Sample ccTLD Human Rights Impact Assessment Tool · Sample ccTLD Human Rights Impact Assessment...

37
Sample ccTLD Human Rights Impact Assessment Tool Introduction to the Tool This Human Rights Assessment Tool contains a range of scenarios and questions related to Human Rights relevant to a Registry's operations (specifically, a Country Code Top-level Domain, or ccTLD, registry). The tool covers the following issue areas: Issue Areas Page # A. Registries as Employers 3 – 14 A.1 Working Hours 3 A.2 Wages 3 A.3 Leave 4 A.4 Harassment 5 A.5 Employee Privacy 6 A.6 Grievance Mechanism 7 A.7 Forced Labour 8 A.8 Child Labour 9 A.9 Promoting Diversity 10 A.10 Non-Discrimination 10 A.11 Freedom of Association 11 A.12 Workplace Health and Safety 12 A.13 Intellectual property rights 13 B. Registries as Procurers of Goods and Services 15 – 20 B.1 Human Rights in Supply Chain Management 15 B.2 Hours, Wages and Leave 15 B.3 Workplace Health and Safety 16 B.4 Forced Labour 16 B.5 Child Labour 17 B.6 Non-Discrimination 17 B.7 Privacy 18 B.8 Intellectual property rights 18 B.9 Community Impact 19 C. Registries, the Environment, and Local Communities 21 – 24 C.1 Environmental Impacts 21 C.2 Security 21 C.3 Land Management 22 C.4 Corruption and Bribery 23 D. Registries as Providers of TLD and Other Domain Services (in-house or outsourced) 25 – 34 D.1 Acquiring TLDs 25 D.2 Human Rights in Registrar Engagement 26 D.3 Providing Domain Names 27 D.4 Maintaining Domain Names 30 D.5 Amending / Transferring Domain Names 31 D.6 Engaging with Third Parties 31 D.7 Terminating Domain Names 33 D.8 Grievance Mechanisms and Resolution 33 D.9 Transparency 34 E. Due Diligence 35 – 37 E.1 Assessing Impacts 35 E.2 Addressing impacts 35 E.3 Government requests 35 E.4 Tracking compliance 36 E.5 Communication and reporting 36 E.6 Access to remedy 37

Transcript of Sample ccTLD Human Rights Impact Assessment Tool · Sample ccTLD Human Rights Impact Assessment...

SampleccTLDHumanRightsImpactAssessmentToolIntroductiontotheTool

ThisHumanRightsAssessmentToolcontainsarangeofscenariosandquestionsrelatedtoHumanRightsrelevanttoaRegistry'soperations(specifically,aCountryCodeTop-levelDomain,orccTLD,registry).Thetoolcoversthefollowingissueareas:

IssueAreas Page#

A.RegistriesasEmployers 3–14

A.1WorkingHours 3

A.2Wages 3

A.3Leave 4

A.4Harassment 5

A.5EmployeePrivacy 6

A.6GrievanceMechanism 7

A.7ForcedLabour 8

A.8ChildLabour 9

A.9PromotingDiversity 10

A.10Non-Discrimination 10

A.11FreedomofAssociation 11

A.12WorkplaceHealthandSafety 12

A.13Intellectualpropertyrights 13

B.RegistriesasProcurersofGoodsandServices 15–20

B.1HumanRightsinSupplyChainManagement 15

B.2Hours,WagesandLeave 15

B.3WorkplaceHealthandSafety 16

B.4ForcedLabour 16

B.5ChildLabour 17

B.6Non-Discrimination 17

B.7Privacy 18

B.8Intellectualpropertyrights 18

B.9CommunityImpact 19

C.Registries,theEnvironment,andLocalCommunities 21–24

C.1EnvironmentalImpacts 21

C.2Security 21

C.3LandManagement 22

C.4CorruptionandBribery 23

D.RegistriesasProvidersofTLDandOtherDomainServices(in-houseoroutsourced) 25–34

D.1AcquiringTLDs 25

D.2HumanRightsinRegistrarEngagement 26

D.3ProvidingDomainNames 27

D.4MaintainingDomainNames 30

D.5Amending/TransferringDomainNames 31

D.6EngagingwithThirdParties 31

D.7TerminatingDomainNames 33

D.8GrievanceMechanismsandResolution 33

D.9Transparency 34

E.DueDiligence 35–37

E.1AssessingImpacts 35

E.2Addressingimpacts 35

E.3Governmentrequests 35

E.4Trackingcompliance 36

E.5Communicationandreporting 36

E.6Accesstoremedy 37

HowtoUseThisToolThistoolisaworkingmodelforassessingthehumanrightsimpactsofInternetinfrastructureproviders,startingwith

country-codetopleveldomain(ccTLD)registries.

