Policies/en/Access-to-Nonpublic-Personal-Data: Difference between revisions
Appearance
Link the migrated Office Actions Policy |
Added KidsIntro and ExpertIntro per Theo's guidelines |
||
| (2 intermediate revisions by the same user not shown) | |||
| Line 1: | Line 1: | ||
{{KidsIntro|Sometimes we need to keep certain information private to keep everyone safe. This page shows our plan for who gets to see this hidden info and how we hope to make sure they are super trustworthy.}} | |||
{{ExpertIntro|This document outlines our intended policy for managing access to nonpublic personal data. It establishes a proposed framework for granting access rights, emphasizing our intent to maintain strict confidentiality and the general direction of our data governance model.}} | |||
''This is a draft version. Source: adapted notably from the Wikimedia Foundation Governance Wiki, https://foundation.wikimedia.org/wiki/Policy:Wikimedia_Foundation_Access_to_Nonpublic_Personal_Data_Policy (CC BY-SA 4.0), with changes. Status: proposal, to be adopted. See the [[Policies/en/Disclaimer|detailed disclaimer]].'' | ''This is a draft version. Source: adapted notably from the Wikimedia Foundation Governance Wiki, https://foundation.wikimedia.org/wiki/Policy:Wikimedia_Foundation_Access_to_Nonpublic_Personal_Data_Policy (CC BY-SA 4.0), with changes. Status: proposal, to be adopted. See the [[Policies/en/Disclaimer|detailed disclaimer]].'' | ||
| Line 87: | Line 89: | ||
<span id="submission-timeline"></span> | <span id="submission-timeline"></span> | ||
'''(e) Submission timeline.''' | '''(e) Submission timeline.''' | ||
Any community member who has been granted access rights at the time this Policy becomes effective must meet the requirements of Sections (a) | Any community member who has been granted access rights at the time this Policy becomes effective must meet the requirements of Sections (a) to (c) of this Policy within ninety (90) calendar days of the date this Policy becomes effective. The Ynternet.org Foundation may, at its sole discretion, extend the compliance period for individual community members as needed. | ||
Any community member who has not met the requirements of | Any community member who has not met the requirements of Sections (a) to (c) of this Policy by the deadline above should anticipate having their access rights revoked until they have submitted the required information. | ||
<span id="use-and-disclosure"></span> | <span id="use-and-disclosure"></span> | ||
== Use and disclosure of nonpublic information == | == Use and disclosure of nonpublic information == | ||
Designated Community Members provide valuable services to the Platform and its users | Designated Community Members provide valuable services to the Platform and its users: they fight vandalism, respond to helpdesk emails, ensure that improperly disclosed private data is removed from public view, confirm license permissions, investigate sockpuppets, improve and debug software, and much more. But Designated Community Members' use of access rights is limited to certain circumstances and contexts. This section elucidates the situations in which access rights may be used and Nonpublic Personal Data may be disclosed to third parties. | ||
<span id="use"></span> | <span id="use"></span> | ||
| Line 122: | Line 124: | ||
In the event that a Designated Community Member receives a request for Personal Data from law enforcement regarding an immediate and credible threat of bodily harm, as described above in (iii), and the Designated Community Member chooses to disclose Personal Data, they are permitted to do so without pre-authorization, however that Designated Community Member should immediately contact the Foundation's designated disclosure contact (info@wikideal.net) with an explanation of the disclosure. If the Designated Community Member chooses not to disclose Personal Data in response to an emergency request from law enforcement, that Designated Community Member should immediately contact the Foundation's designated emergency contact (info@wikideal.net) with details of the request so that it can be evaluated for possible Foundation disclosure. | In the event that a Designated Community Member receives a request for Personal Data from law enforcement regarding an immediate and credible threat of bodily harm, as described above in (iii), and the Designated Community Member chooses to disclose Personal Data, they are permitted to do so without pre-authorization, however that Designated Community Member should immediately contact the Foundation's designated disclosure contact (info@wikideal.net) with an explanation of the disclosure. If the Designated Community Member chooses not to disclose Personal Data in response to an emergency request from law enforcement, that Designated Community Member should immediately contact the Foundation's designated emergency contact (info@wikideal.net) with details of the request so that it can be evaluated for possible Foundation disclosure. | ||
All other formal and informal requests for user Nonpublic Personal Data (i.e. those not covered by one of the situations described above or those not acted upon by a community member with access rights), including | All other formal and informal requests for user Nonpublic Personal Data (i.e. those not covered by one of the situations described above or those not acted upon by a community member with access rights), including court orders and similar legal process, from law enforcement, government agencies, attorneys, or other third parties should be directed to the Ynternet.org Foundation's Legal department (info@wikideal.net). | ||
<span id="violations"></span> | <span id="violations"></span> | ||