导言

Syntrio has provided eLearning content and anonymous hotline services/products to its customers for over twenty years. This Privacy Policy covers all products/services offered by Syntrio and its divisions. Any reference to “Syntrio” represents Syntrio and its divisions.

This Policy relates to Personal Information (i.e., information that identifies a specific individual) and related data that Syntrio, Inc. (“Syntrio”) collects or otherwise receives, through its website, directly from customers, and through other means. It does not include Syntrio Human Resources information.

The Federal Trade Commission has jurisdiction over Syntrio’s compliance with the EU-U.S. Data Privacy Framework (EU-U.S. DPF) and the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF).

Notice

Syntrio collects and otherwise receives the following types of Personal Information and related data:

  • Customer Service: Syntrio receives directly from business customers Personal Information related to their employees and third parties through its learning management system (LMS) and online courses. This data may include: name, email, employee number, department, function, and other non-sensitive Personally Identifiable Information (PII) pertaining to an employee’s demographic characteristics. In addition, Syntrio records certain education information such as employee course completion, course bookmark, course quiz score, course review, and other data that enables the customer to understand their employees’ performance and to help Syntrio improve its course quality.
  • Syntrio receives and processes anonymous hotline reports. The information contained on an anonymous hotline report may contain PII. Anonymous hotline report information can contain name, email, employee information, and complainant details regarding the incident being reported.
  • Customers may directly input PII, including Sensitive PII, into the Case Management System at their own discretion. Syntrio does not collect this information on behalf of the customer. Syntrio staff may access this information for technical maintenance purposes only. This staff has signed confidentiality agreements with respect to protection and non-disclosure of this information.
  • Marketing: Syntrio subscribes to various services that provide individuals’ names, titles, business email addresses, and other contact information of prospective and current customers for marketing purposes. Syntrio gathers customer and prospect names, telephone numbers, email addresses, and related contact information at trade shows and other events. Syntrio gathers the above contact information from visitors to our website when these individuals provide this data to us directly.

Syntrio complies with the EU-U.S. Data Privacy Framework (EU-U.S. DPF), the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF) as set forth by the U.S. Department of Commerce. Syntrio has certified to the U.S. Department of Commerce that it adheres to the EU-U.S. Data Privacy Framework Principles (EU-U.S. DPF Principles) with regard to the processing of personal data received from the European Union in reliance on the EU-U.S. DPF and from the United Kingdom (and Gibraltar) in reliance on the UK Extension to the EU-U.S. DPF. Syntrio has certified to the U.S. Department of Commerce that it adheres to the Swiss-U.S. Data Privacy Framework Principles (Swiss-U.S. DPF Principles) with regard to the processing of personal data received from Switzerland in reliance on the Swiss-U.S. DPF. If there is any conflict between the terms in this privacy policy and the EU-U.S. DPF Principles and/or the Swiss-U.S. DPF Principles, the Principles shall govern. To learn more about the Data Privacy Framework (DPF) program, and to view our certification, please visit https://www.dataprivacyframework.gov/.

An individual has the possibility, under certain conditions, to invoke binding arbitration for complaints regarding the EU-U.S. Data Privacy Framework (EU-U.S. DPF), the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF) compliance not resolved by any of the other mechanisms. The following link provides additional information regarding binding arbitration:

https://www.dataprivacyframework.gov/s/article/ANNEX-I-introduction-dpf?tabset-35584=2

Onward Transfers of Data

Syntrio provides Personal Information to the following types of third parties for the identified purposes to:

A. Business partners, serving as sub-processors, to assist us in delivering our products and services to customers. This data is not accessible by the third party under contract.

In transferring Personal Information to these parties as sub-processors, we:

      • Only provide data for limited and specific purposes related to delivering our products and services or other Company operations;
      • Ascertain that the sub-processor’s policies maintain a commensurate level of compliance regarding this data.
      • Take reasonable steps to ensure the sub-processor effectively processes this data in a manner consistent with our duties under the Principles;
      • Require the sub-processor to notify us if it makes a determination that it can no longer meet obligation commensurate with the Principles; upon such notice, we take reasonable steps to stop and remediate unauthorized processing;
      • Will provide a summary or a representative copy of relevant privacy provisions of our contract with that agent to the U.S. Department of Commerce upon request.

B. Business partners for co-marketing purposes (where we market to their customers and they market to our customers).

In transferring Personal Information to these parties as data controllers, we seek to:

      • Only transfer data for limited and specified purpose;
      • Determine that the organization is obligated to provide at least the same level of privacy protection as is required of Syntrio;
      • Take reasonable steps to ensure the organization effectively processes Personal Information in a manner consistent with Syntrio’s data privacy duties;
      • Expect the organization to notify us if it makes a determination that it can no longer meet its data protection obligation; upon notice, take reasonable steps to stop and remediate unauthorized processing;
      • Provide a summary or a representative copy of relevant privacy provisions of our contract with that organization or our third-party partners’ policies to the U.S. Department of Commerce upon request.