Ifyouwouldliketoofferfeedbackonthemodelorareinterestedinpartneringtocarryoutanhumanrightsimpact

assessmentforyourbusiness,pleasecontact:

COLLINKURRE([email protected])orCATHRINEBLOCHVEIBERG([email protected])

Step1:Completethehumanrightsimpactscenario.Foreachscenarioplease:

1.Ratetheprobabilityofthescenariotakingplaceduringoneyearfromnowacrosstheoperationsofyourcompany:oDoesnotoccur

oIsolatedincidentsmayoccur

oOccurssystematically

2.Describethekeypotentialimpactsandwhoisimpacted.3.Ratethenumberofindividualspotentiallyimpactedinanyoneyear:

o0-500persons

o500-5.000persons

o5.000personsandabove

4.Ratetheseverityofthehumanrightsconsequencesfortheaffectedindividuals:oLow

oMedium

oHigh

Step2:CompleteofthehumanrightscomplianceassessmentindicatorsForeachquestionandindicatortherespondantispresentedwiththefollowingansweroptions:

oYes/No.Themoreindicatorsandquestionstherespondant9sabletoanswerinthisway,themorereliabletheassessmentwill

be.

oF/A(Furtherattentionrequired):Thisoptionisintendedasalastresortiftherespondantisuncertainaboutwhatthecorrectansweris,andshouldthereforebeusedinfrequently,ifatall.

oN/A(Notapplicable):usethisoptionifaparticularquestionorindicatorisn'trelevantforthecompany.Pleaseprovidean

explanationinthe"Comments"sectionwhererelevant.

Theindicatorsshowyouthekindofpolicies,procedures,andpracticesyoushouldideallyhaveinplaceinordertoanswer“yes”

tothemainHumanRightsCompliancequestion.

Whenyouanswer“no”toagivenquestionorindicatoritmayimplythatyouhaveidentifiedagapinyourpolicies,procedures,

orpractices.Makeanoteoftheindicator(s)thatresultedinthisgap,andaddthemtoaprioritisedlistofimprovementactions.If

youanswered“Furtherattention”toagivenquestionorindicator,makeanoteofwhatactionyouneedtotakebeforethe

questionorindicatorcanbeansweredwitha“yes.”

Step3:AnswertheHumanRightsCompliancequestionIt’simportantthatalltheindicatorsarecompletedbeforeattemptingtoanswerthemainHumanRightsCompliancequestion.

Oncealloftheindicatorshavebeencompleted,usetheanswerstoassesstheHumanRightsCompliancequestion.

Iftheanswerisdeterminedtobe“yes”totheCompliancequestionbutoneormoreindicatorshavebeenansweredwith“No”or

"FurtherAttention,"anoteshouldbeincludedexplainingwhytheindicatorswerenotconsiderednecessaryfortheCompany.

2

A.RegistriesasEmployersAppliestoallemployeesincludingfieldworkersandmaintenancepersonnelandtothird-partyin-premisestaff

A.1WorkingHours

Righttoworkandtojustandfavourableconditionsatwork,RighttorestandleisureHumanrightsimpactscenario

Probability(click

belowtochoose

option)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aNormalcompanyworkinghoursarelimitedto48hoursperweekbybothcompanypolicyandpractice(orfewerifprovidedbynationallaw,collectiveagreementorindustrystandards).

b Overtimeisinfrequent,remuneratedatpremiumrate,anddoesnotexceed12hoursinanyoneweekor36hourspermonth.

cTheregistryhasasystemtoplan,recordandmonitorhoursworkedbyeachemployee,andregularlyevaluateswhetherthenumberofemployeesissufficienttomeetproductiontargetswithoutresortingtoovertime.

