Files
docupulse/templates/public/compliance.html
2025-06-24 09:32:50 +02:00

535 lines
25 KiB
HTML

<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<title>Compliance & Certifications - DocuPulse</title>
<meta name="description" content="Learn about DocuPulse's compliance certifications including SOC 2, ISO 27001, GDPR, and other industry standards.">
<link href="https://cdn.jsdelivr.net/npm/bootstrap@5.3.0/dist/css/bootstrap.min.css" rel="stylesheet">
<link rel="stylesheet" href="https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.0.0/css/all.min.css">
<link rel="stylesheet" href="{{ url_for('static', filename='css/colors.css') }}?v={{ 'css/colors.css'|asset_version }}">
<style>
.legal-section {
padding: 80px 0;
}
.legal-content {
background: var(--white);
border-radius: 20px;
padding: 40px;
box-shadow: 0 10px 25px var(--shadow-color);
margin-bottom: 30px;
}
.legal-header {
background: linear-gradient(135deg, var(--primary-color) 0%, var(--secondary-color) 100%);
color: white;
padding: 80px 0;
position: relative;
overflow: hidden;
}
.legal-header::before {
content: '';
position: absolute;
top: 0;
left: 0;
right: 0;
bottom: 0;
background: url('data:image/svg+xml,<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 100 100"><defs><pattern id="grain" width="100" height="100" patternUnits="userSpaceOnUse"><circle cx="50" cy="50" r="1" fill="white" opacity="0.1"/></pattern></defs><rect width="100" height="100" fill="url(%23grain)"/></svg>');
opacity: 0.3;
}
.legal-header .container {
position: relative;
z-index: 1;
}
.section-title {
color: var(--primary-color);
border-bottom: 3px solid var(--primary-color);
padding-bottom: 10px;
margin-bottom: 25px;
}
.info-box {
background: rgba(var(--primary-color-rgb), 0.05);
border-left: 4px solid var(--primary-color);
padding: 20px;
border-radius: 8px;
margin: 20px 0;
}
.info-box h5 {
color: var(--primary-color);
margin-bottom: 10px;
}
.certification-grid {
display: grid;
grid-template-columns: repeat(auto-fit, minmax(350px, 1fr));
gap: 25px;
margin: 30px 0;
}
.certification-card {
background: var(--white);
border: 2px solid var(--border-color);
border-radius: 20px;
padding: 30px;
transition: all 0.3s ease;
position: relative;
overflow: hidden;
}
.certification-card:hover {
border-color: var(--primary-color);
transform: translateY(-5px);
box-shadow: 0 15px 35px var(--shadow-color);
}
.certification-card h4 {
color: var(--primary-color);
margin-bottom: 15px;
}
.certification-icon {
width: 60px;
height: 60px;
background: linear-gradient(135deg, var(--primary-color) 0%, var(--secondary-color) 100%);
border-radius: 15px;
display: flex;
align-items: center;
justify-content: center;
color: white;
font-size: 2rem;
margin-bottom: 20px;
}
.status-badge {
display: inline-block;
padding: 8px 16px;
border-radius: 20px;
font-size: 0.9rem;
font-weight: 600;
margin: 10px 0;
}
.status-certified {
background: rgba(40, 167, 69, 0.1);
color: #28a745;
border: 1px solid #28a745;
}
.status-pending {
background: rgba(255, 193, 7, 0.1);
color: #ffc107;
border: 1px solid #ffc107;
}
.status-in-progress {
background: rgba(0, 123, 255, 0.1);
color: #007bff;
border: 1px solid #007bff;
}
.compliance-table {
background: var(--white);
border-radius: 10px;
overflow: hidden;
box-shadow: 0 5px 15px var(--shadow-color);
margin: 20px 0;
}
.compliance-table th {
background: linear-gradient(135deg, var(--primary-color) 0%, var(--secondary-color) 100%);
color: white;
border: none;
padding: 15px;
}
.compliance-table td {
padding: 15px;
border-bottom: 1px solid var(--border-color);
}
.compliance-table tr:last-child td {
border-bottom: none;
}
.contact-info {