Syntrio does not provide its third-party Processors with personal information. However, Syntrio remains liable under the Data Privacy Frameworks if Syntrio’s third-party Processor onward transfer recipients process relevant Personal Data in a manner inconsistent with the Data Privacy Frameworks’ Principles, unless Syntrio proves that it is not responsible for the event giving rise to the damage.

Choice

Individuals from whom Syntrio collects and for whom it maintains Personal Information may limit use and disclosure of this Personal Information through the following:

  • To be disclosed to a third party, other than as an agent, or
  • To be used for a purpose that is materially different from the purpose(s) for which it was originally collected or subsequently authorized by the individuals.

Syntrio provides opt-out mechanisms in related communications that allows individuals to remove themselves from future or unrelated communications. Individuals can always contact us directly to exercise their choice regarding these communications. Specifically, we provide an opt-out mechanism where we intend to share an email address with a third-party for a purpose other than that for which the Personal Information was collected.

Note that Syntrio must process certain Personal Information to provide its products and services to its customers. For example, Syntrio may need to provide product/service update information to fulfill the terms of its service. In such situations, no opt-out mechanism is available, other than cancelling the product or service.

For Sensitive Personal Information: If Syntrio collects Sensitive Personal Information, such as personal information specifying medical or health conditions, racial or ethnic origin, political opinions, religious or philosophical beliefs, trade union membership or information specifying the sex life of the individual, we will provide an opt-in mechanism before using it or sharing it with third parties if such use would be for a purpose other than what it was intended for when initially collected.

Hotline Services

Related to the company’s hotline services, Syntrio collects information from clients’ employees and other related parties to report ethics and compliance violations. Information can be submitted to Syntrio via web form, facsimile, mail, email, text message, and telephonically. Syntrio may collect information from users automatically when they contact us, which may include the name of the domain and host from which the users access the Internet; the Internet protocol (IP) address of their computer; the type of browser and software operating system being used; web log data, including the date and time of access to our website; the Internet address of the website from which the user linked to our site; and the phone number which the user called from.

For most communications with Syntrio regarding its hotline services, we do not require PII. There are opportunities where the user will be given the option to provide PII. The information that may be provided by the user may include name, email address, telephone number, and address. Depending on the request and other circumstances, other information may also be collected. It is the user’s discretion and determination whether to provide such information.

Syntrio may disclose aggregated data and statistics in order to describe the use of our services to our prospective and existing clients, partners, and other third parties, and for other lawful purposes. Syntrio may disclose part or all of a user’s PII when Syntrio believes, in good faith, that the law requires such disclosure. Additionally, Syntrio is required to disclose PII in response to lawful requests by public authorities, including to meet national security or law enforcement requirements.

In most cases, Syntrio does not require a user to provide PII to use our services. By choosing to provide PII, the user agrees to the terms of this Privacy Policy.

Syntrio does not share any specific user information outside of Syntrio.

Anonymous Website Data

Syntrio uses tracking technologies on its website to provide our visitors with certain features, to better understand how visitors use our website, and to advertise to visitors, sometimes through relationships with third parties, such as Google or Yahoo. Our website visitors are able to control certain tracking technologies through their own browsers they use to visit our website.

External Links

Syntrio’s website may provide links to other organizations’ websites. Syntrio is not responsible for these organizations’ privacy practices or their website content

安全

Syntrio takes reasonable and appropriate measures to protect Personal Information that it creates, maintains, uses, or disseminates from loss, misuse, and unauthorized access, disclosure, alteration, and destruction, taking into due account the risks involved in the processing and the nature of the personal data.

Data Integrity and Purpose Limitation

Data Processing

Personal Information is limited to information that is relevant for the purposes of processing.

Syntrio strives not to process personal information in a way that is incompatible with the purposes for which it has been collected or subsequently authorized by the individual. To the extent necessary for those purposes, Syntrio takes reasonable steps to ensure that Personal Information is reliable for its intended use, accurate, complete, and current. Syntrio adheres to the Principles for as long as it retains such information.

Data Retention

Syntrio retains Personal Information in a form identifying or making identifiable the individual only for as long as it serves the purpose of processing. Syntrio takes reasonable and appropriate measures in complying with this provision.

Syntrio seeks to maintain the accuracy, completeness, and relevance of Personal Information it maintains. It provides individuals subject to this data with an opportunity to review their Personal Information, upon request, to ensure that it is accurate, complete, current, timely, and reliable for its intended use. The Company will work with these individuals to ensure Personal Information meets these objectives.

