conditions of applicability of the GDPR are set from a material and a territorial point of view. To determine, whether or not a specific processing activity is exempt from its applicability, we have to consider both aspects.</p> <h4 class="wp-block-heading">Material point of view</h4> <p>The GDPR applies to the processing of <a href="https://www.iubenda.com/en/help/5428-gdpr-guide#personaldata">personal data</a>. Therefore, it does not apply to company data, such as a company name and address. Be careful here, however, because normally “natural persons” work in a company, any data referring to them would, therefore, be deemed “personal”, regardless of whether they are processed in a Business to Customer (B2C) or Business to Business (B2B) context.</p> <p>Furthermore, personal data may not fall under the scope of the GDPR in several other scenarios including where they are processed by a natural person for a purely personal or household activity. <strong>You can read more about this in the dedicated guide <a href="https://www.iubenda.com/en/help/5428-gdpr-guide#gdpr-not-applicable">here</a>.</strong></p> <h4 class="wp-block-heading">Territorial point of view</h4> <p>In addition to and notwithstanding the above, we’ve already mentioned under which conditions <a href="#gdprapplies">the GDPR applies</a>. Consequently, for a processing activity <strong>not</strong> to be subjected to the GDPR from a territorial point of view, the following must apply cumulatively:</p> <ul class="wp-block-list"> <li>the controller (or processor) is not based within the EU. <em>Note: Always remember that the controller (or processor) could also be <strong>an EU-branch office</strong> of a non-EU corporation: in that case, even if the branch office were to have no legal personality, the GDPR would fully apply;</em></li> <li>the processing does not relate to the offering of goods or services (even for free) to data subjects in the Union or the monitoring of their behavior as far as it takes place within the Union;</li> <li>the controller is not based in an extra-EU place, where EU law applies due to international public law.</li> </ul> <p><strong>See examples in the dedicated guide <a href="https://www.iubenda.com/en/help/5428-gdpr-guide#gdpr-not-applicable">here</a>.</strong></p> <div class="card my-5"> <div class="d-none d-sm-block" style="width:54px; height: 54px; background: #fff; border-radius: 50%; position: absolute; top: -27px; left: -27px; font-size: 25px; text-align: center; line-height: 54px; border: 1px solid rgba(0,0,0,0.125);">🎙️</div> <div class="p-4"> <h5>Ask our experts live</h5> <hr> <p class="card-text"><strong>View live demos and have your questions answered in real time</strong> by attending one of our free English webinars. They are all practical and designed to really help you with understanding and achieving compliance for your websites or apps.</p> <a href="https://iubenda.link/webinars" class="btn btn-primary text-white sans-serif">Attend our free webinars</a> </div> </div> <h4 class="wp-block-heading">GDPR Requirements</h4> <p>In general, the <strong>GDPR requires</strong> that you:</p> <p><strong>Have a lawful basis.</strong> The GDPR requires that you have at least one lawful basis for processing user data. There are 6 lawful bases outlined under the GDPR.</p> <p><strong>Acquire verifiable consent.</strong> Under the GDPR, consent is one of several <a href="https://ico.org.uk/for-organisations/guide-to-the-general-data-protection-regulation-gdpr/lawful-basis-for-processing">legal/ lawful bases</a> for processing user data and as such, it must be “freely given, specific, informed and explicit”. This means that the mechanism for acquiring consent must be unambiguous and involve a clear “opt-in” action (the regulation specifically forbids pre-ticked boxes and similar “opt-out” mechanisms).</p> <p>The GDPR also gives users a specific <strong>right to withdraw consent</strong> and, therefore, it must be as easy to withdraw consent as it is to give it. Because consent under the GDPR is such an important issue, it’s <strong>vital</strong> that you <strong>document and keep clear records related to the consent.</strong></p> <p>Records of consent should at least contain the following information:</p> <ul class="wp-block-list"> <li>The identity of the user giving consent;</li> <li>When they consented;</li> <li>What disclosures were made (what they were told) at the time they consented;</li> <li>Methods used for obtaining consent (e.g., newsletter form, during checkout etc.);</li> <li>Whether they have withdrawn consent or not</li> </ul> <p>Consent is not the ONLY reason that an organization can process user data; it is only one of the “legal bases”, therefore companies can apply other lawful (within the scope of GDPR) bases for data processing activity. With that said, there will always be data processing activities where consent is the only or best option.</p> <div class="my-5 rounded px-3 pt-3 pb-1 bg-note"> <p>Many Data Protection Authorities across the EU have strengthened their requirements and aligned their rules on cookies and trackers with the requirements of the GDPR. More specifically, it’s required that you record and store proofs of your users’ preferences. <br> <br> <strong>The Cookie and Consent Preference Log</strong> is now available in our Privacy Controls and Cookie Solution. Click <a href="https://www.iubenda.com/en/help/1177-cookie-solution-getting-started#cpl">here</a> for more info on how to activate the Cookie and Consent Preference Log within your Privacy Controls and Cookie Solution.</p> </div> <h4 class="wp-block-heading">Data Subjects’ rights</h4> <p>Under the GDPR users have statutory rights in regards to their data. Not only must you as the controller honor those rights, but you must also inform users about them. Such rights include:</p> <ul class="wp-block-list"> <li><strong>The right to be informed</strong><br> In addition to the generally required disclosures outlined above, the GDPR further requires that you ensure that your privacy notices are concise, easy-to-understand and easily accessible throughout your website/app.</li> <li><strong>The right of access</strong><br> Users have the right to access to their personal data and information about how their personal data is being processed.</li> <li><strong>The right to rectification</strong><br> Users have the right to have their personal data rectified if it is inaccurate or incomplete.</li> <li><strong>The right to object</strong><br> Under the GDPR, users have the right to object to certain activities in relation to their personal data.</li> <li><strong>The right to data portability</strong><br> Under certain conditions, users have the right to obtain (in a machine-readable format) and use their personal data for their own purposes.</li> <li><strong>The right to erasure</strong><br> When data is no longer relevant to its original purpose or where users have withdrawn consent, users have the right to request that their data be erased and all dissemination ceased.</li> <li><strong>The right to restrict processing</strong><br> Users have the right to restrict the processing of their personal data in specific cases.</li> <li><strong>Rights related to automated decision making and profiling</strong><br> Users have the right to not be subjected to a decision when it is based on automated processing or profiling, and it produces a legal or a similarly significant effect on the user.</li> </ul> <p><strong>Meet specific requirements if transferring data outside of the EEA.</strong> The GDPR permits data transfers of EU resident data outside of the European Economic Area (EEA) only when in compliance with set conditions.</p> <p><strong><a href="https://www.iubenda.com/en/help/147478-privacy-by-design-and-by-default" target="_blank" rel="noopener">Implement privacy by design and default</a>.</strong> Under the GDPR, data protection should be included from the onset of design and development of the business processes and infrastructure.</p> <p><strong>Disclose security breaches.</strong> Under the GDPR, you are required to inform the supervisory authority of security breaches involving user data within 72 hours of becoming aware of it. In many cases you’re also required to inform affected users.</p> <p><strong>Appoint a DPO (where certain conditions are met).</strong> Under certain conditions, you may be required to appoint a Data Protection Officer, who will have the task to oversee all processing activities and monitor compliance with applicable law. Cases for mandatory appointment include situations where large-scale, systematic processing of user data occurs and where special categories of data (i.e. sensitive data) are being processed.</p> <p><strong>Maintain <span id="recordsProcessing">records of processing</span> activities.</strong> As stipulated in Article 30, the GDPR requires that you keep and maintain “full and extensive” <strong>up-to-date <a href="https://ico.org.uk/for-organisations/guide-to-the-general-data-protection-regulation-gdpr/accountability-and-governance/documentation/">records</a></strong> of the particular <strong>data processing activities</strong>. Full and extensive records of processing are <strong>expressly required</strong> in cases where your data processing activities are not <em>occasional</em>, where they could result in a risk to the rights and freedoms of others, where they involve the handling of “special categories of data” or where your organization has more than 250 employees — <strong>this effectively covers almost all data controllers and processors</strong>. However, even <em>if</em> your processing activities somehow fall outside of these situations, <a href="https://www.iubenda.com/en/help/5428#userrights">your information duties to users</a> make it necessary for you to keep basic records relating to which data you collect, its purpose, all parties involved in its processing and the data retention period — this is mandatory for everyone. Read more about how to maintain compliant records for controllers and processors in our <a href="https://www.iubenda.com/en/help/5428#recordsProcessing">GDPR guide</a>.</p> <p><strong>Carry out a DPIA</strong> (where certain conditions are met). In cases where the data processing activity is likely to result in a high risk to users, the GDPR requires that a Data Protection Impact Assessment (DPIA) be carried out.</p> <div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">💡 You can <a href="https://www.iubenda.com/en/help/5428">read more about the GDPR here</a>.</p> </div> <h3 class="wp-block-heading heading-icon heading-icon--cookie" id="cookielaw">ePrivacy Directive (Cookie Law)</h3> <p>Because using cookies means both processing user data and installing files that could be used for tracking, it is a major point of concern when it comes to user data privacy rights. The <strong>ePrivacy Directive (or <a href="https://www.iubenda.com/en/help/22507-consent-management-platform">Cookie Law</a>)</strong> was implemented to address this concern.</p> <p>Under the Cookie law, organizations that target users from the EU must <strong>inform users about data collection activities</strong> and give them the option to <strong>choose whether it’s allowed or not.</strong> This means that if <strong>your site/app</strong> (or <strong>any third-party service</strong> used by your site/app) uses cookies, you must first obtain valid consent <strong>prior to</strong> the installation of those cookies, except where those cookies fall into the category of <a href="#exempt">exempt cookies</a>.</p> <div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">💡 To learn more about which EU cookie consent rules apply on a per-country basis, <a href="https://www.iubenda.com/en/help/23672">check out our Cookie Consent Cheatsheet here</a>.</p> </div> <h4 class="wp-block-heading">Cookie banner</h4> <p>So in practice, you’ll need to show a banner at the user’s first visit, implement a cookie policy that contains all required information, and provide or inform users of the means by which they can refuse (or withdraw consent to) the processing. <strong>Prior to <em>informed and explicit</em> consent, no cookies – except for exempt cookies – can be installed.