SlideShare ist ein Scribd-Unternehmen logo
1 von 19
Downloaden Sie, um offline zu lesen
Terms of Use and Privacy
Policy
Best Practices
©2015 Royse Law Firm, P.C.
Terms of Use
• Enforceable Terms of Use (TOU)
• Acceptance; Eligibility ; Modifications/Changes
• Enforceable Material Terms
• Clear and Conspicuous Language
• International Issues
• Website Services
• E-commerce Website
• Social Media Platform
Enforceability - Acceptance
• Four Types of Electronic Adhesion Contracts (Berkson
v. Gogo LLC and GoGo Inc.)
• Browsewrap agreements -- provide that the user gives assent to the terms
merely by using the site.
• Clickwrap agreements -- require a user to affirmatively click a box on the website
acknowledging awareness of and agreement to the terms of the agreement before
he or she is allowed to proceed with further use of the website.
• Scrollwrap agreements -- require a user to physically scroll through an internet
agreement and click on a separate "I agree" button in order to agree to the terms
and conditions of the host website.
• Sign-in-wrap agreements -- do not require the user to click on a box showing
acceptance of the "terms of use," but instead includes a statement like “By clicking
'NEXT' I agree to the terms of use and privacy policy."
Enforcement – Eligibility
• Legally competent to accept the TOU
• 18 years or older
• Mentally competent
• Include representations and warranties by user and
right to terminate/no obligation:
• (e.g. If for any reason, we, in our sole discretion, believe you do not
meet the eligibility requirements set forth above, we reserve the right,
without provision of any notice to you to terminate your account and
the Terms. If you do not meet the eligibility requirements as set forth
above, we have no obligations to you under the Terms.)
Enforcement –
Modifications/Changes
• Blanket statement granting right to unilaterally change terms
with or without notice -- generally unenforceable
• Provide prominent notice on the website for any changes
• In addition, Provide notice for material changes by sending
notice to email address designated by user
• Include effective date (e.g. “Last Updated: September 15,
2015)
Clear and Conspicuous
Material Terms
• Court in Berkson : TOU must clearly draw attention to material
terms that would alter what a reasonable consumer would
understand to be default rights in an online transaction
• Arbitration Clause
• Include clear language at beginning of TOU putting user on notice:
• (e.g., THESE TERMS CONTAIN AN AGREEMENT TO ARBITRATE IN
SECTION 10 BELOW, WHICH WILL REQUIRE YOU TO SUBMIT
CLAIMS YOU HAVE AGAINST THE COMPANY TO BINDING AND
FINAL ARBITRATION
• Governing Law/Venue
• Restrictions on Class Actions
• Payment Terms (auto-renewal)
Website Services
• E-Commerce Website
• Payment Terms (subscription, auto-renewal)
• Disclaimers/Liability
• Limits of Application
• Social Media Platform
• User Generated Content (UGC)
• License to use UGC (avoid assignment/ownership language)
• Prohibited Content (offensive, violent, spam, infringing content, minors)
• DMCA Provision — Must register with the Copyright Office to utilize
Best Practices
• Clickwrap or Scrollwrap
• Account Registration
• Clear and Conspicuous Material Terms
• Clear Notification of Modifications/Changes to
Material Terms
Take Away
• Analyze the client’s business, services,
potential liabilities, what needs to be protected
• Review samples of TOU with similar services
• Customize
Privacy Policy
• Federal Trade Commission (FTC)
• Necessary to avoid unfair and deceptive trade practices
• California Online Privacy Act of 2003 (CalOPPA)
• First law in the nation with a broad requirement for privacy
policies
California Online Privacy Act
• Applies to operators of commercial websites and online
services that collect personally identifiable information
about Californians
• Must conspicuously post a privacy policy
• Must comply with the terms of the policy
“Online Service”
• Websites
• Ecommerce websites
• Mobile apps (iOS, Android, Windows)
• Desktop apps (Windows, Mac OS X)
• Facebook apps
• SaaS apps
• Or any other platform where users would share their personal
information.
“Personally Identifiable Information”
• “Personally identifiable information” (PII) broadly defined:
• information about a consumer collected online and maintained by
the operator in an accessible form, including any of the following:
• first and last name;
• home or other physical address, including street name and name of a city
or town;
• e-mail address;
• A telephone number;
• social security number;
• any other identifier that permits the physical or online contacting of a
specific individual; and
• information concerning a user that the online service collects online from
the user and maintains in personally identifiable form in combination with
an identifier described in this subdivision.
Privacy Policy Requirements
• At the very least, you must include (Cal. Bus. & Prof. Code §§ 22575-22579):
• Categories of PII collected through the site or service about users or
visitors,
• Categories of third parties with whom the operator may share the
personally identifiable information,
• Description of process for a user or visitor to review and request changes
to his or her personally identifiable information collected through the site or
service, if the operator maintains such a process,
• Description of process for notifying users and visitors of material changes
to the privacy policy, and
• Effective date of the privacy policy.
Special Requirements
• Children’s Online Privacy Act (COPPA)
• PII from children under the age of 13, COPPA regulations may apply
• California Civil Code § 1798.83 “Shine the Light” Law
• California residents permitted to request information regarding the disclosure of their
PII by online service providers to third parties for the third parties’ direct marketing
purposes.
• Do Not Track (DNT) (AB 270 of 2013) “Tracking Transparency Law”
• The law requires two new disclosures in the privacy policy of an operator of a web site
or online service subject to CalOPPA:
• (1) the operator’s response to a browser DNT signal or to “other mechanisms,” --
Required when website collects PII over time and across third-party websites
• can be satisfied by linking to program or policy that explains a users choice
about online tracking – www.allaboutdnt.com
• (2) the possible presence of other parties conducting online tracking
Best Practices
Making Your Privacy Practices Public, Kamala D. Harris, California
Department of Justice
• Readability
• Use plain, straightforward language. Avoid technical or legal jargon.
Use a format that makes the policy readable, such as a layered format
• Online Tracking/Do Not Track
• Make it easy for a consumer to find the section in which you describe your policy
regarding online tracking by labeling it, for example: “How We Respond to Do Not
Track Signals,” “Online Tracking” or “California Do Not Track Disclosures.”
• Describe how you respond to a browser’s Do Not Track signal or to other such
mechanisms. This is more transparent than linking to a “choice program.”
• State whether other parties are or may be collecting personally identifiable information
of consumers while they are on your site or service.
Best Practices Cont.
• Data Use and Sharing
• Explain your uses of personally identifiable information beyond what is necessary for
fulfilling a customer transaction or for the basic functionality of an online service.
• Whenever possible, provide a link to the privacy policies of third parties with whom
you share personally identifiable information.
• Individual Choice and Access
• Describe the choices a consumer has regarding the collection, use and sharing of his
or her personal information.
• Accountability
• Tell your customers whom they can contact with questions or concerns about your
privacy policies and practices.
Best Practices Cont.
• In Addition…
• Incorporate by reference into the TOU to reduce risk/liability without over
complicating Privacy Policy
• Obtain clear consent from user (“By submitting PII through the website you
agree to the terms of this Privacy Policy and you expressly consent to the
collection, use and disclosure of your PII in accordance with this Privacy
Policy”)
• Implement reasonable security measures and explain such measures in the
Privacy Policy
Take Away
• Analyze and fully understand the data collection and
retention activities of the client
• Carefully craft the privacy policy to adequately, clearly, and
conspicuously explain privacy practices
• Implement reasonable data security measures (encryption
at the very least)
• Provide opt-in consent when changing the way personal
data is collected and/or used
• Most important of all — adhere to the privacy policy