Access

Syntrio provides individuals with Personal Information that the Company maintains with an opportunity to review their Personal Information, upon request, to ensure that it is accurate, complete, current, timely, and reliable for its intended use, and make corrections, as warranted. In certain instances, the Company may charge a fee for this service, provided that the fee is not excessive.

Individuals also can raise any complaints regarding the Company’s data privacy practices as follows. The Company will respond within a reasonable time to any request or complaint, not to exceed 45 days. Individuals can contact the following regarding any questions or complaints regarding their Personal Information: · https://syntrio.com/success-center/

In compliance with the EU-U.S. DPF, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF, Syntrio commits to resolve DPF Principles-related complaints about our collection and use of your personal information. EU, UK, and Swiss individuals with inquiries or complaints regarding our handling of personal data received in reliance on the EU-U.S. DPF, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF should first contact Syntrio at: https://syntrio.com/success-center/

Policy Changes

Syntrio may change this policy to remain consistent with governing law and other good practices of data privacy protection. When changes are made to this Policy, the company will communicate these changes to all employees, update it on the Company’s website and maintain a copy of the previous privacy policies. The Company will also notify customers of any material changes to this policy to allow them to make any choices of how we will use their Personal Information going forward.

Recourse, Enforcement, and Liability

In compliance with the EU-U.S. DPF, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF, Syntrio commits to refer unresolved complaints concerning our handling of personal data received in reliance on the EU-U.S. DPF, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF to Judicial Arbitration and Mediation Services, Inc., an alternative dispute resolution provider based in the United States. If you do not receive timely acknowledgment of your DPF Principles-related complaint from us, or if we have not addressed your DPF Principles-related complaint to your satisfaction, please visit www.jamsadr.com for more information or to file a complaint. The services of Judicial Arbitration and Mediation Services, Inc. are provided at no cost to you.

Syntrio may be required to disclose Personal Information in response to a lawful request by public authorities, including to meet national security or law enforcement requirements.

Syntrio has further committed to refer unresolved privacy complaints to an independent dispute resolution mechanism provided above.

If you do not receive timely acknowledgment of your complaint, or if your complaint is not satisfactorily addressed, please visit the independent dispute resolution service provide listed above for more information and to file a complaint.

Self-Certification

Syntrio will assess its adherence to its privacy policies annually. This assessment will include the following:

  • A review of Syntrio privacy policies for ongoing conformance with applicable law.
  • Review of the Personal Data that Syntrio collects and means of collecting this data.
  • Inclusion of mechanisms, and related communications, so that individuals can review their Personal Data, correct it, ask questions, or file a complaint.
  • Training for Syntrio employees, based on their degree of involvement with Personal Data.

Business Transfer

If Syntrio should undergo a business transfer, such as a merger, acquisition, divestiture, or other such action, that will likely lead to Personal Information being transferred to a new entity, the Company will provide a notification on our website of any change in ownership or uses of this Personal Information, as well as any choices related parties may have regarding this Personal Information.

Syntrio Inc. complies with the EU-U.S. DPF, the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. DPF as set forth by the U.S. Department of Commerce regarding the collection, use, and retention of personal information transferred from the European Union, the United Kingdom (and Gibraltar), and Switzerland to the United States. Syntrio Inc. has certified to the U.S. Department of Commerce that it adheres to these Data Privacy Framework Principles. If there is any conflict between the terms in this privacy policy and these Data Privacy Framework Principles, the Data Privacy Framework Principles shall govern. To learn more about the Data Privacy Framework program, and to view our certification, please visit https://www.dataprivacyframework.gov/s/

This Privacy Policy supersedes a prior Privacy Policy dated May 2021. You can contact Syntrio to learn more about updates included in this Privacy Policy.

4.所有权

4.1 您应拥有以提交给 Alyne 服务的形式提交的 "您的数据 "的所有权利、所有权和利益。您是唯一的控制者,并负责维护您的数据的准确性。在终止本条款之前,如果需要,您应负责提取您的数据。

4.2 根据本条款,并仅在向您提供Alyne服务所必需的范围内,您授予Alyne全球性、有期限的许可,以访问、使用、处理、复制、传输、分发、执行、出口和展示您的数据。仅当重新格式化您的数据以便在 Alyne 服务中显示构成对您的数据所包含或代表的数据库的修改或衍生作品或修改时,上述许可还包括进行此类修改和衍生作品和/或创建修改数据库的权利。我们还可以访问您的账户、最终用户账户以及经最终用户许可的Alyne服务实例,以响应您的支持请求。

4.3 您授予Alyne全球性的、永久的、不可撤销的、免版税的许可,以使用并将您或您的最终用户提供的任何建议、改进请求、推荐、更正或其他反馈纳入Alyne服务。

4.4 Alyne 拥有并保留以下方面的所有权利、所有权和利益(a) Alyne 服务及其所有改进、增强或修改;(b) 与专业服务或支持相关的任何软件、应用程序、发明或其他技术;以及 (c) 与上述任何内容相关的所有知识产权。除本条款明确规定外,不授予任何权利或许可。本条款中的任何内容均不构成 Alyne 向您转让或转移任何知识产权。