</strong></p> <div class="my-4 rounded px-3 pt-3 pb-1 bg-note" id="regular-vs-cookie-consent"> <h5 class="my-2">Cookie consent vs. “regular” consent</h5> <p>As mentioned above, “consent” is one of the six legal bases admitted by the GDPR and must be expressed and documented in very specific ways in order to be deemed valid.</p> <p>The question is: <em>do you have to treat the consent to the use of cookies the same way as the “regular” consent to specific data processing activities <a href="https://www.iubenda.com/en/help/5640">e.g. sending out newsletters</a>?</em></p> <p>If the answer were “yes”, this would mean that you’d have to comply with all the extensive requirements for consent validity even when placing cookies, however, at the moment, most commentators agree that this would be both unfeasible and not what is intended by the EU legislator. <strong>Therefore, the simplified consent requirements under the ePrivacy Directive are still thought to be primarily applicable to the placing of cookies</strong>, due largely in part to the provision of GDPR-Article 95. However, please be aware that this is a hotly debated issue. This issue will only truly be resolved when the planned ePrivacy Regulation, currently still under development, is adopted.</p> </div> <p>The <strong>banner</strong> must:</p> <ul class="wp-block-list"> <li>briefly explain the purpose of the installation of cookies that the site uses;</li> <li>be sufficiently conspicuous so as to make it noticeable;</li> <li>link to (a cookie policy) or make available details of cookie purpose, usage and related third-party activity;</li> <li>clearly state which actions will indicate consent.</li> </ul> <h4 class="wp-block-heading">Cookie policy</h4> <p>The <strong>Cookie Policy</strong> must:</p> <ul class="wp-block-list"> <li>describe in detail the purpose of installation of cookies;</li> <li>indicate all the third parties who install or that could install cookies, with a link to the respective privacy policy, the cookie policy, and any consent forms;</li> <li>inform the user of how they can exercise their right to refuse/withdraw consent.</li> </ul> <h4 class="wp-block-heading">Blocking cookies before consent</h4> <p>In compliance with the general principles of privacy legislation, which prevent processing before consent, the cookie law does not allow the installation of cookies before obtaining user consent. In practice, this means that you may have to employ a form of script blocking prior to user consent.</p> <h4 class="wp-block-heading">Consent to cookies can be provided by several actions</h4> <p>Subject to the local authority, these actions may include continued browsing, clicking on links or scrolling the page. In many cases, clicking on “ok”, closing the banner or continued navigation of a cookie-installing website can be considered active consent to the placing of cookies — <strong>provided that users had been previously and clearly informed about this consequence</strong>.</p> <h4 class="wp-block-heading">Exemptions to the consent requirement</h4> <p>Some cookies are exempt from the consent requirement and therefore are not subject to preventive blocking (though you’re still required to inform users about your use of cookies – see caution box below). The exemptions are as follows:</p> <ul class="wp-block-list"> <li>Technical cookies strictly necessary for the provision of the service. These include preference cookies, session cookies, load balancing, etc.</li> <li>Statistical cookies managed directly by you (not third-parties), providing that the data is not used for profiling *</li> <li>Anonymized statistical third-party cookies (e.g. Google Analytics) *</li> </ul> <p><em><strong>*This exemption may not be applicable for all regions and is therefore subject to specific local regulations.</strong></em></p> <div class="my-4 rounded px-3 pt-3 pb-1 bg-caution"> <h5 class="my-2">Caution</h5> <p>The exemption to the consent requirement only clearly applies to non-tracking technical cookies strictly necessary for the functioning of services that were expressly requested by the user. <br>A real-world example of this would be an e-commerce site that allows users to “hold” items in their cart while they’re using the site or for the duration of a session. In this scenario, the technical cookies are both necessary for the functioning of the purchasing service and are explicitly requested by the user when they indicate that they would like to add the item to the cart. Do note, however, that these session-based technical cookies <strong>are not tracking cookies</strong>.</p> <p>Other examples of these technical cookies would be user-centric session-based cookies used to detect authentication abuses, load-balancing session cookies, and Multimedia player session cookies related to and necessary for the provision of services requested by the user.</p> <p class="my-2"><strong>So does this mean that I don’t need to have a Cookie Banner in such cases?</strong></p> <p>Firstly, it’s critical to note that even where this exception to the consent requirement applies, you’ll still need to inform the user of your use of cookies via a cookie policy.The banner is not necessarily required in this specific instance if the cookie policy is easily accessible and visible from every page of the site.</p> </div> <p>In future, the ePrivacy Directive will be replaced by the ePrivacy Regulation and as such, <strong>will work alongside the GDPR.</strong> The upcoming regulation is expected to still uphold the same values as the directive.</p> <div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">💡 You can <a href="https://www.iubenda.com/en/help/1177">read more about the Cookie Law here</a>.</p> </div> <h3 class="wp-block-heading">FADP – Switzerland’s Federal Act on Data Protection</h3> <p>Originally established in 1992 and later partially updated in 2019, the FADP governs data privacy in Switzerland. The recent revision, passed on 25 September 2020 and effective from September 2023, integrates newer provisions resembling the GDPR while retaining its distinct Swiss principles.</p> <h4 class="wp-block-heading">Key Changes to the FADP</h4> <ol class="wp-block-list"> <li><strong>Privacy by Design:</strong> Companies are now mandated to develop procedures with data compliance at their core.</li> <li><strong>Sensitive Data:</strong> The definition has expanded to include biometric, genetic, and other information types.</li> <li><strong>Impact Assessments:</strong> Required when there’s a considerable risk to data subjects’ rights or privacy.</li> <li><strong>Extended Disclosure:</strong> Companies must obtain prior consent before processing sensitive personal data or when engaging in high-risk profiling.</li> <li><strong>Register of Processing Activities: </strong>Companies need to maintain this, though some SMEs might be exempted.</li> <li><strong>Data Breach Reporting</strong>: The FDPIC must be informed promptly in case of a data security breach.</li> <li><strong>Profiling:</strong> The law now acknowledges the legal concept of automated personal data processing.</li> <li><strong>Processing Basis</strong>: Processing of personal data is generally considered lawful. Specific legal bases are required under certain circumstances.</li> <li><strong>Consent Mechanism: </strong>Consent from the data subject is mandatory only in select scenarios.</li> <li><strong>Penalty: </strong>Targeted primarily at top-level executives in organizations.</li> </ol> <div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">💡 You can read more about the <a href="https://www.iubenda.com/en/help/75419-fadp-updates-what-you-need-to-know" target="_blank" rel="noopener">revised Swiss Federal Act on Data Protection here →</a></p> </div> <h4 class="wp-block-heading">FADP vs. GDPR Main Differences</h4> <p>While there are numerous nuances between the two laws, a few notable differences include:</p> <ul class="wp-block-list"> <li><strong>Applicability</strong>: FADP covers both organizations inside and outside Switzerland processing Swiss residents’ data. In contrast, GDPR pertains to EU-based organizations or those processing EU residents’ data.</li> <li><strong>Sensitive Data Categories</strong>: The FADP’s definition is more expansive than the GDPR.</li> <li><strong>Agreements:</strong> Under FADP, data controllers and processors may have an agreement, while GDPR mandates a Data Processing Agreement.</li> <li><strong>Disclosure Obligations:</strong> Both laws have data disclosure requirements, but the GDPR mandates a few additional ones.</li> <li><strong>Transferring Data Abroad:</strong> FADP and GDPR have different provisions and exceptions.</li> <li><strong>Data Protection Officer:</strong> FADP makes this role optional, whereas GDPR mandates it for specific entities.</li> <li><strong>Data Breach Notifications:</strong> FADP emphasizes reporting only high-risk breaches, whereas GDPR has a stricter timeline and broader reporting mandate.</li> <li><strong>Penalties</strong>: The FADP imposes fines up to CHF 250,000, whereas GDPR can reach up to EUR 20 million or a fraction of the global turnover.</li> </ul> <h4 class="wp-block-heading">The updated FADP affects:</h4> <ul class="wp-block-list"> <li>Private individuals processing personal data.</li> <li>Federal agencies. It doesn’t concern individuals processing data strictly for personal purposes.</li> </ul> <p>In conclusion, companies, especially those operating in or with Switzerland, need to familiarize themselves with the FADP’s new stipulations. Platforms like iubenda can assist in ensuring compliance, including having a robust privacy and cookie policy. As international data protection regulations continue to evolve, staying updated and compliant becomes crucial for organizations worldwide.</p> <div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">🚀 See how to <a href="https://www.iubenda.com/en/help/76886-how-to-comply-with-the-revised-swiss-federal-act-on-data-protection" target="_blank" rel="noopener">comply with the FADP here →</a></p> </div> <hr class="wp-block-separator has-css-opacity mt-5"/> <h2 class="wp-block-heading">Situational Legal Requirements</h2> <h3 class="wp-block-heading">E-commerce</h3> <div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">These requirements are typically addressed via a valid, up-to-date <a href="#tos">terms and conditions</a> document (also called ToS – terms of service, terms of use, or EULA – end user license agreement).</p> </div> <p>In addition to the disclosures and requirements outlined above (and subject to your law of reference), if operating an e-commerce website or app, you’re further subject to the applicable commercial laws and industry rules.</p> <h4 class="wp-block-heading">Regarding B2B commerce</h4> <p>Generally, those involved in B2B commercial transactions will be subject to whichever contract, industry and national guidelines are applicable. However, participating in B2B commerce often requires that personal data be processed (be it that of employees or otherwise), in such cases, and where the processing <a href="https://www.iubenda.com/en/help/5428-gdpr-guide#gdprApplies">falls within its scope</a>, the GDPR applies and takes precedence.</p> <h4 class="wp-block-heading" id="b2c-disclosures">Regarding B2C commerce</h4> <p>Under most countries’ consumer laws, when selling to <em>consumers</em>, in addition to the default required <a href="https://www.iubenda.com/en/help/6187">privacy disclosures</a>, you’ll need to inform customers of the following:</p> <ul class="wp-block-list"> <li><strong>Returns/Refund details</strong>;</li> <li><strong>Warranty/ Guarantee</strong> information (where applicable);</li> <li><strong>Safety</strong> information, including instructions for <strong>proper use</strong> (where applicable);</li> <li><strong>Terms of delivery</strong> of product/ service;</li> <li><strong>Identifying information</strong> such as a legal address and business name;</li> <li><strong>Rights of consumers</strong> (such as <a href="https://www.iubenda.com/en/help/5720#withdrawal-table">withdrawal rights</a>), where applicable;</li> <li><strong>Seller contact details</strong> (e.g. email address).