Weitere ähnliche Inhalte

Was ist angesagt?

A Modern Look at Contractors v. Employees
A Modern Look at Contractors v. EmployeesA Modern Look at Contractors v. Employees
A Modern Look at Contractors v. EmployeesDiana Maier
 
Privacy Best Practices for Lawyers: What Every Law Practice Needs to Know Abo...
Privacy Best Practices for Lawyers: What Every Law Practice Needs to Know Abo...Privacy Best Practices for Lawyers: What Every Law Practice Needs to Know Abo...
Privacy Best Practices for Lawyers: What Every Law Practice Needs to Know Abo...Diana Maier
 
Foreign Corrupt Practices Act Compliance (Series: Corporate & Regulatory Comp...
Foreign Corrupt Practices Act Compliance (Series: Corporate & Regulatory Comp...Foreign Corrupt Practices Act Compliance (Series: Corporate & Regulatory Comp...
Foreign Corrupt Practices Act Compliance (Series: Corporate & Regulatory Comp...Financial Poise
 
Terminating Employees in California
Terminating Employees in CaliforniaTerminating Employees in California
Terminating Employees in CaliforniaDiana Maier
 
Corporate Compliance Overview
Corporate Compliance OverviewCorporate Compliance Overview
Corporate Compliance OverviewSam Carr
 
The Business Legal Checkup Preventive Advice for the Legal Health of Your Bus...
The Business Legal Checkup Preventive Advice for the Legal Health of Your Bus...The Business Legal Checkup Preventive Advice for the Legal Health of Your Bus...
The Business Legal Checkup Preventive Advice for the Legal Health of Your Bus...Igor Ellyn, QC, CS, FCIArb.
 
JOBS Act Rulemaking Comments on SEC File Number S7-11-13 Dated March 24, 2014
JOBS Act Rulemaking Comments on SEC File Number S7-11-13 Dated March 24, 2014JOBS Act Rulemaking Comments on SEC File Number S7-11-13 Dated March 24, 2014
JOBS Act Rulemaking Comments on SEC File Number S7-11-13 Dated March 24, 2014Jason Coombs
 
Annual corporate compliance training (1)
Annual corporate compliance training (1)Annual corporate compliance training (1)
Annual corporate compliance training (1)Bobby Dillard
 
Managing International Risks + Corporate Investigations
Managing International Risks + Corporate InvestigationsManaging International Risks + Corporate Investigations
Managing International Risks + Corporate InvestigationsKegler Brown Hill + Ritter
 
Recent developments tim connelly
Recent developments tim connellyRecent developments tim connelly
Recent developments tim connellyjpeabody
 
Is P.L. 86-272 Unconstitutional
Is P.L. 86-272 UnconstitutionalIs P.L. 86-272 Unconstitutional
Is P.L. 86-272 UnconstitutionalBrian Strahle
 
Risk Containment: Tailoring Contract Provisions with Third Parties to Minimiz...
Risk Containment: Tailoring Contract Provisions with Third Parties to Minimiz...Risk Containment: Tailoring Contract Provisions with Third Parties to Minimiz...
Risk Containment: Tailoring Contract Provisions with Third Parties to Minimiz...Ethisphere
 
Ethics & Compliance - An Organizational Outlook
Ethics & Compliance - An Organizational OutlookEthics & Compliance - An Organizational Outlook
Ethics & Compliance - An Organizational OutlookM Ravish Malgi
 
Unfair and Deceptive Acts & Practices Seminar - Chicago Automobile Trade Asso...
Unfair and Deceptive Acts & Practices Seminar - Chicago Automobile Trade Asso...Unfair and Deceptive Acts & Practices Seminar - Chicago Automobile Trade Asso...
Unfair and Deceptive Acts & Practices Seminar - Chicago Automobile Trade Asso...Jim Radogna
 
ICOs, Cryptocurrency, and Tokenization: Legal Issues
ICOs, Cryptocurrency, and Tokenization: Legal Issues ICOs, Cryptocurrency, and Tokenization: Legal Issues
ICOs, Cryptocurrency, and Tokenization: Legal Issues Roger Royse
 
Request to Rescind MSBA Ethics Op. 1992-19
Request to Rescind MSBA Ethics Op. 1992-19Request to Rescind MSBA Ethics Op. 1992-19
Request to Rescind MSBA Ethics Op. 1992-19Carolyn Elefant
 

Was ist angesagt? (20)

A Modern Look at Contractors v. Employees
A Modern Look at Contractors v. EmployeesA Modern Look at Contractors v. Employees
A Modern Look at Contractors v. Employees
 
Privacy Best Practices for Lawyers: What Every Law Practice Needs to Know Abo...
Privacy Best Practices for Lawyers: What Every Law Practice Needs to Know Abo...Privacy Best Practices for Lawyers: What Every Law Practice Needs to Know Abo...
Privacy Best Practices for Lawyers: What Every Law Practice Needs to Know Abo...
 