4.5 所有Alyne服务及相关文档的版权归Alyne所有。未经授权复制、分发、修改、公开展示、向公众传播或公开表演受版权保护的作品均属侵犯 Alyne 版权的行为。

4.6 在Alyne控制语句中选择变量值、在Alyne控制语句中添加自定义值、创建自定义控制集或漏斗或评估或生成Alyne报告不会影响Alyne的知识产权,也不会为您提供超出订购期限的使用权。

5.支付费用

5.1 您应根据订单上的条款("费用")向 Alyne 支付订单中所述的 Alyne 服务和专业服务费用。如果您对 Alyne 服务的使用超出了订单中规定的用户配额,或需要支付额外费用(根据本条款),您将被要求支付该费用,并且您同意按照我们当时的费率支付额外费用。

5.2 Alyne保留在30天前通知您(可通过电子邮件发送)的情况下更改费用或适用收费的权利,以及在初始期限或当时的续约期限结束时收取费用和收费的权利;如果您未对费用的增加提出异议,则应视为接受费用的更改;在所有其他情况下,您有权在适用的初始期限前15天通知终止本条款下的Alyne服务。如果您认为Alyne向您收取的费用有误,您必须在出现错误或问题的第一份账单截止日期后60天内联系Alyne,以获得调整或退款。查询应直接发送至[email protected]

5.3 Alyne 或其关联公司可根据 Alyne 的指示选择通过发票开具账单,在这种情况下,Alyne 必须在发票邮寄日期后 30 天内收到任何给定月份开具的发票的全额付款。对于未付款项,Alyne 将按照德国联邦银行公布的基本利率(《德国民法典》第 288 条第 247 款)每年收取 9 个百分点的财务费用,外加所有收款费用。未付款可能导致 Alyne 服务立即终止。

5.4 您根据本条款所支付的费用不包括在付款或收款地的司法管辖区内与 Alyne 服务相关的任何税费。如果 Alyne 需要支付任何此类税费,则您必须向 Alyne 支付此类税费以及本条款下的任何费用。尽管有上述规定,如果在征收或评估相关税款或关税时,您已获得相关税款或关税的豁免,您可以向 Alyne 提供此类豁免信息,且 Alyne 应尽合理努力向您提供发票文件,以便您能够从相关税务机关获得退款或信用额度(如果可以获得退款或信用额度)。

5.5 已购买的套餐和已支付的费用不可退还;但您在第 7 条(保证和免责声明)和《澳大利亚非排除条款》下的保证权利不受影响。在不影响第 6.2 条和第 6.5 条规定的您的终止权利的前提下,根据《澳大利亚非排除条款》,在终止服务时,当期使用费用的部分退款也不予退还。

5.6 如果您通过 Alyne 的授权合作伙伴或经销商("经销商")进行任何购买:

  1. 您应按照您与经销商之间的协议,向经销商支付适用金额,而不是向 Alyne 付款;
  2. 您的订单详细信息(例如,用户配额、初始期限等)应如经销商代表您向 Alyne 下达的订单中所述,且经销商应对传达给 Alyne 的任何此类订单的准确性负责;
  3. 如果您有权根据本条款获得退款,则除非 Alyne 另有规定,且受澳大利亚非排除条款的限制,否则 Alyne 应向经销商退还任何适用费用,经销商应全权负责向您退还相应金额;且
  4. 经销商无权代表 Alyne 修改本条款或作出任何承诺,除本条款规定的义务外,Alyne 对您不承担任何其他义务。

6.任期和终止

6.1 在不违反以下规定提前终止的前提下,本条款以订单中规定的初始期限为准,并应自动续订与初始期限相同期限的额外期限(统称"订购期限"),除非任何一方在当前期限结束前至少 30 天要求终止。为免生疑问,如果您在订购期结束前终止,根据澳大利亚非排除条款,您无权要求退还任何预付金额。

6.2 如果另一方在通知后30天内未能纠正严重违反这些条款或条件的行为,任何一方也可在提前30天通知后终止这些条款(或在未付款的情况下无需通知)。您应在提供Alyne服务的最后一天之前(包括最后一天)全额支付Alyne服务费用,除非您因Alyne严重违反本条款而终止本条款,并受澳大利亚不排除条款的约束。

6.3 一旦终止,您必须停止使用 Alyne 服务并删除(或应我们的要求归还)您所拥有的所有 Alyne 的机密信息和知识产权。

6.4 在任何终止后,Alyne 将向您提供 "您的数据 "供电子检索,为期 30 天(以合理要求的通用文件格式),但此后 Alyne 将根据法律规定的义务删除 "您的数据";但 Alyne 保留数据的法定义务不受影响。