</li> </ul> <h4 class="wp-block-heading">US law</h4> <p>In general, at least at the federal level, there are no rules in the United States that require businesses to include a terms and conditions document in their websites, as mandatory disclosures are mainly regulated on a state-by-state basis.</p> <p>While e-commerce disclosure requirements come into consideration primarily at the state level, it is best practice and in businesses’ interest to include certain information in the <a href="https://www.iubenda.com/en/help/5720-legal-requirements-overview#tos">Terms and Conditions</a> document.</p> <p>It is advisable for businesses to include provisions that protect their activity, such as limitations of liability, declaration of applicable law and jurisdiction, and a clear delivery and return policy.</p> <h3 class="heading-icon heading-icon--iubenda">How iubenda can help you</h3> <p>iubenda allows you to include different US-specific clauses in your Terms and Conditions:</p> <ul class="wp-block-list"> <li><strong>DMCA clauses</strong>: the Digital Millennium Copyright Act provides safe harbor for copyright infringement liability to online service providers that meet certain requirements (in order to qualify for safe harbor protection, service providers—for example, those that allow users to post or store material on their systems, search engines, directories, and other information location tools— must, among others, designate an agent to receive notifications of claimed copyright infringements, disclose designated agent’s contact information and add a DMCA-specific policy); <ul class="wp-block-list"> <li>How to find the related clause: <strong>Content rights</strong> → Advanced → DMCA clause</li> </ul> </li> </ul> <ul class="wp-block-list"> <li><strong>Exclusion of countries on a US sanctions list (if you are based or conduct business in the US)</strong>: you can add a statement ruling out users: a) located in a country that is subject to a U.S. Government embargo, or that has been designated by the U.S. Government as a “State Sponsor of Terrorism”; or b) included in any U.S. Government list of prohibited or restricted parties. Note that, for example, this is a requirement mandated by Apple for apps distributed via the Apple App Store; <ul class="wp-block-list"> <li>How to find the related clauses: <ul class="wp-block-list"> <li><strong>Mobile app</strong> → Base statements → Base clause for apps distributed via the Apple App Store</li> <li><strong>Target audience</strong> → Other → Exclude geographies that are on a US sanction/embargo list</li> </ul> </li> </ul> </li> <li><strong>Price displaying:</strong> in general, applicable laws might determine specific requirements on how prices must be displayed. According to US standards, you may specify, for example, whether prices are displayed either inclusive AND exclusive of applicable fees, taxes, and costs, depending on which part of “your application” is being viewed; or exclusive of applicable fees, taxes, and costs; <ul class="wp-block-list"> <li>How to find the related clause: <strong>Business model, payments and user rights</strong> → Purchasing process → Purchasing process and prices → Advanced: purchasing process settings → Customize how prices are displayed → Specify how prices are displayed</li> </ul> </li> </ul> <ul class="wp-block-list"> <li><strong>Marketplace scenarios and marketplace service description</strong>: addition for applications targeting the US market; <ul class="wp-block-list"> <li>How to find the related clauses: <ul class="wp-block-list"> <li><strong>Business model, payments and user rights</strong> → Base three-party scenario (“marketplaces”, “three-party scenario”) clauses→ Marketplace scenarios → Base marketplace clauses → Marketplace service description → Describe your marketplace in the service description → “Your application” is a “comparison” service → Addition for applications targeting the US</li> <li><strong>Business model, payments and user rights</strong> → Base three-party scenario (“marketplaces”, “three-party scenario”) clauses→ Marketplace scenarios → Base marketplace clauses → Wording/Description addition for applications targeting the US</li> </ul> </li> </ul> </li> <li><strong>Competent jurisdiction</strong>: you may state that the competence to decide any dispute that may arise belongs to the courts of the place where you are based, or other courts of your choosing, or add an arbitration clause. Furthermore, you may also include US-related trial by jury or class action waivers; <ul class="wp-block-list"> <li>How to find the related clauses: <ul class="wp-block-list"> <li><strong>Common provisions</strong> → Governing law and venue → Define venue of jurisdiction</li> <li><strong>Common provisions</strong> → Governing law and venue → Define venue of jurisdiction → US users addition against trial by jury or class actions</li> </ul> </li> </ul> </li> <li><strong>US disclaimers of warranties, limitations of liability, and indemnity clauses</strong>; <ul class="wp-block-list"> <li>How to find the related clause: <strong>Disclaimers of warranties, limitations of liability and indemnity</strong> → US practice → Address US users with applicable disclaimers of warranties, limitations of liability and indemnity clauses</li> </ul> </li> <li><strong>Severability statement for US-type documents</strong>; <ul class="wp-block-list"> <li>How to find the related clause: <strong>Common provisions</strong> → Severability statements → Severability statement addition for US-type documents/users</li> </ul> </li> <li><strong>Wording for surviving provisions for US-type documents</strong>. <ul class="wp-block-list"> <li>How to find the related clause: <strong>Common provisions</strong> → US related statements → Suggested wording for surviving provisions for US type documents/users</li> </ul> </li> </ul> <p>iubenda also offers some general clauses that, even if not US-specific, may be still applicable to the US, if selected. Here are some examples:</p> <ul class="wp-block-list"> <li><strong>Clauses related to delivery</strong>: you may add different delivery clauses which are useful in order to describe your delivery procedure; <ul class="wp-block-list"> <li>How to find the related clause: <strong>Business model, payments and user rights</strong> → General commerce and business model → Goods → Clauses related to delivery</li> </ul> </li> <li><strong>Governing law</strong>: you may specify either that the governing law is the one of the place in which your business is located; or, in general, a governing law of your choice, if different. In principle, you may decide which law shall govern your terms and, by consequence, any related dispute (however, please note that, in most jurisdictions, there might be mandatory regulations overriding your choice of law, e.g., consumer laws); <ul class="wp-block-list"> <li>How to find the related clause: <strong>Common provisions</strong> → Governing law and venue → Define governing law</li> </ul> </li> <li><strong>Guarantee clauses (extension to non-EU users)</strong>: in the US, at least at national level, businesses are generally not required to provide a warranty on products. However, in the occurrence of certain circumstances, an <a href="https://www.britannica.com/topic/warranty#ref1185743">implied warranty</a> may apply even in the absence of a written one (written warranties, if given, should at least adhere to industry standards of fairness and the provisions of the Uniform Commercial Code). With iubenda, on a voluntary basis, you may decide to extend the guarantee of conformity according to EU legislation to non-EU consumers. Obviously, this benefit may not prevent those consumers from enjoying any broader guarantee rights pursuant to their applicable law, if any; <ul class="wp-block-list"> <li>How to find the related clause: <strong>Business model, payments and user rights</strong> → General commerce and business model → Goods → Guarantees related to goods → Mandatory guarantee of conformity for goods for European consumers → Advanced</li> </ul> </li> <li><strong>Right of withdrawal (extension to non-EU users)</strong>: in the US, at least at national level, businesses are generally not required to establish a return/refund policy for purchases made online, as in most cases this is implemented on a state-by-state basis. Under several state-laws, if no refund or return notice was made available to consumers before purchase, consumers are automatically granted extensive return/refund rights. Although e-commerce disclosures are still mostly enforced at state level, it is common practice to include this information in your terms and conditions document in many circumstances. With iubenda, you have the option to extend withdrawal rights to non-EU users. Please be informed that this may result in a considerable effort for your business, since you will be obliged to accept returns from potentially all over the world. <ul class="wp-block-list"> <li>How to find the related clause: <strong>Business model, payments and user rights</strong> → User rights ― required by law or offered voluntarily by you → Mandatory right of withdrawal for consumers in the EU → “Right of withdrawal” section (required by law for European consumers) → Applicability of withdrawal right → You offer goods or services that the right of withdrawal applies to→ Advanced: voluntary extensions of the withdrawal right → Withdrawal target audience → Who the withdrawal right applies to (you can extend it here contractually)</li> </ul> </li> </ul> <p>However, we strongly recommend you to seek legal advice on the specific requirements of the market that you intend to target.</p> <h4 class="wp-block-heading">EU law</h4> <p>EU consumer law applies to contracts or other legal relationships between consumers (on one side) and professionals, businesses, companies on the other (B2C). It does not apply to B2B (e.g. a supermarket places an order with its fruit supplier) or C2C relationships (e.g. I sell my old bike over eBay).</p> <p>Among other things, under EU consumer law, consumers have an unconditional <strong>right to withdraw</strong> (“cooling off period”) of <strong>14 days</strong>. This means that consumers may cancel or withdraw from <strong>distance contract</strong> (sales occurring online, over the phone, mail order) for any or no reason for 14 days after receiving the product (in the cases involving goods).</p> <p>It’s worth noting that <strong>14 days is the statutory minimum</strong>; in specific countries, national rules may extend this period, or single providers may extend is contractually.</p> <p>This right to withdraw does not apply in all situations.</p> <p>Some common <strong>exemptions</strong> are:</p> <ul class="wp-block-list"> <li>Event and travel tickets & car rental reservations, but more in general any contract related to leisure activities, if the it provides for a specific date or period of performance;</li> <li>Sealed media items such as CDs which have been unsealed by the recipient;</li> <li>Digital content as soon as it’s downloaded by the consumer;</li> <li>Made to order or distinctly personalized items (eg. a tailored dress);</li> <li>Under some additional conditions, any contract about the delivery of a service, etc.</li> </ul> <p>Consumers located in the EU are also protected by a default legal 2 year guarantee on products purchased at no additional cost. Here again: <strong>2-years is the statutory minimum</strong>; in specific countries, national rules may extend this period, and it can be extended also contractually. </p> <p><strong><a href="https://europa.eu/youreurope/citizens/consumers/shopping/guarantees-returns/index_en.htm">These rules</a></strong> usually apply to any company selling to EU residents but <strong>may vary for international sellers</strong> on a case-by-case basis. It is worth noting, <strong>however</strong>, that in recent cases <strong>US courts have chosen to uphold the applicable EU law.