dWhereovertimeperemployeesystematicallyexceeds12hoursperweek,theregistryincreasesitsworkforcetocorrespondtoproductiontargets,orputsinplacemeasurestoincreaseworkerproductivityandreduceovertime.

e Registryemployeesareallowedatleast24consecutivehoursofrest(ormoreifprovidedbynationallaworindustrystandards)ineverysevendayperiod.

f

Theregistryensuresthatemployeeshavenolessthana30-minutebreakforevery4hoursofwork(ormoreifprovidedbynationallaworindustrystandards)andthatemployeesareallowedtousetoiletfacilitieswhenevernecessaryandnotjustduringdesignatedbreaks.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryensurethattheworkweekislimitedto48hours;that

overtimeisinfrequentandlimited;andthatemployeesaregivenreasonable

breaksandrestperiods?

A.2Wages

Righttoworkandtojustandfavourableconditionsatwork,RighttoadequatestandardoflivingHumanrightsimpactscenario

Employeesareunabletomake,atminimum,alivingwagesufficienttomeetthebasicneedsoftheemployeeandtheemployee'slegitimatedependents.

Employeesareexposedtoexcessiveworkinghours,excessiveovertimeorlackofrestperiods.(Exceeding48hoursinanormalworkweek.Forshiftwork,exceeding56hoursinanyoneweek,or48hours'averageinathree-weekperiod).Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

3

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aItiscompanypolicytoprovideemployeeswithalivingwagesufficienttomeetbasicfood,clothingandhousingneedsandprovidesomediscretionaryincomeforthemselvesandtheirdependents.

b Theregistryisawareofwhetherthelegalminimumwageinthecountryofoperationmeetstherequirementforalivingwageinpractice.

c

Ifnonationalminimumwageisestablished,orifnationalminimumwagestandardsareinsufficienttomeetthebasicneedsofemployeesandtheirdependents,theregistrycalculatesalivingwagebasedonthecostoflivinginitsareaofoperation.

dPart-timeworkersreceivewagesandbenefitsthatareproportionatetothoseoffull-timeworkers,andreceiveovertimecompensationataminimumof1.25timestheirhourlysalary.

eTheregistrypayswagesatregularintervalsanddoesnottakedeductionsfromwagesfordisciplinarymeasuresorotherdeductionsnotauthorisedbynationallaw.

f Bonusandpiece-ratepaymentsystemsaremonitoredtoensurethatthetotalsalarypaidmeetslivingwagerequirementswithoutresortingtoovertime.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryprovidealivingwagethatenablesworkerstomeetthebasic

needsofthemselvesandtheirdependents?

A.3Leave

Righttoworkandtojustandfavourableconditionsatwork,Righttofamilylife,RighttohealthHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a

Companyemployeesaregrantedatleastthreeweeksofpaidholidayleaveperyearormoreifrequiredbynationallaworcollectiveagreements.Part-timeandshort-termemployeesareprovidedwithpaidholidayleaveproportionatetothenumberofhoursworked,atarateequaltothatofpermanentfulltimeemployees.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Employeesarenotprovidedwithleave,includingannualpaidleave(minimum3weeks),paidsickleaveandpaidmaternityleave(minimum14weeks).Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

4

b

Employeesareentitledtopaidsickleaveinaccordancewiththeapplicablenationallaw.Ifsickleaveisnotprovidedforinnationallaw,theregistryconsultswithunionorworkerrepresentativestoestablishalternativemeansofprotectionincaseofillnessorinjury.

c Sickleaveisnotdeductedfromemployees'vacationtime.

d Femaleemployeesareentitledtonolessthanfourteenweeksofpaidmaternityleaveperchild.

e

Theregistrygrantscompassionateorparentalleavetoemployeeswhohaverecentlyadoptedachildorchildren,orhavetakenontheresponsibilitytocareforfosterchildrenorotherdependentchildren.Suchleaveshouldbegrantedonequalbasisi.e.regardlessoftheemployee'sgender.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrygrantemployeespaidholidayleave,sickleave,andparental

leaveinaccordancewithinternationalminimumstandards?