Foreign Corrupt Practices Act Compliance (Series: Corporate & Regulatory Comp...
Foreign Corrupt Practices Act Compliance (Series: Corporate & Regulatory Comp...Foreign Corrupt Practices Act Compliance (Series: Corporate & Regulatory Comp...
Foreign Corrupt Practices Act Compliance (Series: Corporate & Regulatory Comp...
 
Terminating Employees in California
Terminating Employees in CaliforniaTerminating Employees in California
Terminating Employees in California
 
Shareholders’ Remedies in Canada 2012
Shareholders’ Remedies in Canada 2012Shareholders’ Remedies in Canada 2012
Shareholders’ Remedies in Canada 2012
 
Corporate Compliance Overview
Corporate Compliance OverviewCorporate Compliance Overview
Corporate Compliance Overview
 
The Business Legal Checkup Preventive Advice for the Legal Health of Your Bus...
The Business Legal Checkup Preventive Advice for the Legal Health of Your Bus...The Business Legal Checkup Preventive Advice for the Legal Health of Your Bus...
The Business Legal Checkup Preventive Advice for the Legal Health of Your Bus...
 
Business Law Update
Business Law UpdateBusiness Law Update
Business Law Update
 
JOBS Act Rulemaking Comments on SEC File Number S7-11-13 Dated March 24, 2014
JOBS Act Rulemaking Comments on SEC File Number S7-11-13 Dated March 24, 2014JOBS Act Rulemaking Comments on SEC File Number S7-11-13 Dated March 24, 2014
JOBS Act Rulemaking Comments on SEC File Number S7-11-13 Dated March 24, 2014
 
Annual corporate compliance training (1)
Annual corporate compliance training (1)Annual corporate compliance training (1)
Annual corporate compliance training (1)
 
Managing International Risks + Corporate Investigations
Managing International Risks + Corporate InvestigationsManaging International Risks + Corporate Investigations
Managing International Risks + Corporate Investigations
 
Recent developments tim connelly
Recent developments tim connellyRecent developments tim connelly
Recent developments tim connelly
 
Is P.L. 86-272 Unconstitutional
Is P.L. 86-272 UnconstitutionalIs P.L. 86-272 Unconstitutional
Is P.L. 86-272 Unconstitutional
 
LEGALLY SPEAKING XXXIII
LEGALLY SPEAKING XXXIIILEGALLY SPEAKING XXXIII
LEGALLY SPEAKING XXXIII
 
Risk Containment: Tailoring Contract Provisions with Third Parties to Minimiz...
Risk Containment: Tailoring Contract Provisions with Third Parties to Minimiz...Risk Containment: Tailoring Contract Provisions with Third Parties to Minimiz...
Risk Containment: Tailoring Contract Provisions with Third Parties to Minimiz...
 
Ethics & Compliance - An Organizational Outlook
Ethics & Compliance - An Organizational OutlookEthics & Compliance - An Organizational Outlook
Ethics & Compliance - An Organizational Outlook
 
CEO Roundtable on Local and State Tax Laws
CEO Roundtable on Local and State Tax LawsCEO Roundtable on Local and State Tax Laws
CEO Roundtable on Local and State Tax Laws
 
Unfair and Deceptive Acts & Practices Seminar - Chicago Automobile Trade Asso...
Unfair and Deceptive Acts & Practices Seminar - Chicago Automobile Trade Asso...Unfair and Deceptive Acts & Practices Seminar - Chicago Automobile Trade Asso...
Unfair and Deceptive Acts & Practices Seminar - Chicago Automobile Trade Asso...
 
ICOs, Cryptocurrency, and Tokenization: Legal Issues
ICOs, Cryptocurrency, and Tokenization: Legal Issues ICOs, Cryptocurrency, and Tokenization: Legal Issues
ICOs, Cryptocurrency, and Tokenization: Legal Issues
 
Request to Rescind MSBA Ethics Op. 1992-19
Request to Rescind MSBA Ethics Op. 1992-19Request to Rescind MSBA Ethics Op. 1992-19
Request to Rescind MSBA Ethics Op. 1992-19
 

Ähnlich wie Terms of Use and Privacy Policy Best Practices

My Lawyer Made Me Do It Daniel Green Affilicon Israel June 2009
My Lawyer Made Me Do It   Daniel Green   Affilicon Israel   June 2009My Lawyer Made Me Do It   Daniel Green   Affilicon Israel   June 2009
My Lawyer Made Me Do It Daniel Green Affilicon Israel June 2009affilicon
 
Terms of Service and Privacy Policies
Terms of Service and Privacy PoliciesTerms of Service and Privacy Policies
Terms of Service and Privacy PoliciesJeffrey Glazer
 
James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...
James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...
James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...CanadaHelps / MyCharityConnects
 
How to Write a Privacy Policy For Your Blog?
How to Write a Privacy Policy For Your Blog?How to Write a Privacy Policy For Your Blog?
How to Write a Privacy Policy For Your Blog?Saikrishna Tipparapu
 
Master Track B: "Exploring 'Identity' from a Consumer & Agency/Brand Perspect...
Master Track B: "Exploring 'Identity' from a Consumer & Agency/Brand Perspect...Master Track B: "Exploring 'Identity' from a Consumer & Agency/Brand Perspect...
Master Track B: "Exploring 'Identity' from a Consumer & Agency/Brand Perspect...iMedia Connection
 
10 07-14 hosting con europe 2014 presentation unannotated
10 07-14 hosting con europe 2014 presentation unannotated10 07-14 hosting con europe 2014 presentation unannotated
10 07-14 hosting con europe 2014 presentation unannotatedwdsnead
 
Preparing for Compliance: Canada's Anti-Spam Law (CASL)
Preparing for Compliance: Canada's Anti-Spam Law (CASL)Preparing for Compliance: Canada's Anti-Spam Law (CASL)
Preparing for Compliance: Canada's Anti-Spam Law (CASL)Act-On Software
 
California Consumer Privacy Act (CCPA): Countdown to Compliance
California Consumer Privacy Act (CCPA): Countdown to ComplianceCalifornia Consumer Privacy Act (CCPA): Countdown to Compliance
California Consumer Privacy Act (CCPA): Countdown to ComplianceTinuiti
 
California's New Privacy Policy Guidelines
California's New Privacy Policy GuidelinesCalifornia's New Privacy Policy Guidelines
California's New Privacy Policy GuidelinesBrian Heidelberger
 