</strong></p> <p><em>So what’s the difference between returning a product on the grounds of withdrawal and returning it on the grounds of a guarantee?</em></p> <figure id="withdrawal-table" class="wp-block-table table table-bordered"><table><thead><tr><th>Withdrawal right</th><th>Legal guarantee</th></tr></thead><tbody><tr><td>Applies for 14 days after receipt of the product or signing of the contract</td><td>Applies for 24 months after receiving the product</td></tr><tr><td>You don’t need to have any reason for exercising this right — you can simply change your mind</td><td>You may only return a product on guarantee grounds because it’s faulty or otherwise unsuitable for the purposes it has been sold and purchased for</td></tr><tr><td>You may have to bear the costs of returning the product (but it must be specified)</td><td>You may not be required to bear any cost (it’s “the seller’s fault” if the product is faulty)</td></tr><tr><td>Applies with some exceptions (some of which are mentioned above)</td><td>Always applies to products, never applies to services</td></tr></tbody></table></figure> <p>EU law also mandatorily requires that sellers inform consumers of the <a href="/blog/odr-requirement-e-commerce-eu">European Online Dispute Resolution (ODR)</a> platform via <a href="https://ec.europa.eu/consumers/odr/main/index.cfm?event=main.home2.show&lng=EN">direct link</a>. The ODR, or “online dispute resolution” is a process that allows consumers based in the EU to easily file complaints (in regards to online sales) against companies also established in the EU. This means that ODR requirements can also apply to US companies that have any kind of physical presence in the EU.</p> <div class="my-4 rounded px-3 pt-3 pb-1 bg-note"> <p>Note: UK businesses and UK consumers can no longer access the ODR platform after Brexit.</p> </div> <p>Generally, privately owned websites (or similarly private social network profiles, blogs etc.) that merely have a private and personal purpose are not subject to additional regulations, however, various EU and national acts require online <strong>commercial operators</strong> to disclose certain information.</p> <p>In order to be deemed “commercial”, it is not necessary that you actually “sell” anything — a personal website may easily be considered commercial if, for instance, it generates considerable traffic an thereby creates relevant advertising revenue (e.g influencers) — however, if you do “sell” products or services, the information duties increase.</p> <p>If you sell directly to consumers (B2C), you’ll face additional information duties including but not limited to those listed <a href="https://www.iubenda.com/en/help/5720#b2c-disclosures">above</a>, as well as linking to the EU online resolution platform for consumers, listing precise delivery times, making disclosures regarding prices and applicable taxes as outlined in <a href="https://eur-lex.europa.eu/legal-content/EN/TXT/?uri=celex%3A32011L0083">Directive 83/2011/EU</a>.</p> <h3 class="wp-block-heading">Emails and Newsletters</h3> <p>An e-mail address is considered personal data. Therefore, whenever dealing with e-mail addresses, privacy law is triggered. As we have mentioned already, under most legislations you’re required to inform extensively about the processing activities, their purposes and the rights of users.</p> <p>Generally, such legislations apply to any service targeting residents of the region, which effectively means that they may apply to your business whether it’s located in the region or not. This is even more relevant if you’re using a bought email list, as in such a case you may not know the recipient’s country of residence. </p> <p>For this reason, it’s always advisable that you approach your data processing activities with the <strong>strictest applicable regulations in mind</strong>.</p> <h4 class="wp-block-heading">US law</h4> <p>Under the FTC’s <a href="https://www.ftc.gov/business-guidance/resources/can-spam-act-compliance-guide-business" target="_blank" rel="noopener">CAN-SPAM Act</a>, you do not need consent prior to adding users located in the US to your mailing list or sending them <strong>commercial messages</strong>, however, it is <strong>mandatory</strong> that you provide users with a clear means of opting out of further contact.</p> <h4 class="wp-block-heading">EU law</h4> <p>Under <strong>EU law</strong> (namely the <a href="https://www.iubenda.com/en/help/5428">GDPR</a>) it is mandatory that you obtain the informed consent of the user before subscribing them to the service. Under EU regulations, acquiring consent can be considered a two-part process that includes <strong>informing</strong> the user and <strong>obtaining verifiable consent</strong> via an affirmative action.</p> <div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">💡 You can read more about legal requirements regarding <a href="https://www.iubenda.com/en/help/5640">Newsletters and Email lists here</a>.</p> </div> <h3 class="wp-block-heading">Children</h3> <h4 class="wp-block-heading mt-4">US law</h4> <p><strong>Children’s Online Privacy Protection Act (COPPA)</strong> is a United States federal law which was put in place to better protect the personal data and rights of children under 13 years of age. Under COPPA, operators of websites or online services that are either directed to children under 13, or which have actual knowledge that they are collecting personal information from children under 13 must give notice to parents and get their verifiable consent before collecting, using, or disclosing such personal information and must keep secure the information they collect from children.</p> <p>A central requirement of this Act is having a <a href="https://www.ftc.gov/tips-advice/business-center/guidance/childrens-online-privacy-protection-rule-six-step-compliance#step2">COPPA-compliant privacy policy</a> in place. You can read more about compliance in the sections below and <a href="/blog/guide-coppa-mobile-apps">learn more about COPPA here</a>.</p> <h4 class="wp-block-heading">EU law</h4> <p>Under EU <strong>GDPR regulations</strong>, <strong>consent</strong> is one of the <a href="https://www.iubenda.com/en/help/5428">lawful bases</a> for <strong>processing the data of children</strong>. If using this basis for processing the data of children under 13, you must get verifiable consent from a parent or guardian <strong>unless</strong> the service you offer is a <strong>preventative or counseling service.</strong></p> <p><div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">? You can learn more about <a href="https://www.iubenda.com/en/help/5717">legal requirements regarding children here</a>.</p> </div></p> <hr class="wp-block-separator has-css-opacity mt-5"/> <h2 class="wp-block-heading">Other Legal Considerations</h2> <h3 class="wp-block-heading" id="tos">Setting Terms and protecting your business</h3> <p>Though not always legally required, a Terms & Conditions (T&C) document (also known as a <strong>Terms of Service, End-user license agreement</strong> or a <strong>Terms of Use agreement</strong>) is often necessary for the sake of practicality and safety. It allows you to regulate the contractual relationship between you and your users and is therefore essential for, among other things, setting the terms of use and <strong>protecting you</strong> from <strong>potential liabilities</strong>.</p> <p>The <a href="https://www.iubenda.com/en/help/53008-terms-and-conditions-template" target="_blank" rel="noopener">T&C document</a> is essentially a legally binding agreement; therefore not only is it important to have one in place, but it’s also necessary to ensure that it meets legal requirements. </p> <p>Generally, <strong>standard contract terms will apply</strong> and under the most laws, contracts used by traders <a href="https://europa.eu/youreurope/citizens/consumers/unfair-treatment/unfair-contract-terms/index_en.htm">must be fair</a>. This means that the document must be up-to-date with all applicable regulations, precise, visible and easily understandable so that users can both <strong>easily see it and agree to it</strong>. </p> <p>The “agreeing action” should be done in an unambiguous way (e.g. clicking a checkbox with a visible link to the document before being able to create an account or use the service).</p> <p>While the full content may vary based on the particulars of your business, the Terms and Conditions should at least include the following:</p> <ul class="wp-block-list"> <li><strong>Identification of the business</strong></li> <li><strong>Description the service</strong> that your site/app provides</li> <li>Information on <strong>risk allocation, liability, and disclaimers</strong></li> <li><strong>Warranty/Guarantee</strong> information (where applicable)</li> <li>The existence of a <em>withdrawal right</em> (if applicable)</li> <li><strong>Safety</strong> information, including instructions for <strong>proper use</strong> (where applicable)</li> <li><strong>Terms of delivery</strong> of product/service</li> <li><strong>Rights of use</strong> (if applicable)</li> <li><strong>Conditions of use</strong>/ purchase (eg. age requirements, location-based restrictions)</li> <li><strong>Refund policy/exchange/termination of service</strong> and related info</li> <li>Info related to <strong>methods of payment</strong></li> <li>Any additional applicable <strong>terms</strong></li> </ul> <p><div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">? You can learn more about Terms and Conditions <a href="https://www.iubenda.com/en/help/2859">here</a> and <a href="https://www.iubenda.com/en/help/19461">how to create them</a>.</p> </div></p> <hr class="wp-block-separator has-css-opacity mt-5"/> <h2 class="wp-block-heading">Third-party Requirements</h2> <p>Third-party apps and services also need to follow the law. As organizations themselves, they too can be exposed to major reputational damage, fines, and sanctions if their legal obligations are not met. For this reason, it’s often mandatory that all partners and customers that use their services meet regulatory standards.</p> <p>Generally, they require that organizations that use their services have in place a compliant privacy policy (and cooky policy if cookies are in use) that discloses relevant details about the relationship and services rendered.</p> <p class="lead text-primary txt-highlight">Third-party apps and services also need to follow the law. For this reason, it’s often mandatory that all partners and customers that use their services meet regulatory standards</p> <p>One example is <strong>Google</strong>. In order to access certain services and tools (for example, AdSense, Google Analytics, Google Play store), Google <strong>requires</strong> that you have a <strong>comprehensive and up-to-date privacy policy</strong> in place. Here’s an excerpt from the <a href="https://www.google.com/analytics/terms/us.html">Google Analytics terms of use</a>:</p> <blockquote class="wp-block-quote is-layout-flow wp-block-quote-is-layout-flow"> <p><em>“You must post a Privacy Policy and that Privacy Policy must provide notice of Your use of cookies that are used to collect traffic data”, and “You must not circumvent any privacy features (e.g, an opt-out) that are part of the Service.”</em></p> </blockquote> <p>Another example is that of <a href="https://affiliate-program.amazon.com/help/operating/agreement">Amazon</a>. Here’s an excerpt of what they had to say:</p> <blockquote class="wp-block-quote is-layout-flow wp-block-quote-is-layout-flow"> <p><em>We extended the requirement to disclose our affiliate relationship to any means where you may be leveraging Associates’ content.