6.5 如果您根据第6.2条终止本条款,我们将向您退还终止生效日之后剩余期限内的任何预付费用。如果我们根据第 6.2 条终止本条款,您应支付终止生效日之后剩余期限内的任何未付费用。在任何情况下,终止都不能免除您在终止生效日期之前向我们支付任何应付费用的义务,但须遵守 "澳大利亚非排除条款"。

6.6 除本条款规定的排他性补救措施外,任何一方行使包括终止在内的任何补救措施时,不得损害其根据本条款、法律或其他规定可能拥有的任何其他补救措施。

6.7 本条款中按其性质应在终止后继续有效的所有条款在本条款终止或到期后继续有效,包括但不限于应计付款权、保密义务、免责声明、赔偿和责任限制。

6.8 除了可能拥有的任何其他补救措施外,在以下情况下,Alyne 保留在不事先通知的情况下暂停您访问 Alyne 服务的权利:(a) 您欠 Alyne 的任何款项逾期超过 30 天;或 (b) Alyne 认为您或您的最终用户违反了本条款的任何规定。

7.保证和免责声明

7.1 Alyne将按照现行的行业标准尽合理的商业努力维护Alyne服务,以尽量减少Alyne服务中的错误和中断,并以使您能够按照本条款使用Alyne服务的方式提供专业服务。Alyne服务可能会因为Alyne或第三方供应商的计划内维护或计划外的紧急维护,或Alyne无法合理控制的其他原因而暂时不可用,但Alyne会尽商业上的合理努力通过电子邮件提前通知任何计划内的服务中断。由于我们无法控制的情况,包括但不限于自然灾害、政府行为、内乱、恐怖行为、罢工、网络安全事件或服务提供商故障等,也可能导致 Alyne 服务暂时不可用。

7.2 Alyne 将免费为您提供基本支持。支持请求可通过电子邮件[email protected]提出,Alyne 将在 2 个工作日内做出商业上合理的回应。Alyne 保留为解决复杂的支持请求制定额外商业安排的权利。

7.3 在遵守澳大利亚非排除条款的前提下,您对 Alyne 服务缺陷的法定权利限制如下:

  1. Alyne 不对 Alyne 服务的初始实质性缺陷承担任何责任;
  2. 尽管您已通知 Alyne 并连续向 Alyne 规定了两个合理的补救期限,但如果 Alyne 未成功补救缺陷,您有权终止 Alyne 服务;
  3. 您要求减少费用的权利被排除在外。这并不影响您获得多付费用补偿的权利;以及
  4. 根据第 8 条(责任限制),您对缺陷造成的损失索赔的权利受到限制。

7.4 根据澳大利亚非排除条款,您对Alyne缺陷的权利将在法定保修期开始12个月后失效。为澄清起见:双方同意,Alyne 在订购期内为 Alyne 服务提供的更新或升级不应延长保修期。

7.5 双方同意,根据《德国民法典》第 443 条和第 444 条的规定,任何担保都必须由 Alyne 方面做出明确的书面承诺,并在承诺中使用 "担保 "或 "被担保 "的术语。

7.6 Alyne 服务(包括控制声明、控制集、报告、洞察、评估和隧道)属于咨询性质,不构成保证、法律建议或审计结果。因此,Alyne 服务不表达任何旨在传递保证的意见或结论。由于 Alyne 评估方法的性质,可能会出现错误、未识别的风险或其他违规行为,但仍有可能未被发现。Alyne 无法保证其内容库或您使用 Alyne 服务的完整性。完全依赖 Alyne 服务产生的结果并不能减轻贵公司管理层对整个运营实施和保持适当控制的责任,也不能减轻贵公司管理层发现和防止欺诈以及其他违反监管或法律责任的责任。

8.责任限制

8.1 在不违反第 8.2 条规定的情况下,Alyne 的法定损害赔偿责任限制如下:

  1. 对于因轻微过失违反重要合同义务(即履行合同义务对合同的正常执行至关重要,违反合同义务会危及合同目的,且客户经常依赖履行合同义务)而造成的损害,阿莱恩仅承担签订合同时通常可预见的损害赔偿金额;以及
  2. 对于因轻微过失违反非实质性合同义务而造成的损失,阿莱恩不承担任何责任。

8.2 上述责任限制不适用于任何强制性法定责任(尤其是《德国产品责任法》规定的责任)、承担特定担保的责任或因故意不当行为或重大过失造成的损害赔偿责任、或任何故意或过失造成的人身伤害、或根据《澳大利亚非免责条款》应承担的责任。