Session B: Handout 1
Session B: Handout 1Session B: Handout 1
Session B: Handout 1feitwincities
 
Social Media and Ethics Rules: Dos and Don'ts
Social Media and Ethics Rules: Dos and Don'tsSocial Media and Ethics Rules: Dos and Don'ts
Social Media and Ethics Rules: Dos and Don'tsD. Todd Smith
 
The CCPA vs CalOPPA
The CCPA vs CalOPPAThe CCPA vs CalOPPA
The CCPA vs CalOPPAtermsfeed
 
What the Winn-Dixie Case & Other Important Rulings Mean for the Future of Web...
What the Winn-Dixie Case & Other Important Rulings Mean for the Future of Web...What the Winn-Dixie Case & Other Important Rulings Mean for the Future of Web...
What the Winn-Dixie Case & Other Important Rulings Mean for the Future of Web...3Play Media
 
Implementing and Auditing GDPR Series (9 of 10)
Implementing and Auditing GDPR Series (9 of 10) Implementing and Auditing GDPR Series (9 of 10)
Implementing and Auditing GDPR Series (9 of 10) Jim Kaplan CIA CFE
 
NAFCU - Keeping Your Marketing Pitches Compliant
NAFCU - Keeping Your Marketing Pitches CompliantNAFCU - Keeping Your Marketing Pitches Compliant
NAFCU - Keeping Your Marketing Pitches CompliantE Andrew Keeney
 
Criteo CCPA project
Criteo CCPA project Criteo CCPA project
Criteo CCPA project Gerry L. H.
 
IAB Online Content Regulation
IAB Online Content RegulationIAB Online Content Regulation
IAB Online Content RegulationEndcode_org
 
2013-01-10 Attorney Advertising Update
2013-01-10 Attorney Advertising Update2013-01-10 Attorney Advertising Update
2013-01-10 Attorney Advertising UpdateD. Todd Smith
 
CAN SPAM Legislation: Is your organization ready?
CAN SPAM Legislation: Is your organization ready?CAN SPAM Legislation: Is your organization ready?
CAN SPAM Legislation: Is your organization ready?Violeta Cohen
 

Ähnlich wie Terms of Use and Privacy Policy Best Practices (20)

My Lawyer Made Me Do It Daniel Green Affilicon Israel June 2009
My Lawyer Made Me Do It   Daniel Green   Affilicon Israel   June 2009My Lawyer Made Me Do It   Daniel Green   Affilicon Israel   June 2009
My Lawyer Made Me Do It Daniel Green Affilicon Israel June 2009
 
Terms of Service and Privacy Policies
Terms of Service and Privacy PoliciesTerms of Service and Privacy Policies
Terms of Service and Privacy Policies
 
James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...
James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...
James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...
 
How to Write a Privacy Policy For Your Blog?
How to Write a Privacy Policy For Your Blog?How to Write a Privacy Policy For Your Blog?
How to Write a Privacy Policy For Your Blog?
 
Master Track B: "Exploring 'Identity' from a Consumer & Agency/Brand Perspect...
Master Track B: "Exploring 'Identity' from a Consumer & Agency/Brand Perspect...Master Track B: "Exploring 'Identity' from a Consumer & Agency/Brand Perspect...
Master Track B: "Exploring 'Identity' from a Consumer & Agency/Brand Perspect...
 
10 07-14 hosting con europe 2014 presentation unannotated
10 07-14 hosting con europe 2014 presentation unannotated10 07-14 hosting con europe 2014 presentation unannotated
10 07-14 hosting con europe 2014 presentation unannotated
 
Preparing for Compliance: Canada's Anti-Spam Law (CASL)
Preparing for Compliance: Canada's Anti-Spam Law (CASL)Preparing for Compliance: Canada's Anti-Spam Law (CASL)
Preparing for Compliance: Canada's Anti-Spam Law (CASL)
 
California Consumer Privacy Act (CCPA): Countdown to Compliance
California Consumer Privacy Act (CCPA): Countdown to ComplianceCalifornia Consumer Privacy Act (CCPA): Countdown to Compliance
California Consumer Privacy Act (CCPA): Countdown to Compliance
 
California's New Privacy Policy Guidelines
California's New Privacy Policy GuidelinesCalifornia's New Privacy Policy Guidelines
California's New Privacy Policy Guidelines
 
Session B: Handout 1
Session B: Handout 1Session B: Handout 1
Session B: Handout 1
 
Social Media and Ethics Rules: Dos and Don'ts
Social Media and Ethics Rules: Dos and Don'tsSocial Media and Ethics Rules: Dos and Don'ts
Social Media and Ethics Rules: Dos and Don'ts
 
The CCPA vs CalOPPA
The CCPA vs CalOPPAThe CCPA vs CalOPPA
The CCPA vs CalOPPA
 
What the Winn-Dixie Case & Other Important Rulings Mean for the Future of Web...
What the Winn-Dixie Case & Other Important Rulings Mean for the Future of Web...What the Winn-Dixie Case & Other Important Rulings Mean for the Future of Web...
What the Winn-Dixie Case & Other Important Rulings Mean for the Future of Web...
 
Implementing and Auditing GDPR Series (9 of 10)
Implementing and Auditing GDPR Series (9 of 10) Implementing and Auditing GDPR Series (9 of 10)
Implementing and Auditing GDPR Series (9 of 10)
 
NAFCU - Keeping Your Marketing Pitches Compliant
NAFCU - Keeping Your Marketing Pitches CompliantNAFCU - Keeping Your Marketing Pitches Compliant
NAFCU - Keeping Your Marketing Pitches Compliant
 
Criteo CCPA project
Criteo CCPA project Criteo CCPA project
Criteo CCPA project
 
IAB Online Content Regulation
IAB Online Content RegulationIAB Online Content Regulation
IAB Online Content Regulation
 
2013-01-10 Attorney Advertising Update
2013-01-10 Attorney Advertising Update2013-01-10 Attorney Advertising Update
2013-01-10 Attorney Advertising Update
 
Casl 2012 Final
Casl 2012 FinalCasl 2012 Final
Casl 2012 Final
 
CAN SPAM Legislation: Is your organization ready?
CAN SPAM Legislation: Is your organization ready?CAN SPAM Legislation: Is your organization ready?
CAN SPAM Legislation: Is your organization ready?
 