</em></p> </blockquote> <p>From time to time third party requirements can change in response to internal or regional regulations. It is, therefore, necessary to ensure that your policies meet the latest requirements in order to avoid potential penalties or interruption of service.</p> <p><div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">? You can read more about <strong>Google</strong>‘s requirements <a href="/blog/google-adsense-analytics-admob-privacy-policy-template">here</a>, and <strong>Amazon</strong>‘s <a href="/blog/amazon-affiliate-program-privacy-policy">here</a>.</p> </div></p> <hr class="wp-block-separator has-css-opacity mt-5"/> <h2 class="wp-block-heading" id="consequences">Consequences of non-compliance</h2> <p>The legal ramifications of non-compliance include:</p> <h3 class="wp-block-heading" id="fines">Fines</h3> <p>Non-compliance with CalOPPA or COPPA may lead to government officials bringing suit or seeking civil penalties against you. In <a href="https://www.ftc.gov/news-events/press-releases/2008/01/imbeecom-settles-ftc-charges-social-networking-site-kids-violated">one example</a>, the owners of the Imbee website were fined US$130,000 for COPPA violations of allowing children under 13 to register without parental consent.</p> <p>Similar fines can apply under other state and federal laws. Non-compliance with GDPR requirements can carry <strong>fines up to EUR 20 million (€20m)</strong> or 4% annual worldwide turnover (whichever is greater).</p> <h3 class="wp-block-heading" id="sanctions">Disciplinary measures</h3> <p>Disciplinary measures may be implemented against you if you are found to be in violation of regulations. These measures may include but are not limited to <strong>official reprimands</strong> (for first-time violations) and <strong>periodic data protection audits.</strong> The GDPR gives users the explicit right to file a complaint with a supervisory authority if they feel that any processing of their personal data was done in violation of regulations.</p> <p>So for example, if a report is made to the authority about an instance of regulatory violation, the authority may choose to perform an audit of your data processing operations. If it’s found that some processing activity was done unlawfully, not only is a fine imposed, but you may be forbidden from making further use of the <em>data subject</em> of the inquiry. This means that if the violation use was in regards to email address collection, you risk being barred from using the entire associated email list.</p> <p>Non-compliance with consumer or competition law (acts of unfair competition) may also entail fines by the competent (mostly national) authorities.</p> <h3 class="wp-block-heading" id="liability">Liability damages</h3> <p>It is a general principle of civil law, that you have to compensate any unjust damage you’ve caused to someone else, in particular by violating a legal prescription. Among other acts, both the GDPR and the CalOPPA grant individual users the right to claim <strong>compensation for any damages</strong> resulting from a violation of their rights. The same reasoning would apply to any other applicable act or law, such as the EU’s consumer protection provisions.</p> <p>Remember that liability for damages applies in all relationships: also a business partner may be entitled to compensation if you violated a legal provision. For example, selling counterfeit goods via a partner platform like Amazon might result in the company taking legal action against you alongside the customers who purchased the counterfeit goods.</p> <h3 class="wp-block-heading" id="contractual-penalties">Loss of services and contractual penalties</h3> <p>Some third-party services (<strong>including marketplaces and app stores</strong>) may make compliance with <em>specific regulations</em> a part of their terms of use; violation of their terms may lead to service termination or potentially, permanent bans.</p> <p>Here is an example from <strong>Amazon Web Services</strong> Partner Network’s <a href="https://aws.amazon.com/partners/terms-and-conditions">Terms and Conditions</a> in regards to <strong>consent</strong>:</p> <blockquote class="wp-block-quote is-layout-flow wp-block-quote-is-layout-flow"> <p><em>For any Third-Party Data you provide to AWS, <strong>you represent and warrant that you have received all necessary consents</strong> for (a) you to share the Third Party Data with AWS and its Affiliates, and (b) AWS and its Affiliates to use the Third-Party Data to contact its subject(s) to market our goods and services and the Program.</em></p> </blockquote> <h3 class="wp-block-heading">Criminal law</h3> <p>Lastly, but perhaps most significantly, where certain conditions are met, it’s possible to face consequences via criminal law. If, for instance, you wilfully breach or ignore data protection provisions for commercial purposes (e.g. you sell peoples’ personal data without telling them) you may face severe consequences. However, criminal law is largely a national issue: conditions and consequences must be checked on a case-by-case basis.</p> <hr class="wp-block-separator has-css-opacity mt-5"/> <h2 class="wp-block-heading heading-icon heading-icon--iubenda">How iubenda can help you with compliance</h2> <p>We believe in the importance of a comprehensive approach to data law compliance, for this reason, we keep track of the major legislations and build <a href="https://www.iubenda.com/en/features">solutions</a> with the strictest regulations in mind — giving you full options to customize as needed. </p> <p>This way, you can ensure that you meet your legal obligations (regardless of where your customers are located), reduce your risk of litigation and protect your customers, building trust and credibility.</p> <p class="lead text-primary txt-highlight">We keep track of the major legislations and build solutions with the strictest regulations in mind</p> <p>Here’s <strong>what you need</strong> to get started with <strong>full compliance</strong>:</p> <h3 class="wp-block-heading">Informing users about personal data with a privacy policy</h3> <p>As mentioned above, users must be informed about how you use their personal data. As such, privacy policies are legally required almost everywhere in the world. This legal document should state the ways in which your website or app collects, processes, stores, shares and protects user data, the purposes for doing so and the rights of the users in that regard.</p> <p>Our <a href="https://www.iubenda.com/en/privacy-and-cookie-policy-generator">Privacy Policy Generator</a> is <strong>affordable, available in several languages, lawyer crafted, customizable and self-updating</strong> (as it’s monitored remotely by our lawyers). It easily allows you to create a beautiful, precise privacy policy and seamlessly integrate it with your website or app. You can simply add any of several pre-created clauses at the click of a button or easily write your own custom clauses.</p> <p>The privacy policy also comes with the option to <strong>include a cookie policy</strong> (it’s necessary to include it if your website or app is using cookies). The policies are customized to your needs and remotely maintained by a legal team.</p> <div class="pt-2 pb-5"><script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" src="https://fast.wistia.com/embed/medias/25jxoqtcja.jsonp" async=""></script><script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" src="https://fast.wistia.com/assets/external/E-v1.js" async=""></script> <div class="wistia_responsive_padding" style="padding: 55.63% 0 0 0; position: relative;"> <div class="wistia_responsive_wrapper" style="height: 100%; left: 0; position: absolute; top: 0; width: 100%;"><span class="wistia_embed wistia_async_25jxoqtcja popover=true popoverAnimateThumbnail=true videoFoam=true" style="display: inline-block; height: 100%; position: relative; width: 100%;"> </span></div> </div> </div> <p><div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">? For more information on how to generate your privacy policy <a href="https://www.iubenda.com/en/help/463">click here</a></p> </div></p> <h3 class="wp-block-heading">Complying with the EU Cookie Law</h3> <p>Because using cookies means both processing user data and installing files used for tracking, it is a major point of concern when it comes to user data privacy rights. For this reason, if you operate in the EU or could potentially have EU users, you need to comply with the Cookie Law.</p> <p>There are <strong>4 parts</strong> of this:</p> <ol class="wp-block-list"> <li><strong>Cookie policy</strong>, which you can find <a href="https://www.iubenda.com/en/help/1175-generate-cookie-policy">included as an option</a> in the privacy policy generator mentioned above.</li> <li><strong>Cookie banner</strong> which you can get with the <a href="https://www.iubenda.com/en/cookie-solution">iubenda Privacy Controls and Cookie Solution</a>.</li> <li><strong>Facilitating consent</strong> — giving the user the information and option to give, refuse or withdraw consent.</li> <li><strong>Preemptively blocking</strong> <em>(prior blocking)</em> cookie-installing scripts prior to obtaining user consent.</li> </ol> <p>Our <a href="https://www.iubenda.com/en/cookie-solution">Privacy Controls and Cookie Solution</a> complies with provisions of the ePrivacy Directive (Cookie Law). It allows you to easily inform users and obtain their consent while <strong>including the option to preemptively block any scripts that install cookies prior to user consent (which is required in many EU countries)</strong>. It’s easy to run, fast and does not require heavy investments.</p> <p><strong>→ Have your questions answered live and learn more about both the Privacy and Cookie Policy Generator and the Privacy Controls and Cookie Solution by attending one of our <a href="https://iubenda.link/webinar-en-oca-demo">free English webinars</a></strong>.</p> <!--div class="pt-2 pb-5"><script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" src="https://fast.wistia.com/embed/medias/3mkytupjxz.jsonp" async=""></script><script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" src="https://fast.wistia.com/assets/external/E-v1.js" async=""></script> <div class="wistia_responsive_padding" style="padding: 60.21% 0 0 0; position: relative;"> <div class="wistia_responsive_wrapper" style="height: 100%; left: 0; position: absolute; top: 0; width: 100%;"><span class="wistia_embed wistia_async_3mkytupjxz popover=true popoverAnimateThumbnail=true videoFoam=true" style="display: inline-block; height: 100%; position: relative; width: 100%;"> </span></div> </div> </div--> <p></p><div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">? For more information on our <a href="https://www.iubenda.com/en/help/1177">Privacy Controls and Cookie Solution, click here</a>.</p> </div><p></p> <h3 class="wp-block-heading">Protecting you or your business with proper Terms and Conditions</h3> <p>Though not always legally required, terms & conditions are pragmatically required. It governs the contractual relationship between you and your users and sets the way in which your product, service or content may be used, in a legally binding way. </p> <p>It is therefore vital that this contract be precise and up-to-date with all applicable regulations. It should include the general conditions for use of your service with special attention to “limitation of liability” clauses and disclaimers.</p> <p>Our <a href="https://www.iubenda.com/en/terms-and-conditions-generator">Terms & Conditions generator</a> helps you to easily generate and manage Terms and Conditions that are professional, customizable from over 100 clauses, available in 8 languages, drafted by an international legal team and up to date with the main international legislations. </p> <p>It is powerful, precise, and capable of handling even the most complex, individual scenarios and customization needs. </p> <p>It comes with:</p> <ul class="wp-block-list"> <li>guided set-up;</li> <li>hundreds of possible personalizations;</li> <li>legislation monitoring;</li> <li>plug-and-go integrations for popular store platforms such as Shopify and WooCommerce;</li> <li>pre-defined scenarios: buildable text modules for marketplace, affiliate programs, copyright, e-commerce, <a href="https://www.iubenda.com/en/help/114218-how-to-make-a-mobile-game-beginners-guide">mobile</a>, and more.