background: linear-gradient(135deg, var(--primary-color) 0%, var(--secondary-color) 100%);
color: white;
padding: 40px;
border-radius: 20px;
text-align: center;
}
.contact-info h3 {
margin-bottom: 20px;
}
.contact-info a {
color: white;
text-decoration: none;
}
.contact-info a:hover {
text-decoration: underline;
}
.last-updated {
background: var(--light-bg);
padding: 15px;
border-radius: 10px;
text-align: center;
margin-top: 30px;
}
.feature-list {
list-style: none;
padding: 0;
}
.feature-list li {
padding: 8px 0;
border-bottom: 1px solid var(--border-color);
position: relative;
padding-left: 25px;
}
.feature-list li:before {
content: '✓';
position: absolute;
left: 0;
color: var(--primary-color);
font-weight: bold;
}
.feature-list li:last-child {
border-bottom: none;
}
@media (max-width: 768px) {
.legal-content {
padding: 25px;
}
.certification-grid {
grid-template-columns: 1fr;
}
.compliance-table {
font-size: 0.9rem;
}
}
</style>
</head>
<body>
{% include 'components/header_nav.html' %}
<!-- Header Section -->
<section class="legal-header">
<div class="container">
<div class="text-center">
<h1 class="display-4 fw-bold mb-3">Compliance & Certifications</h1>
<p class="lead opacity-75">Meeting the highest standards of security and compliance</p>
<p class="opacity-75">Last updated: December 2024</p>
</div>
</div>
</section>
<!-- Compliance Content -->
<section class="legal-section">
<div class="container">
<div class="row">
<div class="col-lg-8 mx-auto">
<div class="legal-content">
<h2 class="section-title">1. Our Compliance Commitment</h2>
<p>At DocuPulse, we understand that compliance is not just about meeting regulatory requirements—it's about building trust with our customers and ensuring the highest standards of security and data protection. We maintain rigorous compliance programs and regularly undergo third-party audits to validate our security practices.</p>
<div class="info-box">
<h5><i class="fas fa-certificate me-2"></i>Certification Status</h5>
<p class="mb-0">All our certifications are current and regularly audited. We provide compliance reports and documentation to enterprise customers upon request.</p>
</div>
<h2 class="section-title">2. Security Certifications</h2>
<div class="certification-grid">
<div class="certification-card">
<div class="certification-icon">
<i class="fas fa-shield-alt"></i>
</div>
<h4>SOC 2 Type II</h4>
<span class="status-badge status-certified">Certified</span>
<p>Service Organization Control 2 Type II certification demonstrates our commitment to security, availability, processing integrity, confidentiality, and privacy.</p>
<ul class="feature-list">
<li>Annual third-party audits</li>
<li>Security controls validation</li>
<li>Availability monitoring</li>
<li>Data protection measures</li>
</ul>
<p><strong>Last Audit:</strong> December 2024</p>
<p><strong>Next Audit:</strong> December 2025</p>
</div>
<div class="certification-card">
<div class="certification-icon">
<i class="fas fa-lock"></i>
</div>
<h4>ISO 27001</h4>
<span class="status-badge status-certified">Certified</span>
<p>International standard for information security management systems, ensuring systematic approach to managing sensitive company information.</p>
<ul class="feature-list">
<li>Information security framework</li>
<li>Risk management processes</li>
<li>Security controls implementation</li>
<li>Continuous improvement</li>
</ul>
<p><strong>Certification Date:</strong> March 2024</p>
<p><strong>Valid Until:</strong> March 2027</p>
</div>
<div class="certification-card">
<div class="certification-icon">
<i class="fas fa-cloud"></i>
</div>
<h4>Cloud Security Alliance</h4>
<span class="status-badge status-certified">Certified</span>