8.3 乙方应采取一切合理措施减轻和/或避免损失,其中特别包括乙方有义务定期备份数据副本并进行安全检查(尤其是为了防御或检测乙方自身 IT 系统中的病毒、恶意软件和其他破坏性程序)。

8.4 无论产生责任的法律依据如何,在不排除澳大利亚条件的前提下,Alyne 不对间接和/或后果性损害负责,尤其包括利润损失和利益损失,除非任何此类损害是由 Alyne 的故意不当行为或重大过失造成的。

8.5 除非在订单中另有规定,除故意渎职或重大过失的情况外,在不排除澳大利亚条件的情况下,无论发生多少起事件,Alyne 的责任上限为每年根据协议已支付或应付费用的 100%。

8.6 在 Alyne 的责任受到限制或排除的情况下,同样适用于 Alyne 的法定代表人、雇员和代理的任何个人责任。

9.赔偿

9.1 您同意赔偿阿利恩(及其关联公司、管理人员和代表)因您的过失造成的任何索赔、费用、损害、损失、责任和支出(包括适用法定收费计划下的律师费),并使其免受损害,这些索赔是在您用尽所有上诉权利后由有管辖权的法院最终判决阿利恩胜诉,或在您签署的书面和解协议中同意由任何第三方提出的任何索赔或指控引起的或与之相关的:(a) 您的最终用户因使用 Alyne 服务而提出的任何索赔或争议;(b) 您对第 2 条(客户限制和责任;审核权)的严重违反;或 (c) 您的材料。

9.2 Alyne将为您辩护并赔偿您因第三方指控Alyne服务侵犯、盗用或违反任何第三方的知识产权而由有管辖权的法院最终判定的任何及所有费用、损害赔偿和支出(包括适用的法定收费计划下的律师费)。如果Alyne服务被认定侵犯了第三方的知识产权,Alyne可以选择(a)替换或修改Alyne服务使其不侵权,但不对Alyne服务的特定功能造成实质性的不利影响;(b)为您获得继续使用Alyne服务的许可;或(c)终止本协议并向您返还Alyne未赚取的任何预付费用。根据第9.2条规定,Alyne对侵权索赔的损害赔偿责任应受第8条规定的责任限制的约束。Alyne 没有义务为基于以下原因的任何索赔进行辩护和赔偿:(i) 您或任何第三方的知识产权或软件纳入或结合到Alyne服务中,如果没有这些纳入或结合的项目,就不会有侵权行为,但不包括任何第三方软件或知识产权纳入Alyne服务,由Alyne自行决定;或(ii)您、任何第三方或Alyne应您的要求对Alyne服务进行了更改或修改(Alyne对您指示的Alyne服务或文档的修改的实施没有自由裁量权),如果没有这些更改或修改,Alyne服务不会构成侵权。

9.3 双方在本第 9 条下的义务取决于 (a) 被赔偿方及时书面通知任何可能或实际发生的索赔或诉讼;但未能及时通知不应免除赔偿方在本条款下的责任,除非因未能及时通知而使该索赔的抗辩权受到重大损害;(b) 允许补偿方全权控制任何索赔或诉讼的辩护或和解,但补偿方未经被补偿方事先书面同意,不得达成任何不无条件免除被补偿方责任的和解;以及 (c) 被补偿方应补偿方的要求和费用,向补偿方提供履行本第 9 条规定的补偿方义务所需的协助、信息和授权。

10.隐私权

10.1 您承认Alyne收集、使用、存储并以其他方式处理您的数据,包括您或您的最终用户的个人信息、使用数据以及通过您和您的最终用户使用Alyne服务创建、存储或上传的任何数据,并可能出于改进或提供Alyne服务的目的与第三方服务提供商共享这些数据。欲了解更多信息,请参阅Alyne的数据隐私声明

10.2 处理的数据包括您的姓名、电子邮件地址、邮政地址,包括您的最终用户提供的数据。如果您提供了信用卡详细信息,我们符合 PCI-DSS 标准的支付处理器将存储并使用这些数据,以执行授权支付交易。

10.3 所有个人数据均将保密处理,并遵守欧盟《通用数据保护条例 2016/679》("GDPR")及其他适用法律。

10.4 您承认,如果法律要求或为了遵守法律程序,Alyne 可以访问、保存和披露您的个人信息以及创建、存储或上传到 Alyne 服务的 "您的数据"。

10.5 在不影响第 2.3 条限制的前提下,如果您使用 Alyne 服务处理敏感个人数据,您还同意通知 Alyne。

10.6 Alyne 将使用国内和国际服务供应商来支持 Alyne 服务的提供。阿莱恩将在与这些分包商签订的合同中适用第 10 条和第 11 条中定义的条款。欧洲经济区以外的分包商只有在提供足够的数据隐私和保护水平的情况下,才会被 Alyne 选中。

