Do you have an Acceptable Use Policy for information and associated assets in place?

Yes. QR Planet's Acceptable Use Policy was developed in accordance with all compliance requirements, approved by management and communicated to Constituents.

Last update 1 week ago

How do you handle Encryption Keys?

All encryption keys at QR Planet are generated in a manner consistent with key management industry standards, and are managed and maintained for Scoped Data.

Last update 1 week ago

Do you have an asset management program in place?

Yes. QR Planet's asset management program has been approved by management and communicated to all relevant constituents.

Last update 2 weeks ago

Is Information classified according to legal or regulatory requirements, business value, and sensitivity to unauthorized disclosure or modification?

Yes. Any information handled by QR Planet is classified in accordance with common best praictes, compliance requirements and our internal policies.

Last update 2 weeks ago

Has an owner been assigned to all Information Assets?

Yes. All information asstets have an owner assigned. Management regularly monitors and reviews compliance with any regulatory body or applicable rulesets.

Last update 2 weeks ago

Does the policy for information handling include the following?

The policy for information handling include encryption, and electronic transmission security requirements. No Cloud or removalbe media is in use.

Last update 2 weeks ago

Do you have a data retention or destruction requirement in place?

Data retention or destructions is performed in accordance with the GDPR, contractual and all applicable internal policies, regardless of storage or data types.

Last update 1 week ago

How do you store regulated or confidential Scoped Data?

Regulated or confidential Scoped Data is only stored electronically and in databases; It is never contained in physical files.

Last update 2 weeks ago

Do you use open source software or libraries to handle sensitive data of any kind?

No. QR Planet doesn't transmit, process or store sensitive data with open source software or within open source libraries.

Last update 2 weeks ago

Do you have a procedure for information handling consistent with its classification?

All information is stored, processed and communicated consistent with its classification and in accordance to all regulatory measures/compliance requirements.

Last update 2 weeks ago