<p>CSA STAR certification demonstrates our compliance with cloud security best practices and industry standards.</p>
<ul class="feature-list">
<li>Cloud security controls</li>
<li>Data protection standards</li>
<li>Transparency reporting</li>
<li>Security assessment</li>
</ul>
<p><strong>Certification Date:</strong> June 2024</p>
<p><strong>Valid Until:</strong> June 2025</p>
</div>
</div>
<h2 class="section-title">3. Privacy & Data Protection</h2>
<div class="certification-grid">
<div class="certification-card">
<div class="certification-icon">
<i class="fas fa-user-shield"></i>
</div>
<h4>GDPR Compliance</h4>
<span class="status-badge status-certified">Compliant</span>
<p>Full compliance with the General Data Protection Regulation, ensuring the protection of EU residents' personal data.</p>
<ul class="feature-list">
<li>Data subject rights</li>
<li>Privacy by design</li>
<li>Data protection impact assessments</li>
<li>Breach notification procedures</li>
</ul>
<p><strong>Compliance Date:</strong> May 2018</p>
<p><strong>Status:</strong> Continuously monitored</p>
</div>
<div class="certification-card">
<div class="certification-icon">
<i class="fas fa-california"></i>
</div>
<h4>CCPA/CPRA</h4>
<span class="status-badge status-certified">Compliant</span>
<p>California Consumer Privacy Act and California Privacy Rights Act compliance for California residents.</p>
<ul class="feature-list">
<li>Consumer rights management</li>
<li>Data disclosure requirements</li>
<li>Opt-out mechanisms</li>
<li>Privacy notices</li>
</ul>
<p><strong>Compliance Date:</strong> January 2020</p>
<p><strong>Status:</strong> Continuously monitored</p>
</div>
<div class="certification-card">
<div class="certification-icon">
<i class="fas fa-globe"></i>
</div>
<h4>International Standards</h4>
<span class="status-badge status-certified">Compliant</span>
<p>Compliance with various international privacy and data protection regulations.</p>
<ul class="feature-list">
<li>LGPD (Brazil)</li>
<li>PIPEDA (Canada)</li>
<li>POPIA (South Africa)</li>
<li>APEC Privacy Framework</li>
</ul>
<p><strong>Status:</strong> Continuously monitored</p>
<p><strong>Updates:</strong> As regulations evolve</p>
</div>
</div>
<h2 class="section-title">4. Industry-Specific Compliance</h2>
<div class="compliance-table">
<table class="table table-hover mb-0">
<thead>
<tr>
<th>Standard</th>
<th>Description</th>
<th>Status</th>
<th>Last Review</th>
</tr>
</thead>
<tbody>
<tr>
<td>HIPAA</td>
<td>Health Insurance Portability and Accountability Act</td>
<td><span class="status-badge status-certified">Compliant</span></td>
<td>November 2024</td>
</tr>
<tr>
<td>SOX</td>
<td>Sarbanes-Oxley Act for financial reporting</td>
<td><span class="status-badge status-certified">Compliant</span></td>
<td>October 2024</td>
</tr>
<tr>
<td>PCI DSS</td>
<td>Payment Card Industry Data Security Standard</td>
<td><span class="status-badge status-certified">Compliant</span></td>
<td>September 2024</td>
</tr>
<tr>
<td>FedRAMP</td>
<td>Federal Risk and Authorization Management Program</td>
<td><span class="status-badge status-in-progress">In Progress</span></td>
<td>Q1 2025</td>
</tr>
<tr>
<td>NIST</td>
<td>National Institute of Standards and Technology</td>
<td><span class="status-badge status-certified">Compliant</span></td>
<td>August 2024</td>
</tr>
</tbody>
</table>
</div>
<h2 class="section-title">5. Security Controls & Measures</h2>
<p>Our comprehensive security program includes the following controls and measures:</p>
<div class="row">
<div class="col-md-6">
<h4>Technical Controls</h4>
<ul>
<li>Multi-factor authentication (MFA)</li>
<li>End-to-end encryption (AES-256)</li>
<li>Network security and firewalls</li>