</li> </ul> <p><strong>The solution is optimized for everything from e-commerce, blogs, and apps, to complex scenarios like marketplace and, SaaS.</strong> </p> <p>Getting started is easy. Simply activate the Terms and Conditions (uses 1 Ultra license) within <a href="https://www.iubenda.com/en/dashboard">your dashboard</a> and start generating.</p> <div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">💡 For a list of the full features of the Terms and Conditions Generator, <a href="https://www.iubenda.com/en/features#terms-and-conditions">click here</a> or read the <a href="https://www.iubenda.com/en/help/19461">guide here</a>.</p> </div> <h3 class="wp-block-heading" id="conS">Managing consent and maintaining detailed records related to it</h3> <p>In order to comply with privacy laws, especially the GDPR, companies need to store proof of consent so that they can demonstrate that consent was collected. </p> <p>These records must show:</p> <ul class="wp-block-list"> <li>when consent was provided;</li> <li>who provided the consent;</li> <li>what their preferences were at the time of the collection;</li> <li>which legal or privacy notice they were presented with at the time of the consent collection;</li> <li>which consent collection form they were presented with at the time of the collection.</li> </ul> <p>Our Consent Database simplifies this process by helping you to easily store proof of consent and manage consent and privacy preferences for each of your users. It allows you to <strong>track every aspect of consent</strong> (including the legal or privacy notice and the consent form that the user was presented with at the time of consent collection) and the related preferences expressed by the user.</p> <p>To use, simply activate the Consent Database and get the API key, then install via HTTP API or JS widget and you’re done; you’ll be able to retrieve consents at any time and keep them updated.</p> <div class="my-4 rounded p-3 bg-fade"> <p class="mb-0">💡 For a list of the full features of the Consent Database <a href="https://www.iubenda.com/en/features#consent-solution">click here</a> or read the <a href="https://www.iubenda.com/en/help/6469">guide here</a>.</p> </div> <h3 class="wp-block-heading" id="gdprsuite">Register of Data Processing Activities</h3> <p>Meeting GDPR regulations can be a technical challenge to implement in practical terms. This is especially true for your register of data processing activities. In order to be compliant, you must be able to keep track of and to describe:</p> <ul class="wp-block-list"> <li>which data you collect;</li> <li>for which purposes it was collected;</li> <li>the legal basis for processing;</li> <li>data retention policy for each processing activity;</li> <li>the parties involved (both inside and outside your organization);</li> <li>security measures;</li> <li>data transfer outside of the EU, if any; and</li> <li>other related details which may apply company-wide, including data of employees.</li> </ul> <p>Our solution helps you to easily record and manage all the data processing activity within your organization so that you can easily comply with requirements and meet your legal obligations. </p> <p>It allows you to create records of processing activity: </p> <ul class="wp-block-list"> <li>add processing activities from 1700+ pre-made options;</li> <li>divide them by area (sub-divisions within which data processing activities are the same);</li> <li>assign processors and other member roles; and </li> <li>document legal bases and other GDPR-required records.</li> </ul> <p><em><strong>Please note</strong>: Even if your processing activities somehow fall outside of the situations <a href="#recordsProcessing">mentioned</a> previously in this guide, <a href="https://www.iubenda.com/en/help/5428-gdpr-guide#userrights">your information duties to users</a> (Articles 13 & 14) make it necessary for you to keep basic records relating to which data you collect, its purpose, all parties involved in its processing and the data retention period — <strong>this is mandatory for everyone</strong></em></p> <p>Additionally, even though the GDPR is a common reason to put more effort into your register of data processing activities, our tool is not exclusively made for application under the GDPR. <strong>It can also be used for all your data processing activities in general, even by companies who do not have any users/customers within the EU</strong>.</p> <p><strong>→ Have your questions answered live and learn more about both the Consent Database and Register of Data Processing Activities Solution by attending one of our <a href="https://iubenda.link/webinar-en-ipm-cs-demo">free English webinars</a></strong>.</p> <p><em><strong>Please note</strong> that from time to time, laws are amended and updated. It’s therefore important to ensure that your policies meet the latest requirements. For this reason, <strong>we use embedding and NOT copy & paste</strong>. With this method, you can rest assured that your policy is up to date and being maintained remotely by our legal team.</em></p> <h3 data-toc-skip="">See also</h3> <ul class="wp-block-list"> <li>Read more about <strong>global legislation</strong> with our <a href="https://www.iubenda.com/en/help/5428">GDPR Guide</a>, our <a href="https://www.iubenda.com/en/help/1177">ePrivacy (Cookie Law) Guide</a>, our guide to <a href="https://www.iubenda.com/en/help/5525">Cookies and EU Data Law</a> or our <a href="/blog/privacy-policy-usa-california-commercial">guide to US law</a></li> <li>Have Canadian users? <a href="https://www.iubenda.com/en/help/30300-cppa-the-new-privacy-act-proposed-by-canada" target="_blank" rel="noopener">Learn more about the CPPA – Canada’s upcoming privacy law</a>.</li> <li>Read our <strong>service-specific guides</strong> for <a href="/blog/the-need-for-privacy-policies-in-mobile-apps-an-overview/">App creators</a>, <a href="/blog/odr-requirement-e-commerce-eu/">e-commerce websites</a>, <a href="https://www.iubenda.com/en/help/5640">Emails and newsletters</a>, or our <a href="https://www.iubenda.com/en/help/5717">guide for services used by children</a></li> <li>Using <strong>Google services</strong>? Read our guides on <a href="/blog/privacy-policy-google-analytics">Google Analytics</a>, <a href="/blog/privacy-policy-google-adsense">Adsense</a>, and <a href="/blog/privacy-policy-adwords-remarketing">Ads</a></li> </ul> </div> <div class="help-tpl__still-questions-section mt-5 pt-5"> <h4 class="mb-3">Still have questions?</h4> <a href="/en/help/13053" class="btn btn-dark-gray txt-dark d-block d-lg-inline-block mb-2 mb-lg-0">Attend one of our free webinars</a> <a href="mailto:info@iubenda.com" class="btn btn-dark-gray txt-dark d-block d-lg-inline-block mb-2 mb-lg-0" data-elevio-module="2" data-elevio-style="nothing">Email us</a> <a href="#" class="btn btn-dark-gray txt-dark d-block d-lg-inline-block" data-elevio-module="9" data-elevio-style="nothing">Live chat</a> </div> </div> <!-- /.content --> </div> </div> </section> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ (function(w,d,t,u,n,s,e){w['SwiftypeObject']=n;w[n]=w[n]||function(){ (w[n].q=w[n].q||[]).push(arguments);};s=d.createElement(t); e=d.getElementsByTagName(t)[0];s.async=1;s.nonce='8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64'; s.src=u;e.parentNode.insertBefore(s,e); })(window,document,'script','//s.swiftypecdn.com/install/v2/st.js','_st'); _st('install','mvF4xAYwSHJ9YPypgTYd','2.0.0', { install: { hooks: { query_filter: function(query) { query.setFilterDataByDocumentTypeSlugAndFilterField('page', 'tags', { values: ['en'], type: "and" }); return query; } } } }); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ HelpUtils.activateToc("#toc", $("[data-toc-activator]")); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ $(document).ready(function() { /** consent solution mapping for help compliance course form **/ if ($('#help_compliance_course_form').length > 0) { _iub.cons_instructions.push(['load', { submitElement: 'help_compliance_course_submit', form: { selector: 'help_compliance_course_form', map: { subject: { email: 'email' } } }, consent: { preferences: { 'help_compliance_course_subscription': true }, legal_notices: [ { identifier: 'privacy_policy' } ] } }]); } $('.btn-aside').click(function(){ $('.doc_aside').toggleClass('show'); }); $('.doc_aside li.has_child').click(function(e){ if (e.target.nodeName === 'A') { return; } e.preventDefault(); e.stopPropagation(); $(this) .toggleClass('active'); }); $('.navbar-nav a').click(function(){ var li = $(this).closest('li'); if(!li.find('ul').length) { var parent = $('.doc_aside'); if(parent.hasClass('show')) parent.removeClass('show'); } }); $('.toc-button').click(function(){ $(this).toggleClass('clicked'); if($(this).hasClass('clicked')) $('[data-toggle=toc]').show(); else $('[data-toggle=toc]').hide(); }); exposeFideFunctions({ incorporationBetaEnabled: false, loginUrl: "/en/login?fide_user=true&for=custom_do", companyIncorporationsPath: "/en/costituzione/srl", isLoggedIn: false }); initializeFideBtns(); if ( $('#toolbox-accordion').length > 0) { var accordionConteiner = $('#toolbox-accordion'); $(accordionConteiner).find('.card p .btn').each(function buttonClickHandler() { $(this).on('click', function(e) { e.preventDefault(); var card = $(this).parents(':eq(2)'); var autoCheckOutLink = HelpUtils.createAutoCheckOutLink(card); location.href = '/pricing'+ autoCheckOutLink; }) }); } var currentAnchor = null; $('h2[id],h3[id]').hover( function(){ var el = $(this); if(currentAnchor) currentAnchor.remove(); currentAnchor = $('<a href="#'+el.attr('id')+'" class="a-anchor-inline ml-3"><i class="i-link"></i></a>').appendTo(el); }, function(){ if(currentAnchor) currentAnchor.remove(); } ); HelpUtils.activatePopovers(); HelpUtils.readAndCreateTheCheckBoxMapForCountries(); $('.button-expand').click(function(e) { var perCountryTable = $(e.target.parentElement.parentElement).clone(); var modalTitle = $('.country-table').data('title'); perCountryTable.find('.button-expand').remove(); Modal.dialog(perCountryTable[0].outerHTML, { title: modalTitle, size: 'full' }); setTimeout(function loadCheckboxesData() { HelpUtils.updateCheckBoxFromMap('.modal-dialog'); HelpUtils.activatePopovers(); }, 1); }); $('body').on('click', '.country-table form.countries label', function(e) { e.preventDefault(); }); $('body').on('change', '.country-table form.countries input', function(e) { var className = $(this).attr('class'); HelpUtils.updateCheckBoxMap(e); $('table .' + className).toggle($(this).is(':checked')); }); }).on('show.bs.modal', '.modal', function () { $('.modal-body .table th').attr('style', 'transform: translateY(0px);'); $('.modal').scroll(function() { if($('.modal .table-first-col-fixed').length > 0) { if ($('.modal').offset().top - $('.modal .table-first-col-fixed').offset().top > 0) { $('.modal .table-first-col-fixed th').css('transform', 'translateY(' + ($('.modal').offset().top - $('.modal .table-first-col-fixed').offset().top) + 'px)'); } else { $('.modal .table-first-col-fixed th').css('transform', 'translateY(0)'); } } }); }).on('hide.bs.modal','.modal', function () { HelpUtils.updateCheckBoxFromMap('.container'); }); //]]> </script> <footer class="iub-footer bg-light-gray text-sm"> <div class="container"> <div class="row line-between-columns gutter-lg"> <div class="col-md-6 col-sm-12 mt-5 mb-5"> <div class="mb-3"> <h4 class="text-default text-uppercase">Products and services</h4> <p class="text-default">Compliance for websites and apps</p> </div> <div class="row justify-content-between mb-3"> <div class="col-lg mb-4 mb-lg-0"> <ul class="list-unstyled mb-3 pl-2"> <li><a class="font-weight-bold" href="/en/privacy-and-cookie-policy-generator">Privacy and Cookie Policy Generator</a></li> <li><a