Mehr von Roger Royse

Startup Law ACBA.pptx
Startup Law ACBA.pptxStartup Law ACBA.pptx
Startup Law ACBA.pptxRoger Royse
 
Startup Legal Imperatives - Royse.pptx
Startup Legal Imperatives - Royse.pptxStartup Legal Imperatives - Royse.pptx
Startup Legal Imperatives - Royse.pptxRoger Royse
 
2020-02-11 Tax Issues for Startups final.ppt
2020-02-11 Tax Issues for Startups final.ppt2020-02-11 Tax Issues for Startups final.ppt
2020-02-11 Tax Issues for Startups final.pptRoger Royse
 
Funding 101 02022022.pptx
Funding 101 02022022.pptxFunding 101 02022022.pptx
Funding 101 02022022.pptxRoger Royse
 
Royse - Tax Planning for Technology Transactions.pptx
Royse - Tax Planning for Technology Transactions.pptxRoyse - Tax Planning for Technology Transactions.pptx
Royse - Tax Planning for Technology Transactions.pptxRoger Royse
 
Idea to ipo funding 101 royse - august 11 2020
Idea to ipo funding 101   royse - august 11 2020Idea to ipo funding 101   royse - august 11 2020
Idea to ipo funding 101 royse - august 11 2020Roger Royse
 
Idea to ipo venture capital startup royse - may 10 2020
Idea to ipo venture capital startup   royse - may 10 2020Idea to ipo venture capital startup   royse - may 10 2020
Idea to ipo venture capital startup royse - may 10 2020Roger Royse
 
Legal overview star camp royse - may 2020 4839-7571-5260-1
Legal overview star camp   royse - may 2020 4839-7571-5260-1Legal overview star camp   royse - may 2020 4839-7571-5260-1
Legal overview star camp royse - may 2020 4839-7571-5260-1Roger Royse
 
M&A Tax for 2019
M&A Tax for 2019M&A Tax for 2019
M&A Tax for 2019Roger Royse
 
199 a deduction (00186520xc0cb4)
199 a deduction (00186520xc0cb4)199 a deduction (00186520xc0cb4)
199 a deduction (00186520xc0cb4)Roger Royse
 
Crowdfunding crypto - ic os march 12 2018
Crowdfunding   crypto - ic os march 12 2018Crowdfunding   crypto - ic os march 12 2018
Crowdfunding crypto - ic os march 12 2018Roger Royse
 
Federal Tax reform in 2017: Trump, Ryan and Hatch
Federal Tax reform in 2017: Trump, Ryan and HatchFederal Tax reform in 2017: Trump, Ryan and Hatch
Federal Tax reform in 2017: Trump, Ryan and HatchRoger Royse
 
Federal Fiduciary Income Tax Workshop
Federal Fiduciary Income Tax WorkshopFederal Fiduciary Income Tax Workshop
Federal Fiduciary Income Tax WorkshopRoger Royse
 
Top 10 Legal Mistakes Startups & Entrepreneurs Make
Top 10 Legal Mistakes Startups & Entrepreneurs MakeTop 10 Legal Mistakes Startups & Entrepreneurs Make
Top 10 Legal Mistakes Startups & Entrepreneurs MakeRoger Royse
 
SAFEs and LLCs issue re: Contingent Allocations
SAFEs and LLCs issue re: Contingent AllocationsSAFEs and LLCs issue re: Contingent Allocations
SAFEs and LLCs issue re: Contingent AllocationsRoger Royse
 
The Future of Farming: Ag Subcommittee Testimony
The Future of Farming: Ag Subcommittee TestimonyThe Future of Farming: Ag Subcommittee Testimony
The Future of Farming: Ag Subcommittee TestimonyRoger Royse
 
The Future of Farming: Technological Innovations, Opportunities, and Challeng...
The Future of Farming: Technological Innovations, Opportunities, and Challeng...The Future of Farming: Technological Innovations, Opportunities, and Challeng...
The Future of Farming: Technological Innovations, Opportunities, and Challeng...Roger Royse
 
Current Tax Reform Proposals (2017)
Current Tax Reform Proposals (2017)Current Tax Reform Proposals (2017)
Current Tax Reform Proposals (2017)Roger Royse
 
Code Sec.304 Related Party Stock Sales
Code Sec.304 Related Party Stock SalesCode Sec.304 Related Party Stock Sales
Code Sec.304 Related Party Stock SalesRoger Royse
 
IC-DISC for the Agriculture Industry
IC-DISC for the Agriculture Industry IC-DISC for the Agriculture Industry
IC-DISC for the Agriculture Industry Roger Royse
 

Mehr von Roger Royse (20)

Startup Law ACBA.pptx
Startup Law ACBA.pptxStartup Law ACBA.pptx
Startup Law ACBA.pptx
 
Startup Legal Imperatives - Royse.pptx
Startup Legal Imperatives - Royse.pptxStartup Legal Imperatives - Royse.pptx
Startup Legal Imperatives - Royse.pptx
 
2020-02-11 Tax Issues for Startups final.ppt
2020-02-11 Tax Issues for Startups final.ppt2020-02-11 Tax Issues for Startups final.ppt
2020-02-11 Tax Issues for Startups final.ppt
 
Funding 101 02022022.pptx
Funding 101 02022022.pptxFunding 101 02022022.pptx
Funding 101 02022022.pptx
 
Royse - Tax Planning for Technology Transactions.pptx
Royse - Tax Planning for Technology Transactions.pptxRoyse - Tax Planning for Technology Transactions.pptx
Royse - Tax Planning for Technology Transactions.pptx
 
Idea to ipo funding 101 royse - august 11 2020
Idea to ipo funding 101   royse - august 11 2020Idea to ipo funding 101   royse - august 11 2020
Idea to ipo funding 101 royse - august 11 2020
 
Idea to ipo venture capital startup royse - may 10 2020
Idea to ipo venture capital startup   royse - may 10 2020Idea to ipo venture capital startup   royse - may 10 2020
Idea to ipo venture capital startup royse - may 10 2020
 
Legal overview star camp royse - may 2020 4839-7571-5260-1
Legal overview star camp   royse - may 2020 4839-7571-5260-1Legal overview star camp   royse - may 2020 4839-7571-5260-1
Legal overview star camp royse - may 2020 4839-7571-5260-1
 