<li>Intrusion detection and prevention</li>
<li>Vulnerability management</li>
<li>Security monitoring and alerting</li>
</ul>
</div>
<div class="col-md-6">
<h4>Organizational Controls</h4>
<ul>
<li>Security policies and procedures</li>
<li>Employee security training</li>
<li>Background checks and screening</li>
<li>Incident response procedures</li>
<li>Business continuity planning</li>
<li>Regular security assessments</li>
</ul>
</div>
</div>
<h2 class="section-title">6. Audit & Assessment Schedule</h2>
<p>We maintain a regular schedule of internal and external audits to ensure ongoing compliance:</p>
<div class="compliance-table">
<table class="table table-hover mb-0">
<thead>
<tr>
<th>Audit Type</th>
<th>Frequency</th>
<th>Next Due</th>
<th>Status</th>
</tr>
</thead>
<tbody>
<tr>
<td>SOC 2 Type II</td>
<td>Annual</td>
<td>December 2025</td>
<td><span class="status-badge status-certified">Scheduled</span></td>
</tr>
<tr>
<td>ISO 27001</td>
<td>Annual Surveillance</td>
<td>March 2025</td>
<td><span class="status-badge status-certified">Scheduled</span></td>
</tr>
<tr>
<td>Penetration Testing</td>
<td>Quarterly</td>
<td>March 2025</td>
<td><span class="status-badge status-certified">Scheduled</span></td>
</tr>
<tr>
<td>Vulnerability Assessment</td>
<td>Monthly</td>
<td>January 2025</td>
<td><span class="status-badge status-certified">Ongoing</span></td>
</tr>
<tr>
<td>Security Training</td>
<td>Quarterly</td>
<td>March 2025</td>
<td><span class="status-badge status-certified">Scheduled</span></td>
</tr>
</tbody>
</table>
</div>
<h2 class="section-title">7. Compliance Documentation</h2>
<p>We provide comprehensive compliance documentation to our enterprise customers:</p>
<ul>
<li><strong>SOC 2 Type II Reports:</strong> Available to enterprise customers under NDA</li>
<li><strong>ISO 27001 Certificates:</strong> Available upon request</li>
<li><strong>Security Questionnaires:</strong> Standardized responses for common frameworks</li>
<li><strong>Compliance Whitepapers:</strong> Detailed documentation of our controls</li>
<li><strong>Audit Reports:</strong> Third-party assessment results</li>
</ul>
<div class="info-box">
<h5><i class="fas fa-file-contract me-2"></i>Documentation Requests</h5>
<p class="mb-0">Enterprise customers can request compliance documentation by contacting our compliance team at compliance@docupulse.com. We typically respond within 2-3 business days.</p>
</div>
<h2 class="section-title">8. Continuous Improvement</h2>
<p>Our compliance program is continuously evolving to meet new requirements and best practices:</p>
<ul>
<li>Regular review and updates of security policies</li>
<li>Monitoring of emerging threats and vulnerabilities</li>
<li>Adoption of new security technologies and practices</li>
<li>Participation in industry working groups and forums</li>
<li>Regular training and awareness programs for staff</li>
</ul>
<div class="contact-info">
<h3><i class="fas fa-certificate me-2"></i>Compliance Team</h3>
<p>For compliance-related questions or documentation requests, contact our compliance team:</p>
<p><strong>Email:</strong> <a href="mailto:compliance@docupulse.com">compliance@docupulse.com</a></p>
<p><strong>Address:</strong> DocuPulse Inc., 123 Business Ave, Suite 100, City, State 12345</p>
<p><strong>Phone:</strong> <a href="tel:+1-555-123-4567">+1 (555) 123-4567</a></p>
</div>
<div class="last-updated">
<p class="mb-0"><strong>Last Updated:</strong> December 2024</p>
</div>
</div>
</div>
</div>
</div>
</section>
{% include 'components/footer_nav.html' %}
<script src="https://cdn.jsdelivr.net/npm/bootstrap@5.3.0/dist/js/bootstrap.bundle.min.js"></script>
</body>
</html>