class="font-weight-bold" href="/en/cookie-solution">Privacy Controls and Cookie Solution</a></li> <li><a class="font-weight-bold" href="/en/terms-and-conditions-generator">Terms and Conditions Generator</a></li> <li><a class="font-weight-bold" href="/en/consent-solution">Consent Database</a></li> <li><a class="font-weight-bold" href="/en/internal-privacy-management">Register of Data Processing Activities</a></li> <li><a class="font-weight-bold" href="/en/whistleblowing-management-tool">Whistleblowing Management Tool</a></li> <li><a class="font-weight-bold" href="/en/newsletter-opt-in-booster">Newsletter opt-in booster</a></li> <li><a class="font-weight-bold" href="https://www.iubenda.com/stats/">iubenda Stats </a></li> </ul> </div> </div> <div class="mb-3"> <ul class="list-unstyled mb-0"> <li class="list-inline-item d-block d-md-inline-block mr-md-0 mb-md-2"> <a href="/en/pricing" class="btn btn-sm btn-outline-primary d-block">Pricing</a> </li> <li class="list-inline-item d-block d-md-inline-block mr-md-0 mb-md-2"> <a href="https://www.iubenda.com/en/scan" class="btn btn-sm btn-outline-primary d-block">Free site scan</a> </li> </ul> </div> </div> <div class="col-md-6 col-sm-12 mt-5 mb-5 footer-right"> <div class="row mb-4"> <div class="col mb-4"> <h4 class="text-default text-uppercase mb-3">Company</h4> <ul class="list-unstyled mb-3 pl-2 text-xs"> <li class="mb-1"><a class="bg-gray-1 rounded px-2 py-1 text-white" href="https://www.iubenda.com/en/help/posts/1812">Work with us</a></li> <li><a href="https://www.iubenda.com/blog/">Blog</a></li> <li><a href="/en/partner-program">Get certified as a Compliance Expert</a></li> <li><a href="/en/help/15138-partner-directory">Partner directory</a></li> <li><a href="https://www.iubenda.com/en/help/149409-join-the-iubenda-affiliate-program">Earn with iubenda</a></li> </ul> <ul class="list-unstyled d-md-flex align-items-center"> <li class="mb-1 mr-4"> <a href="https://iubenda.link/capterra" target="_blank" rel="noopener"> <img border="0" data-lazy-src="https://assets.capterra.com/badge/de52ae1b9de89ae468a920af39e7ace6.png?v=2110097&p=156938" width="100" height="32" alt="Capterra rating"/> </a> </li> </ul> </div> <div class="col mb-4"> <h4 class="text-default text-uppercase mb-3">Legal</h4> <ul class="list-unstyled mb-0 pl-2 text-xs"> <li><a href="https://www.iubenda.com/privacy-policy/252372" class="iubenda-white iubenda-embed" title="Privacy Policy">Privacy Policy</a></li> <li><a href="/en/user/tos" class="iubenda-white iubenda-embed" title="Terms of Service">Terms and Conditions</a></li> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ (function (w,d) {var loader = function () {var s = d.createElement("script"), tag = d.getElementsByTagName("script")[0];s.src = "https://cdn.iubenda.com/iubenda.js";tag.parentNode.insertBefore(s,tag);};w.addEventListener ? w.addEventListener("load", loader, false) : w.attachEvent("onload", loader);})(window, document); //]]> </script> <a href="https://www.iubenda.com/dsar-form/en/5bcb8bf5-5fe3-43fe-ae11-2065200c7827" class="iubenda-white iubenda-embed" title="Privacy rights request">Privacy rights request</a> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ (function (w, d) { var loader = function () { var s = d.createElement("script"), tag = d.getElementsByTagName("script")[0]; s.src = "https://cdn.iubenda.com/iubenda.js"; tag.parentNode.insertBefore(s, tag); }; if (w.addEventListener) { w.addEventListener("load", loader, false); } else if (w.attachEvent) { w.attachEvent("onload", loader); } else { w.onload = loader; } })(window, document); //]]> </script> <li><a href="https://www.iubenda.com/whistleblowing-form/en/7d7ca782-3805-4ce2-ae0b-5b57f53162d5" class="iubenda-white iubenda-embed" title="Whistleblower Form">Whistleblower Form</a></li> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ (function (w,d) {var loader = function () {var s = d.createElement("script"), tag = d.getElementsByTagName("script")[0]; s.src="https://cdn.iubenda.com/iubenda.js"; tag.parentNode.insertBefore(s,tag);}; if(w.addEventListener){w.addEventListener("load", loader, false);}else if(w.attachEvent){w.attachEvent("onload", loader);}else{w.onload = loader;}})(window, document); //]]> </script> <li class="pb-3"><a href="https://www.iubenda.com/terms-and-conditions/19521877">Whistleblower policy</a></li> <li class="pb-3"><a href="/en/help/158">Imprint/Impressum</a></li> <li><a href='#' class='iubenda-cs-preferences-link'> <img style="width: 2rem!important" src="data:image/svg+xml;charset=UTF-8,%3csvg version='1.1' id='Layer_1' xmlns='http://www.w3.org/2000/svg' xmlns:xlink='http://www.w3.org/1999/xlink' x='0px' y='0px' viewBox='0 0 30 14' style='enable-background:new 0 0 30 14;' xml:space='preserve'%3e%3cstyle type='text/css'%3e .st0%7bfill-rule:evenodd;clip-rule:evenodd;fill:%23FFFFFF;%7d .st1%7bfill-rule:evenodd;clip-rule:evenodd;fill:%230066FF;%7d .st2%7bfill:%23FFFFFF;%7d .st3%7bfill:%230066FF;%7d %3c/style%3e%3cg%3e%3cg id='final---dec.11-2020_1_'%3e%3cg id='_x30_208-our-toggle_2_' transform='translate(-1275.000000, -200.000000)'%3e%3cg id='Final-Copy-2_2_' transform='translate(1275.000000, 200.000000)'%3e%3cpath class='st0' d='M7.4,12.8h6.8l3.1-11.6H7.4C4.2,1.2,1.6,3.8,1.6,7S4.2,12.8,7.4,12.8z'/%3e%3c/g%3e%3c/g%3e%3c/g%3e%3cg id='final---dec.11-2020'%3e%3cg id='_x30_208-our-toggle' transform='translate(-1275.000000, -200.000000)'%3e%3cg id='Final-Copy-2' transform='translate(1275.000000, 200.000000)'%3e%3cpath class='st1' d='M22.6,0H7.4c-3.9,0-7,3.1-7,7s3.1,7,7,7h15.2c3.9,0,7-3.1,7-7S26.4,0,22.6,0z M1.6,7c0-3.2,2.6-5.8,5.8-5.8 h9.9l-3.1,11.6H7.4C4.2,12.8,1.6,10.2,1.6,7z'/%3e%3cpath id='x' class='st2' d='M24.6,4c0.2,0.2,0.2,0.6,0,0.8l0,0L22.5,7l2.2,2.2c0.2,0.2,0.2,0.6,0,0.8c-0.2,0.2-0.6,0.2-0.8,0 l0,0l-2.2-2.2L19.5,10c-0.2,0.2-0.6,0.2-0.8,0c-0.2-0.2-0.2-0.6,0-0.8l0,0L20.8,7l-2.2-2.2c-0.2-0.2-0.2-0.6,0-0.8 c0.2-0.2,0.6-0.2,0.8,0l0,0l2.2,2.2L23.8,4C24,3.8,24.4,3.8,24.6,4z'/%3e%3cpath id='y' class='st3' d='M12.7,4.1c0.2,0.2,0.3,0.6,0.1,0.8l0,0L8.6,9.8C8.5,9.9,8.4,10,8.3,10c-0.2,0.1-0.5,0.1-0.7-0.1l0,0 L5.4,7.7c-0.2-0.2-0.2-0.6,0-0.8c0.2-0.2,0.6-0.2,0.8,0l0,0L8,8.6l3.8-4.5C12,3.9,12.4,3.9,12.7,4.1z'/%3e%3c/g%3e%3c/g%3e%3c/g%3e%3c/g%3e%3c/svg%3e "> Your Privacy Choices</a></li> <li class="pb-3"><a href='#' class='iubenda-cs-uspr-link'>Notice at Collection</a></li> <li><a href="https://www.iubenda.com/privacy-policy/94654098">Consent Database Privacy Notice</a></li> <li><a href="https://www.iubenda.com/privacy-policy/36700132">Privacy Controls and Cookie Solution Privacy Notice</a></li> </ul> </div> </div> <div class="row"> <div class="col-6 mb-4"> <h4 class="text-default text-uppercase mb-3">Help</h4> <ul class="list-unstyled mb-0 pl-2 text-xs"> <li><a href="/en/help">Documentation</a></li> <li><a href="https://support.iubenda.com">Feedback & support forum</a></li> <li><a href="mailto:info@iubenda.com" data-elevio-module="2" data-elevio-style="nothing">Contact support</a></li> <li><a href="https://www.iubenda.com/en/help/161162-our-cmp-support-commitment">Our CMP Support Commitment</a></li> </ul> </div> <div class="col-6 mb-4"> <h4 class="text-default text-uppercase mb-2"><label for="user_country">Country</label></h4> <div class="mb-4"> <select class="form-control custom-select" id="user_country" name="iubenda_current_user[country_code]" remote="true"> </select> </div> </div> </div> <div class="row"> <div class="col-6 mb-4 mt-3"> <div class="footer_social_buttons"> <ul class="list-unstyled d-flex align-items-center"> <li class="mr-1"> <a href="https://www.facebook.com/iubenda" target="_blank" rel="noopener" class="pr-0"> <img class="mb-4" width="32" height="32" alt="Facebook logo" data-lazy-src="/assets/site/general/facebook_logo-0a635f95d5ca9a530ec6849fdca8c313abdbaa2ef4f7ff085e7894a481e69cb4.svg" src="data:image/gif;base64,R0lGODlhAQABAIAAAP///wAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==" /> <noscript> <img class="mb-4" width="32" height="32" alt="Facebook logo" src="/assets/site/general/facebook_logo-0a635f95d5ca9a530ec6849fdca8c313abdbaa2ef4f7ff085e7894a481e69cb4.svg" /> </noscript> </a> </li> <li> <a href="https://twitter.com/iubenda" target="_blank" rel="noopener" class="pl-0"> <img class="mb-4" width="32" height="32" alt="X logo" data-lazy-src="/assets/site/general/x_logo-374a5be853d42cc934c74f37d1378ececb74abff0767a619a2749f8461f05bf9.svg" src="data:image/gif;base64,R0lGODlhAQABAIAAAP///wAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==" /> <noscript> <img class="mb-4" width="32" height="32" alt="X logo" src="/assets/site/general/x_logo-374a5be853d42cc934c74f37d1378ececb74abff0767a619a2749f8461f05bf9.svg" /> </noscript> </a> </li> </ul> </div> </div> <div class="col-6 footer-certificates"> <img height="75" alt="CMP Partner badge" class="mr-3 mb-3" data-lazy-src="/assets/site/general/cmp_badge_en-3d95a73213cca3ef66050653cc124af032a115c33f225a895c6587e7665f2d0f.svg" src="data:image/gif;base64,R0lGODlhAQABAIAAAP///wAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==" /> <noscript> <img height="75" alt="CMP Partner badge" class="mr-3 mb-3" src="/assets/site/general/cmp_badge_en-3d95a73213cca3ef66050653cc124af032a115c33f225a895c6587e7665f2d0f.svg" /> </noscript> <a href="/assets/site/general/iubenda_iso_certificate-02df3bf20f10947e36649d790bb65e06f4f8df96b0bd26c4d1b7bd1d01fb4311.pdf" target="_blank"><img height="85" alt="ISO 27001 certificate" data-lazy-src="/assets/site/general/marchio_certification_ISO_IEC_27001-b48149ce6e055a2caa00f0961394ce95d4ae4f31fbcc7957a1851c213b2f6bff.png" src="data:image/gif;base64,R0lGODlhAQABAIAAAP///wAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==" /> <noscript> <img height="85" alt="ISO 27001 certificate" src="/assets/site/general/marchio_certification_ISO_IEC_27001-b48149ce6e055a2caa00f0961394ce95d4ae4f31fbcc7957a1851c213b2f6bff.png" /> </noscript> </a> </div> </div> </div> </div> </div> <div class="language-country-selectors"></div> <hr class="p-0"> <div class="p-4 text-xs"> <div class="container"> <div class="row"> <div class="col-md-12"> <address class="d-flex flex-column d-lg-block"> <strong class="mr-2">iubenda s.r.l</strong> <span class="mr-2">Via San Raffaele, 1 - 20121 Milan (Italia)</span> <span class="mr-2">EU VAT No: IT07347120961</span> <span class="mr-2">UK VAT No: GB370904694</span> <span class="mr-2">Milan Chamber of Commerce</span> <span class="mr-2">SC: 12,795.78 Eur (fully paid up)</span> </address> </div> </div> </div> </div> </footer> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ $(document).ready(function() { $(".show-in-iframe").click(function(event) { if(!event.ctrlKey && !event.metaKey){ if (document.getElementById('iubenda-pp-popup')) { return; } showInIframe($(this).attr('href')/*,null,null,null,null,$('.container')[0],name*/); event.preventDefault(); } }); }); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ window.isUserSignedIn = false; window.TrackingUtils.init(); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ dataLayer.push({ event: "trigger_conversion", google_conversion_id: 1036022355, google_custom_params: window.google_tag_params, google_remarketing_only: true }); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ !function(e,l,v,i,o,n){e[i]||(e[i]={}),e[i].account_id=n;var g,h;g=l.createElement(v),g.type="text/javascript",g.async=1,g.src=o+n,h=l.getElementsByTagName(v)[0],h.parentNode.insertBefore(g,h);e[i].q=[];e[i].on=function(z,y){e[i].q.push([z,y])}}(window,document,"script","_elev","https://cdn.elev.io/sdk/bootloader/v4/elevio-bootloader.js?cid=","5b0d50ab36803"); window._elev.on('load', function (_elev) { var userSettings = { groups: ['Language=EN']} _elev.setUser(userSettings); _elev.setLanguage('en'); _elev.setSettings({ disablePushState: true, cspInlineScriptNonce: CSP_NONCE }); }); window._elev.on('ready', function elevReady() { var wrap = document.querySelector('#_elev_io._elevio_widget').querySelector('._1mpem'); var wrapAppendChild = wrap.appendChild.bind(wrap); wrap.appendChild = function wrapAppendChildMid(div) { var divAppendChild = div.appendChild.bind(div); div.appendChild = function divAppendChildMid(article) { if (article.tagName && article.tagName.toLowerCase() === 'article') { var articleAppendChild = article.appendChild.bind(article); article.appendChild = function articleAppendChildMid(iframe) { if (iframe.tagName && iframe.tagName.toLowerCase() === 'iframe') { iframe.setAttribute('src', '/no-content.html'); } return articleAppendChild(iframe); }; } return divAppendChild(article); }; return wrapAppendChild(div); }; }); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" src="https://cdnjs.cloudflare.com/ajax/libs/slick-carousel/1.8.1/slick.min.js" integrity="sha512-XtmMtDEcNz2j7ekrtHvOVR4iwwaD6o/FUJe6+Zq+HgcCsk3kj4uSQQR8weQ2QVj1o0Pk6PwYLohm206ZzNfubg==" crossorigin="anonymous" referrerpolicy="no-referrer"> //<![CDATA[ //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ (function($) { $('.wp-block-cb-carousel').slick(); })(jQuery); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ function PasswordVisibilityToggle(passwordInputSelector, submitBtnSelector) { this.passwordInput = document.querySelector(passwordInputSelector); this.submitBtn = document.querySelector(submitBtnSelector); console.log( this.passwordInput + ' - ' + this.submitBtn ); if (this.passwordInput && this.submitBtn) { this.alert = this.findSiblingElement(this.passwordInput, 'show-hide-pw-alert'); this.toggleBtn = this.findSiblingElement(this.passwordInput, 'show-hide-pw-btn'); if (this.toggleBtn && this.alert) { this.init(); } else { console.error('Required elements not found.'); } } } PasswordVisibilityToggle.prototype.findSiblingElement = function(startElement, className) { var sibling = startElement.parentNode.firstChild; while (sibling) { if (sibling !