M&A Tax for 2019
M&A Tax for 2019M&A Tax for 2019
M&A Tax for 2019
 
199 a deduction (00186520xc0cb4)
199 a deduction (00186520xc0cb4)199 a deduction (00186520xc0cb4)
199 a deduction (00186520xc0cb4)
 
Crowdfunding crypto - ic os march 12 2018
Crowdfunding   crypto - ic os march 12 2018Crowdfunding   crypto - ic os march 12 2018
Crowdfunding crypto - ic os march 12 2018
 
Federal Tax reform in 2017: Trump, Ryan and Hatch
Federal Tax reform in 2017: Trump, Ryan and HatchFederal Tax reform in 2017: Trump, Ryan and Hatch
Federal Tax reform in 2017: Trump, Ryan and Hatch
 
Federal Fiduciary Income Tax Workshop
Federal Fiduciary Income Tax WorkshopFederal Fiduciary Income Tax Workshop
Federal Fiduciary Income Tax Workshop
 
Top 10 Legal Mistakes Startups & Entrepreneurs Make
Top 10 Legal Mistakes Startups & Entrepreneurs MakeTop 10 Legal Mistakes Startups & Entrepreneurs Make
Top 10 Legal Mistakes Startups & Entrepreneurs Make
 
SAFEs and LLCs issue re: Contingent Allocations
SAFEs and LLCs issue re: Contingent AllocationsSAFEs and LLCs issue re: Contingent Allocations
SAFEs and LLCs issue re: Contingent Allocations
 
The Future of Farming: Ag Subcommittee Testimony
The Future of Farming: Ag Subcommittee TestimonyThe Future of Farming: Ag Subcommittee Testimony
The Future of Farming: Ag Subcommittee Testimony
 
The Future of Farming: Technological Innovations, Opportunities, and Challeng...
The Future of Farming: Technological Innovations, Opportunities, and Challeng...The Future of Farming: Technological Innovations, Opportunities, and Challeng...
The Future of Farming: Technological Innovations, Opportunities, and Challeng...
 
Current Tax Reform Proposals (2017)
Current Tax Reform Proposals (2017)Current Tax Reform Proposals (2017)
Current Tax Reform Proposals (2017)
 
Code Sec.304 Related Party Stock Sales
Code Sec.304 Related Party Stock SalesCode Sec.304 Related Party Stock Sales
Code Sec.304 Related Party Stock Sales
 
IC-DISC for the Agriculture Industry
IC-DISC for the Agriculture Industry IC-DISC for the Agriculture Industry
IC-DISC for the Agriculture Industry
 

Kürzlich hochgeladen

如何办理(USF文凭证书)美国旧金山大学毕业证学位证书
如何办理(USF文凭证书)美国旧金山大学毕业证学位证书如何办理(USF文凭证书)美国旧金山大学毕业证学位证书
如何办理(USF文凭证书)美国旧金山大学毕业证学位证书Fs Las
 
一比一原版西澳大学毕业证学位证书
 一比一原版西澳大学毕业证学位证书 一比一原版西澳大学毕业证学位证书
一比一原版西澳大学毕业证学位证书SS A
 
如何办理(Lincoln文凭证书)林肯大学毕业证学位证书
如何办理(Lincoln文凭证书)林肯大学毕业证学位证书如何办理(Lincoln文凭证书)林肯大学毕业证学位证书
如何办理(Lincoln文凭证书)林肯大学毕业证学位证书Fs Las
 
Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881
Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881
Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881mayurchatre90
 
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptxMunicipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptxSHIVAMGUPTA671167
 
一比一原版牛津布鲁克斯大学毕业证学位证书
一比一原版牛津布鲁克斯大学毕业证学位证书一比一原版牛津布鲁克斯大学毕业证学位证书
一比一原版牛津布鲁克斯大学毕业证学位证书E LSS
 
COPYRIGHTS - PPT 01.12.2023 part- 2.pptx
COPYRIGHTS - PPT 01.12.2023 part- 2.pptxCOPYRIGHTS - PPT 01.12.2023 part- 2.pptx
COPYRIGHTS - PPT 01.12.2023 part- 2.pptxRRR Chambers
 
Divorce Procedure in India (Info) (1).pdf
Divorce Procedure in India (Info) (1).pdfDivorce Procedure in India (Info) (1).pdf
Divorce Procedure in India (Info) (1).pdfdigitalnikesh24
 
Transferable and Non-Transferable Property.pptx
Transferable and Non-Transferable Property.pptxTransferable and Non-Transferable Property.pptx
Transferable and Non-Transferable Property.pptx2020000445musaib
 
IBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptx
IBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptxIBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptx
IBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptxRRR Chambers
 
CAFC Chronicles: Costly Tales of Claim Construction Fails
CAFC Chronicles: Costly Tales of Claim Construction FailsCAFC Chronicles: Costly Tales of Claim Construction Fails
CAFC Chronicles: Costly Tales of Claim Construction FailsAurora Consulting
 
一比一原版利兹大学毕业证学位证书
一比一原版利兹大学毕业证学位证书一比一原版利兹大学毕业证学位证书
一比一原版利兹大学毕业证学位证书E LSS
 
如何办理(MSU文凭证书)密歇根州立大学毕业证学位证书
 如何办理(MSU文凭证书)密歇根州立大学毕业证学位证书 如何办理(MSU文凭证书)密歇根州立大学毕业证学位证书
如何办理(MSU文凭证书)密歇根州立大学毕业证学位证书Sir Lt
 
BPA GROUP 7 - DARIO VS. MISON REPORTING.pdf
BPA GROUP 7 - DARIO VS. MISON REPORTING.pdfBPA GROUP 7 - DARIO VS. MISON REPORTING.pdf
BPA GROUP 7 - DARIO VS. MISON REPORTING.pdflaysamaeguardiano
 
Indemnity Guarantee Section 124 125 and 126
Indemnity Guarantee Section 124 125 and 126Indemnity Guarantee Section 124 125 and 126
Indemnity Guarantee Section 124 125 and 126Oishi8
 
CALL ON ➥8923113531 🔝Call Girls Singar Nagar Lucknow best sexual service
CALL ON ➥8923113531 🔝Call Girls Singar Nagar Lucknow best sexual serviceCALL ON ➥8923113531 🔝Call Girls Singar Nagar Lucknow best sexual service
CALL ON ➥8923113531 🔝Call Girls Singar Nagar Lucknow best sexual serviceanilsa9823
 

Kürzlich hochgeladen (20)

如何办理(USF文凭证书)美国旧金山大学毕业证学位证书
如何办理(USF文凭证书)美国旧金山大学毕业证学位证书如何办理(USF文凭证书)美国旧金山大学毕业证学位证书
如何办理(USF文凭证书)美国旧金山大学毕业证学位证书
 
Russian Call Girls Rohini Sector 6 💓 Delhi 9999965857 @Sabina Modi VVIP MODEL...
Russian Call Girls Rohini Sector 6 💓 Delhi 9999965857 @Sabina Modi VVIP MODEL...Russian Call Girls Rohini Sector 6 💓 Delhi 9999965857 @Sabina Modi VVIP MODEL...
Russian Call Girls Rohini Sector 6 💓 Delhi 9999965857 @Sabina Modi VVIP MODEL...
 