11.委托数据处理

11.1 如果您在欧盟运营,并打算使用 Alyne 服务处理个人身份信息(定义见 GDPR),则 GDPR 第 28 条的要求适用于本条款。

11.2 Alyne 不会对您的数据拥有所有权或控制权,只会代表您并应您的要求处理这些数据。

11.3 作为数据控制者,您应负责执行 GDPR 中规定的要求,而 Alyne 应负责对您的数据采取技术和组织保护措施。

11.4 如果符合本条款第 11.1 条所述的要求,您可以要求 Alyne 与您签订合同附录,以满足委托数据处理的法律要求。

12.杂项

12.1 如果这些条款中的任何规定被认定为不可执行或无效,则应取消该规定,但本协议在其他方面仍应完全有效并可执行。

12.2 除非事先获得 Alyne 的书面同意,否则您不得转让或转授本条款下的权利主张。阿莱恩可在未经同意的情况下转让本条款下的任何权利主张。

12.3 本条款是双方相互理解的完整和排他性声明,取代并取消与本条款主题相关的所有先前的书面和口头协议、通信和其他理解。

12.4 除本协议另有规定外,所有弃权和修改必须以双方签署的书面形式进行,包括本 书面形式条款。

12.5 Alyne 服务及其衍生产品可能受美国和其他司法管辖区出口法律法规的约束。Alyne 和您各自声明其未被列入任何美国政府拒绝出口方名单。您不得允许任何最终用户在美国禁运的国家或地区或违反任何美国出口法律或法规的情况下访问或使用 Alyne 服务。

12.6 本条款不构成合资企业或雇佣关系,您无权在任何方面约束 Alyne。

12.7 本条款下的所有通知均应以书面形式发出。本条款没有第三方受益人。

12.8 我们可能会在我们的宣传材料和网站上标明您是Alyne的客户,但不会透露您使用Alyne服务或任何其他商业安排的更多细节。在您向[email protected] 发送请求后,我们将立即停止这样做。

13.Alyne 合同实体;管辖法律

13.1 订立本条款的 Alyne 实体、因本条款引起的或与之相关的任何争议或诉讼所适用的法律,以及对任何此类争议或诉讼拥有管辖权的法院,均取决于您的住所所在地。联合国货物销售合同公约》的条款不适用于本条款。统一计算机信息交易法》(UCITA)无论何时何地通过,均不适用于本条款。各方同意以下适用的管辖法律,不考虑法律规则的选择或冲突,并同意以下适用法院的专属管辖权。

13.2 如果您居住在澳大利亚,则签订本条款的 Alyne 实体为Alyne Australia Pty Ltd(澳大利亚公司),管辖法律为澳大利亚 维多利亚州法律,澳大利亚维多利亚州法院拥有专属管辖权。

13.3 如果您的住所在澳大利亚境外,则签订本条款的Alyne实体为Alyne GmbH(一家德国公司),管辖法律为德国法律,德国慕尼黑法院拥有专属管辖权。

14.定义

本条款中使用的某些大写术语在第 14 条中定义,其他术语在本条款中按上下文定义。

"关联方 "是指直接或间接拥有或控制、被一方拥有或控制,或与一方处于共同所有权或控制之下的实体,其中 "控制 "是指指挥实体管理或事务的权力,"所有权 "是指实际拥有该实体 50%以上的有表决权的股权证券或其他同等表决权利益。

"Alyne 政策 "是指 Alyne 发布的标准政策,随时更新。

"Alyne服务 "是指Alyne软件即服务,包括Alyne的内容库(特别是Alyne控制声明库和Alyne风险库)、参考资料、词汇表和您购买的并由Alyne在线提供的帮助文本。

"最终用户 "是指您或联属会员允许或邀请使用Alyne服务的个人。为避免疑义:(a)您的最终用户邀请的个人,(b)管理账户下的个人,(c)作为您的客户与Alyne服务互动的个人,(d)管理员和专家用户、专家用户和企业用户(在您的Alyne服务实例中指定),以及(e)在您的Alyne服务实例中响应评估的个人,也被视为最终用户。

"HIPAA "指经修订和补充的《健康保险可携性与责任法案》。

"初始期限 "指适用订单中规定的 Alyne 服务的初始许可订购期。

"法律 "指所有适用的地方、州、联邦和国际法律、法规和公约,包括与数据隐私和数据传输、国际通信和技术或个人数据出口相关的法律、法规和公约。

"不可排除的澳大利亚条件 "是指澳大利亚法律(包括澳大利亚特定条款中规定的适用澳大利亚消费者法)规定的任何法定或默示条件、保证或担保,如果将其排除在合同之外,则会违反任何法规或导致本条款的任何部分无效。

"订单 "是指 Alyne 批准的订购文件或流程,描述您向 Alyne 订购的 Alyne 服务,包括商定的:(a) 用户配额;(b) 初始期限;(c) 专业服务(如有);以及 (d) 费用。