== startElement && sibling.nodeType === 1 && sibling.classList.contains(className)) { return sibling; } sibling = sibling.nextSibling; } return null; }; PasswordVisibilityToggle.prototype.init = function() { var self = this; this.toggleBtn.addEventListener('click', function() { self.toggleVisibility(); }); this.submitBtn.addEventListener('click', function() { self.resetPasswordInput(); }); }; PasswordVisibilityToggle.prototype.toggleVisibility = function() { if (this.passwordInput.type === 'password') { this.passwordInput.type = 'text'; } else { this.passwordInput.type = 'password'; } var isChecked = this.toggleBtn.getAttribute('aria-checked') === 'true'; this.toggleBtn.setAttribute('aria-checked', !isChecked); if (!isChecked) { this.alert.textContent = "Your password is visible"; } else { this.alert.textContent = "Your password is hidden"; } }; PasswordVisibilityToggle.prototype.resetPasswordInput = function() { this.passwordInput.type = 'password'; }; //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ var userLocationPrefs = {"locale":"en","country":"SG"}; var cdnBaseUrl = "https://cdn.iubenda.com/"; var goProModalUrl = ""; var upToProUrl = ""; var upgradeSiteUrl = ""; var dashboardUrl = "/en/dashboard"; var accountUrl = "https://www.iubenda.com/en/account" var mtToPaygConversionFormUrl = "https://www.iubenda.com/en/billing/subscriptions/mt_to_payg_conversion_form"; var moveToPaygUrl = "https://www.iubenda.com/en/billing/subscriptions/move_to_payg"; var gopro_upgrade_to_remove = "Upgrade this privacy policy to Pro to remove the limit"; var gopro_upgrade_now = "Upgrade now"; var gopro_learn_more = "Learn more"; var gopro_free_limit_reached = "Free limit reached"; var gopro_only_four_services = "Upgrade this privacy policy to Pro to add more than 4 services."; var gopro_service_pro_only = "Upgrade this privacy policy to Pro to add this service." var gopro_switch_to_pro = "Switch to Pro to enable it"; var gopro_no_custom_text = "In order to add custom text, your privacy policy has to be upgraded to Pro."; var gopro_no_style_limit = "Only Pro privacy policies allow removal of the button style and free modification."; var gopro_no_brand_limit = "If you want to remove the iubenda logo, upgrade this privacy policy to Pro."; var gopro_direct_link_limit = "If you want to directly link the privacy policy, without using the embedding code, upgrade this privacy policy to Pro."; var gopro_direct_embed_limit = "If you want to directly embed the privacy policy text, so that it's printed right on your website's page, upgrade this privacy policy to Pro. <a href='/en/help/78' target='_blank'>Display an example</a>"; var gopro_add_language = "The license of this site is valid for a single language. If you want to add an additional language, you can purchase another license for the same price as the first :)"; var gopro_add_language_payg = "The license of this site is valid for a single language as each license is applied on a per-language or per-site basis. \u003cbr/\u003e\u003cbr/\u003e \u003cspan\u003e\u0026#128204;\u003c/span\u003e To add an additional language, you'll need to activate another license. Doing this is easy! \u003cbr/\u003e\u003cbr/\u003e Simply click the \"Add language\" button and our system will split the remaining value of your current paid license to activate the new one. \u003cbr/\u003e\u003cbr/\u003e The expiration date of both licenses will then shorten accordingly as the value of the subscription is split to accommodate your active licenses."; var mt_expired_add_language = "Your Multi-license plan expired, go to your dashboard to renew or go back to Pay-per-license."; var mt_emptied_add_language = "Your Multi-license plan has no more available slots, please upgrade to a larger plan."; var mt_add_language_upgrade_now = "Upgrade now"; var buy_second_language = "Buy additional language"; var permissions_tooltip_title = "Reserved for Pro policies"; var permissions_tooltip_paragraph = "In order to add this permission to your privacy policy, you must first upgrade it to Pro."; var pro_service_tooltip_title = "Reserved for Pro policies"; var pro_service_tooltip_paragraph = "In order to add this service to your privacy policy, you must first upgrade it to Pro."; var pro_cookiepp_tooltip_title = "Reserved for Pro policies"; var pro_cookiepp_tooltip_paragraph = "In order to add a cookie policy to your privacy policy, you must first upgrade it to Pro. <a href='/en/help/1175' target='_blank'>Display an example</a>"; var hint_tooltip_title = "Hints about this service"; var fbLoginUrl = "https://www.iubenda.com/en/facebook_login"; var facebookConnectUrl = "https://www.iubenda.com/en/facebook/connect"; var legacyUpgrade = true; var package_feature_not_enabled = "Upgrade your plan"; var package_upgrade_message = "This feature is not included in your current plan. Upgrade your plan to unlock it."; var package_upgrade_cta = "Learn more"; // alerts document.addEventListener("DOMContentLoaded", function(e) { var flashAlert = sessionStorage.getItem('flash_alert_error'); if (flashAlert) { AlertMessage.show({message: flashAlert, type: 'error', timerHide: 3000}); sessionStorage.removeItem('flash_alert_error'); } }); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" type="text/plain" class="_iub_cs_activate" data-iub-purpose="2"> //<![CDATA[ (function(d, id) { var fcJS; function initFreshChat() { window.fcWidget.init({ token: "6946a656-b4d1-4304-80ca-a527ec430aa5", host: "https://wchat.freshchat.com", locale: "en", config: { hideFAQ: true, headerProperty: { hideChatButton: true, direction: "ltr" }, } }); window.fcWidget.user.setLocale('en'); } if (d.getElementById(id)) { initFreshChat(); return; } fcJS = d.createElement('script'); fcJS.id = id; fcJS.async = true; fcJS.src = 'https://wchat.freshchat.com/js/widget.js'; fcJS.nonce = '8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64' fcJS.onload = initFreshChat; d.head.appendChild(fcJS); }(document, 'freshchat-js-sdk')); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" type="text/plain" class="_iub_cs_activate" data-iub-purposes="4,5"> //<![CDATA[ !function(){"use strict";window.RudderSnippetVersion="3.0.14";var e="rudderanalytics";window[e]||(window[e]=[]) ;var rudderanalytics=window[e];if(Array.isArray(rudderanalytics)){ if(true===rudderanalytics.snippetExecuted&&window.console&&console.error){ console.error("RudderStack JavaScript SDK snippet included more than once.")}else{rudderanalytics.snippetExecuted=true, window.rudderAnalyticsBuildType="legacy";var sdkBaseUrl="https://cdn.rudderlabs.com/v3";var sdkName="rsa.min.js" ;var scriptLoadingMode="async" ;var t=["setDefaultInstanceKey","load","ready","page","track","identify","alias","group","reset","setAnonymousId","startSession","endSession","consent"] ;for(var r=0;r<t.length;r++){var n=t[r];rudderanalytics[n]=function(t){return function(){var r ;Array.isArray(window[e])?rudderanalytics.push([t].concat(Array.prototype.slice.call(arguments))):null===(r=window[e][t])||void 0===r||r.apply(window[e],arguments) }}(n)}try{new Function('return import("")'),window.rudderAnalyticsBuildType="modern"}catch(a){} var i=document.head||document.getElementsByTagName("head")[0] ;var d=document.body||document.getElementsByTagName("body")[0];window.rudderAnalyticsAddScript=function(e,t,r){ var n=document.createElement("script");n.src=e,n.setAttribute("data-loader","RS_JS_SDK"),t&&r&&n.setAttribute(t,r), "async"===scriptLoadingMode?n.async=true:"defer"===scriptLoadingMode&&(n.defer=true), i?i.insertBefore(n,i.firstChild):d.insertBefore(n,d.firstChild)},window.rudderAnalyticsMount=function(){ "undefined"==typeof globalThis&&(Object.defineProperty(Object.prototype,"__globalThis_magic__",{get:function get(){ return this},configurable:true}),__globalThis_magic__.globalThis=__globalThis_magic__, delete Object.prototype.__globalThis_magic__), window.rudderAnalyticsAddScript("".concat(sdkBaseUrl,"/").concat(window.rudderAnalyticsBuildType,"/").concat(sdkName),"data-rsa-write-key","2MV0qrGjHKJbkC2kOh1rSBRyD9k") }, "undefined"==typeof Promise||"undefined"==typeof globalThis?window.rudderAnalyticsAddScript("https://polyfill-fastly.io/v3/polyfill.min.js?version=3.111.0&features=Symbol%2CPromise&callback=rudderAnalyticsMount"):window.rudderAnalyticsMount() ;var loadOptions={ onLoaded: function(rudderanalytics) { rudderanalytics.setAnonymousId("05e93691-6fcf-401e-96b5-ef00d6a82f33"); window._radderAnalyticsQueue = window._radderAnalyticsQueue || []; window._radderAnalyticsQueue.forEach(func => { if (typeof func === 'function') { func("eyJncm93dGhib29rIjp7ImF0dHJpYnV0ZXMiOnsiY291bnRyeSI6IlNHIiwi\naWQiOiIiLCJ0cmFja2luZ19pZCI6IiIsImFub255bW91c19pZCI6IjA1ZTkz\nNjkxLTZmY2YtNDAxZS05NmI1LWVmMDBkNmE4MmYzMyIsInNlc3Npb25faWQi\nOiIyZGMzMzZkMTQyZWRhZDM1YWU5Y2ZlMThhNDZmMjQ2YSIsImlwIjoiOC4y\nMjIuMjA4LjE0NiJ9LCJmb3JjZWRGZWF0dXJlcyI6eyJwcmljaW5nXzIwMjMi\nOnRydWV9fX0=\n"); } }); }, storage: { entries: { userTraits: { type: "localStorage" } } }, setCookieDomain: "www.iubenda.com" } ;rudderanalytics.load("2MV0qrGjHKJbkC2kOh1rSBRyD9k","https://rudder.iubenda.com", loadOptions)}} }(); rudderanalytics.page('', '', {}); rudderanalytics.load("2MV0qrGjHKJbkC2kOh1rSBRyD9k","https://rudder.iubenda.com", { onLoaded: function(rudderanalytics) { console.log('launchpad'); Appcues.loadLaunchpad("#appcues-launchpad", { position: "left", header: "Hey there! 👋 Check out what's new!", }); } }); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" id="profitwell-js" data-pw-auth="e2b7961d01fb6d8f17a24d0b5f505c3d" type="text/plain" class="_iub_cs_activate" data-iub-purposes="2"> //<![CDATA[ (function(i,s,o,g,r,a,m){i[o]=i[o]||function(){(i[o].q=i[o].q||[]).push(arguments)}; a=s.createElement(g);m=s.getElementsByTagName(g)[0];a.async=1;a.src=r+'?auth='+ s.getElementById(o+'-js').getAttribute('data-pw-auth');m.parentNode.insertBefore(a,m); })(window,document,'profitwell','script','https://public.profitwell.com/js/profitwell.js'); profitwell('start', {}); //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64"> //<![CDATA[ window.GROWTHBOOK_API_HOST="https://cdn.growthbook.io"; window.GROWTHBOOK_CLIENT_KEY="sdk-nX2zVV0ub3f5ljqf"; //]]> </script> <script nonce="8ab8d9f360d401ae1e9dc7d07327a35fd4089f5bf40119ffd066307bf1763e64" src="/assets/builds/growthbook-5cfc0ab4c04b3cdc6f4e.js" type="text/plain" class="_iub_cs_activate" data-iub-purposes="4"> //<![CDATA[ //]]> </script> </body> </html>