一比一原版西澳大学毕业证学位证书
 一比一原版西澳大学毕业证学位证书 一比一原版西澳大学毕业证学位证书
一比一原版西澳大学毕业证学位证书
 
如何办理(Lincoln文凭证书)林肯大学毕业证学位证书
如何办理(Lincoln文凭证书)林肯大学毕业证学位证书如何办理(Lincoln文凭证书)林肯大学毕业证学位证书
如何办理(Lincoln文凭证书)林肯大学毕业证学位证书
 
Old Income Tax Regime Vs New Income Tax Regime
Old  Income Tax Regime Vs  New Income Tax   RegimeOld  Income Tax Regime Vs  New Income Tax   Regime
Old Income Tax Regime Vs New Income Tax Regime
 
Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881
Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881
Negotiable Instruments Act 1881.UNDERSTAND THE LAW OF 1881
 
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptxMunicipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
Municipal-Council-Ratlam-vs-Vardi-Chand-A-Landmark-Writ-Case.pptx
 
Russian Call Girls Rohini Sector 7 💓 Delhi 9999965857 @Sabina Modi VVIP MODEL...
Russian Call Girls Rohini Sector 7 💓 Delhi 9999965857 @Sabina Modi VVIP MODEL...Russian Call Girls Rohini Sector 7 💓 Delhi 9999965857 @Sabina Modi VVIP MODEL...
Russian Call Girls Rohini Sector 7 💓 Delhi 9999965857 @Sabina Modi VVIP MODEL...
 
一比一原版牛津布鲁克斯大学毕业证学位证书
一比一原版牛津布鲁克斯大学毕业证学位证书一比一原版牛津布鲁克斯大学毕业证学位证书
一比一原版牛津布鲁克斯大学毕业证学位证书
 
COPYRIGHTS - PPT 01.12.2023 part- 2.pptx
COPYRIGHTS - PPT 01.12.2023 part- 2.pptxCOPYRIGHTS - PPT 01.12.2023 part- 2.pptx
COPYRIGHTS - PPT 01.12.2023 part- 2.pptx
 
Divorce Procedure in India (Info) (1).pdf
Divorce Procedure in India (Info) (1).pdfDivorce Procedure in India (Info) (1).pdf
Divorce Procedure in India (Info) (1).pdf
 
Transferable and Non-Transferable Property.pptx
Transferable and Non-Transferable Property.pptxTransferable and Non-Transferable Property.pptx
Transferable and Non-Transferable Property.pptx
 
Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...
Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...
Sensual Moments: +91 9999965857 Independent Call Girls Vasundhara Delhi {{ Mo...
 
IBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptx
IBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptxIBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptx
IBC (Insolvency and Bankruptcy Code 2016)-IOD - PPT.pptx
 
CAFC Chronicles: Costly Tales of Claim Construction Fails
CAFC Chronicles: Costly Tales of Claim Construction FailsCAFC Chronicles: Costly Tales of Claim Construction Fails
CAFC Chronicles: Costly Tales of Claim Construction Fails
 
一比一原版利兹大学毕业证学位证书
一比一原版利兹大学毕业证学位证书一比一原版利兹大学毕业证学位证书
一比一原版利兹大学毕业证学位证书
 
如何办理(MSU文凭证书)密歇根州立大学毕业证学位证书
 如何办理(MSU文凭证书)密歇根州立大学毕业证学位证书 如何办理(MSU文凭证书)密歇根州立大学毕业证学位证书
如何办理(MSU文凭证书)密歇根州立大学毕业证学位证书
 
BPA GROUP 7 - DARIO VS. MISON REPORTING.pdf
BPA GROUP 7 - DARIO VS. MISON REPORTING.pdfBPA GROUP 7 - DARIO VS. MISON REPORTING.pdf
BPA GROUP 7 - DARIO VS. MISON REPORTING.pdf
 
Indemnity Guarantee Section 124 125 and 126
Indemnity Guarantee Section 124 125 and 126Indemnity Guarantee Section 124 125 and 126
Indemnity Guarantee Section 124 125 and 126
 
CALL ON ➥8923113531 🔝Call Girls Singar Nagar Lucknow best sexual service
CALL ON ➥8923113531 🔝Call Girls Singar Nagar Lucknow best sexual serviceCALL ON ➥8923113531 🔝Call Girls Singar Nagar Lucknow best sexual service
CALL ON ➥8923113531 🔝Call Girls Singar Nagar Lucknow best sexual service
 