"PCI DSS "指《支付卡行业数据安全标准》。

"专业服务 "是指任何与客户使用Alyne服务相关的专业服务,如咨询、实施或培训服务,由Alyne提供给客户,并在订单中明确指出,如果符合德国法律,则属于《德国民法典》第611条及以下条款意义上的服务合同性质。德国民法典》第611条及以下各条规定的服务合同性质,且在任何情况下均不得解释为Alyne在提供专业服务时对客户承担一定的结果,除非双方以书面形式明确规定Ayne应根据《德国民法典》第631条及以下各条规定的工程合同("Werkvertrag")提供实施服务。德国民法典

"敏感个人数据 "是指任何(a) 欧盟第 2016/679 号法规第 9(1)条或任何后续法规列举的数据类别;(b) 受 HIPAA 监管的患者、医疗或其他受保护健康信息;(c) 受 PCI DSS 监管的信用卡、借记卡或其他支付卡数据;(d) 受特定法律监管或保护的其他信息,如《格拉姆-里奇-比利雷法案》(或相关规则或法规); (e) 社会安全号码、驾驶执照号码或其他政府 ID 号码;或 (f) 受国外或国内法律或法规保护的与上述数据类似的任何数据。

"认购期 "具有第 6.1 条中的含义。

"用户配额 "指订单中规定的用户配额。

"您的资料 "是指您(包括您的任何最终用户)提交给Alyne服务的任何数据、内容、代码、视频、图片或其他任何类型的资料,包括您或您的最终用户的个人信息、评论、对象描述、文件附件以及完全自定义创建的控制语句或风险。在此语境下,"提交"(及任何类似术语)包括提交、上传、传输或以其他方式向或通过 Alyne 服务提供您的数据。

"您的材料 "是指您的材料、系统、人员或其他资源。

增编

澳大利亚专用术语

各方同意,如果澳大利亚法律因第 13.2 条而适用,且澳大利亚消费者法适用于客户,则除上述条款外,还应适用以下澳大利亚特定条款。

如果上述条款与本澳大利亚特定条款之间存在冲突,应以本澳大利亚特定条款为准。

1.定义

除非下文另有定义,否则与上述条款中的术语含义相同:

"ACL "或 "澳大利亚消费者法 "是指 2010 年《竞争与消费者法》(澳大利亚联邦)附表 2 中规定的《澳大利亚消费者法》。

"不可排除的澳大利亚条件 "应具有本条款第 14 条规定的含义。

"敏感个人数据 "在不限制上述条款定义的前提下,包括 1998 年《隐私法》(澳大利亚联邦)中定义的敏感信息,以及澳大利亚联邦、州或地区有关健康记录或健康信息处理的适用法律中定义的健康信息或任何类似术语。

2.消费者法律

2.1 如果 Alyne 在法律允许的情况下对未遵守澳大利亚非排除性条件(包括下文第 2.5 和 2.6 段所述担保)承担责任,则 Alyne 将其责任限制在以下范围内(由其绝对酌情决定和选择):

  1. 就货物而言,修理或更换货物,或提供同等货物,或支付修理或更换货物的费用或购买同等货物的费用;以及
  2. 就服务而言,再次提供服务或支付再次提供服务的费用。

2.2 上述条款中规定的缺陷保证(定义见 ACL)由以下 Alyne 实体提供:

Alyne Australia Pty Ltd
1 层前厅套房,19 至 21 Toorak Rd
澳大利亚维多利亚州南亚拉 3141
+49 89 4581 9940
[email protected]

2.3 若要对上述条款中规定的缺陷提出保修索赔,必须通过上述地址向 Alyne Australia Pty Ltd 发出书面通知,并说明缺陷的性质。您需承担缺陷担保索赔的费用。

2.4 除上述条款中规定的任何缺陷保证外,您还可根据与保证相关的货物和服务有关的法律享有其他权利和补救措施。

2.5 如果您是根据《澳大利亚消费者法》以消费者身份获得我们的商品或服务,则我们的商品和服务具有《澳大利亚消费者法》规定不得排除的保证。如果 Alyne 服务出现重大故障,您有权取消与我们签订的服务合同,并获得未使用部分的退款或价值降低部分的赔偿。

2.6 如果货物出现重大故障,您还有权选择退款或更换。如果货物或服务的故障不构成重大故障,您有权要求在合理的时间内排除故障。如果未能排除故障,您有权要求退还货物,取消服务合同,并获得未使用部分的退款。您还有权要求赔偿因货物或服务故障而造成的任何其他可合理预见的损失或损害。

3.隐私权

就上述条款第 10.3 条而言,其他适用法律包括但不限于《1998 年隐私法》(澳大利亚联邦)。