Terms of Use and Privacy Policy Best Practices

  • 1. Terms of Use and Privacy Policy Best Practices ©2015 Royse Law Firm, P.C.
  • 2. Terms of Use • Enforceable Terms of Use (TOU) • Acceptance; Eligibility ; Modifications/Changes • Enforceable Material Terms • Clear and Conspicuous Language • International Issues • Website Services • E-commerce Website • Social Media Platform
  • 3. Enforceability - Acceptance • Four Types of Electronic Adhesion Contracts (Berkson v. Gogo LLC and GoGo Inc.) • Browsewrap agreements -- provide that the user gives assent to the terms merely by using the site. • Clickwrap agreements -- require a user to affirmatively click a box on the website acknowledging awareness of and agreement to the terms of the agreement before he or she is allowed to proceed with further use of the website. • Scrollwrap agreements -- require a user to physically scroll through an internet agreement and click on a separate "I agree" button in order to agree to the terms and conditions of the host website. • Sign-in-wrap agreements -- do not require the user to click on a box showing acceptance of the "terms of use," but instead includes a statement like “By clicking 'NEXT' I agree to the terms of use and privacy policy."
  • 4. Enforcement – Eligibility • Legally competent to accept the TOU • 18 years or older • Mentally competent • Include representations and warranties by user and right to terminate/no obligation: • (e.g. If for any reason, we, in our sole discretion, believe you do not meet the eligibility requirements set forth above, we reserve the right, without provision of any notice to you to terminate your account and the Terms. If you do not meet the eligibility requirements as set forth above, we have no obligations to you under the Terms.)
  • 5. Enforcement – Modifications/Changes • Blanket statement granting right to unilaterally change terms with or without notice -- generally unenforceable • Provide prominent notice on the website for any changes • In addition, Provide notice for material changes by sending notice to email address designated by user • Include effective date (e.g. “Last Updated: September 15, 2015)
  • 6. Clear and Conspicuous Material Terms • Court in Berkson : TOU must clearly draw attention to material terms that would alter what a reasonable consumer would understand to be default rights in an online transaction • Arbitration Clause • Include clear language at beginning of TOU putting user on notice: • (e.g., THESE TERMS CONTAIN AN AGREEMENT TO ARBITRATE IN SECTION 10 BELOW, WHICH WILL REQUIRE YOU TO SUBMIT CLAIMS YOU HAVE AGAINST THE COMPANY TO BINDING AND FINAL ARBITRATION • Governing Law/Venue • Restrictions on Class Actions • Payment Terms (auto-renewal)
  • 7. Website Services • E-Commerce Website • Payment Terms (subscription, auto-renewal) • Disclaimers/Liability • Limits of Application • Social Media Platform • User Generated Content (UGC) • License to use UGC (avoid assignment/ownership language) • Prohibited Content (offensive, violent, spam, infringing content, minors) • DMCA Provision — Must register with the Copyright Office to utilize
  • 8. Best Practices • Clickwrap or Scrollwrap • Account Registration • Clear and Conspicuous Material Terms • Clear Notification of Modifications/Changes to Material Terms
  • 9. Take Away • Analyze the client’s business, services, potential liabilities, what needs to be protected • Review samples of TOU with similar services • Customize
  • 10. Privacy Policy • Federal Trade Commission (FTC) • Necessary to avoid unfair and deceptive trade practices • California Online Privacy Act of 2003 (CalOPPA) • First law in the nation with a broad requirement for privacy policies
  • 11. California Online Privacy Act • Applies to operators of commercial websites and online services that collect personally identifiable information about Californians • Must conspicuously post a privacy policy • Must comply with the terms of the policy
  • 12. “Online Service” • Websites • Ecommerce websites • Mobile apps (iOS, Android, Windows) • Desktop apps (Windows, Mac OS X) • Facebook apps • SaaS apps • Or any other platform where users would share their personal information.
  • 13. “Personally Identifiable Information” • “Personally identifiable information” (PII) broadly defined: • information about a consumer collected online and maintained by the operator in an accessible form, including any of the following: • first and last name; • home or other physical address, including street name and name of a city or town; • e-mail address; • A telephone number; • social security number; • any other identifier that permits the physical or online contacting of a specific individual; and • information concerning a user that the online service collects online from the user and maintains in personally identifiable form in combination with an identifier described in this subdivision.
  • 14. Privacy Policy Requirements • At the very least, you must include (Cal. Bus. & Prof. Code §§ 22575-22579): • Categories of PII collected through the site or service about users or visitors, • Categories of third parties with whom the operator may share the personally identifiable information, • Description of process for a user or visitor to review and request changes to his or her personally identifiable information collected through the site or service, if the operator maintains such a process, • Description of process for notifying users and visitors of material changes to the privacy policy, and • Effective date of the privacy policy.
  • 15. Special Requirements • Children’s Online Privacy Act (COPPA) • PII from children under the age of 13, COPPA regulations may apply • California Civil Code § 1798.83 “Shine the Light” Law • California residents permitted to request information regarding the disclosure of their PII by online service providers to third parties for the third parties’ direct marketing purposes. • Do Not Track (DNT) (AB 270 of 2013) “Tracking Transparency Law” • The law requires two new disclosures in the privacy policy of an operator of a web site or online service subject to CalOPPA: • (1) the operator’s response to a browser DNT signal or to “other mechanisms,” -- Required when website collects PII over time and across third-party websites • can be satisfied by linking to program or policy that explains a users choice about online tracking – www.allaboutdnt.com • (2) the possible presence of other parties conducting online tracking
  • 16. Best Practices Making Your Privacy Practices Public, Kamala D. Harris, California Department of Justice • Readability • Use plain, straightforward language. Avoid technical or legal jargon. Use a format that makes the policy readable, such as a layered format • Online Tracking/Do Not Track • Make it easy for a consumer to find the section in which you describe your policy regarding online tracking by labeling it, for example: “How We Respond to Do Not Track Signals,” “Online Tracking” or “California Do Not Track Disclosures.” • Describe how you respond to a browser’s Do Not Track signal or to other such mechanisms. This is more transparent than linking to a “choice program.” • State whether other parties are or may be collecting personally identifiable information of consumers while they are on your site or service.
  • 17. Best Practices Cont. • Data Use and Sharing • Explain your uses of personally identifiable information beyond what is necessary for fulfilling a customer transaction or for the basic functionality of an online service. • Whenever possible, provide a link to the privacy policies of third parties with whom you share personally identifiable information. • Individual Choice and Access • Describe the choices a consumer has regarding the collection, use and sharing of his or her personal information. • Accountability • Tell your customers whom they can contact with questions or concerns about your privacy policies and practices.
  • 18. Best Practices Cont. • In Addition… • Incorporate by reference into the TOU to reduce risk/liability without over complicating Privacy Policy • Obtain clear consent from user (“By submitting PII through the website you agree to the terms of this Privacy Policy and you expressly consent to the collection, use and disclosure of your PII in accordance with this Privacy Policy”) • Implement reasonable security measures and explain such measures in the Privacy Policy
  • 19. Take Away • Analyze and fully understand the data collection and retention activities of the client • Carefully craft the privacy policy to adequately, clearly, and conspicuously explain privacy practices • Implement reasonable data security measures (encryption at the very least) • Provide opt-in consent when changing the way personal data is collected and/or used • Most important of all — adhere to the privacy policy