A.4Harassment

TherighttofreedomfromdiscriminationandharassmentHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasacommitmenttopreventworkplaceharassment,andactivelyinformsemployeesoftheirobligationstorefrainfromviolent,threateningorabusiveconduct.

b Theregistryhasacodeofconducttooutlineguidelinesforappropriatebehaviourattheworkplaceandmanageoffensiveorabusivebehaviour.

c Allemployeesareinformedaboutapplicableinternalproceduresandcomplaintmechanismsinrelationtooffensivebehaviourorabusivebehaviour.

d Managersreceivetrainingonhowtoidentifyanddealwithinstancesofharassmentintheworkplace.

eTheregistryinvestigatesallcomplaintsofworkplaceharassmentandtakesappropriatepreventativeanddisciplinaryactionincludingreportingofcriminalactionstotheappropriateauthorities.

f Theregistryhasaninternalsystemforhandlingcasesofoffensiveorabusebehaviour.(Suchasystemcouldincludeadesignatedcommittee.)

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Incidentsofsexualorothertypesofphysicalorpsychologicalharassmentoccurintheworkplace.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

5

Doestheregistryprotectworkersfromworkplaceharassment,including

physical,verbal,non-verbal,sexualorpsychologicalharassment,intimidation,

abuse,orthreats?

A.5EmployeePrivacy

RighttoprivacyA.5.1PersonaldataandmonitoringHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasaprocedurestatingwhatkindsofworkplacemonitoringareallowed;whatkindofpersonalemployeeinformationisretained;whereitisstored;whohasaccess;andwhytheinformationisnecessary.

bEmployeesaremadeawareofallworkplacemonitoring,includingcamerasandInternetore-mailmonitoring,andthespecificpurposeofthemonitoring.

c

Theregistrydoesnotattempttogaininformationfromanindividualwithwhomtheemployeehasaprivilegedrelationship,includingaformeremployer,doctororlawyer,withouttheemployee'spriorwrittenconsent.

d

Employeeshaveaccesstoallpersonaldatacollectedaboutthem,includingdataconcerningdisciplinarydecisionsanddataobtainedthroughmonitoring,butexcludingconfidentialmanagementspecificinformationrelatedtoperformanceevaluations,salarynegotiations,promotions,rotationandsimilaremploymentdecisions.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryrespecttheprivacyofitsemployeeswheneveritgathers

privateinformationormonitorstheworkplace?

A.5.2SensitivepersonaldataHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Workplacemonitoringorcollectionofemployeepersonaldataoccurswithouttheknowledgeofemployees,withoutajustifiablepurposeorinadisproportionatemanner.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Theregistryhandlessensitivepersonaldataaboutemployeeswithoutcarefulconsultationofnationalandinternationallawsondataprotection.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

6

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhasacommitmenttoprotectsensitivepersonaldataofitsemployees.

b Theregistryonlygatherspersonaldatathatislawful,proportionateandforajustifiablepurpose.

c Employeesaremadeawareofrequeststoaccesstheirsensitivepersonaldata.

dTheregistryhasinplaceanemployeewhistle-blowerprogramthroughwhichemployeescanreportconcernsonthemanagementoftheirpersonaldata.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrycomplywithnationalandinternationallawsondata

protectioninrelationtogatheringandhandlingsensitivepersonaldata?

A.6GrievanceMechanism

RighttoafairhearingHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasawrittenprocedure,agreeduponwithemployeerepresentatives,forhowemployeegrievancesarereceived,processedandsettled.

b Theprocedureisopentogrievancesconcerningallemployment-andworkplace-relatedissues.

c Allemployees,includingtemporaryorthird-partyemployees,areabletousetheprocedure.

dEmployeesareclearlyinformed,inalanguageunderstandabletothem,onhowtousetheprocedure;whatgrievancescanbereported;andhowgrievancesareprocessedandresolved.

e Employeesareabletolodgegrievancesconfidentiallyandwithoutfearofretributionbymanagementorotheremployees.

f Thegrievanceprocedureisabletorespondtocasesofharassmentbymanagers,includinggenderspecificissues,suchassexualharassment.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Employeesareunabletofileandresolveworkplacegrievancesinasafe,transparentandfairmanner.

7

gThereiscommitteeresponsibleforhearing,processing,andsettlinggrievances,andthecommitteehasrepresentationbyemployeerepresentatives.

hAnemployeelodgingagrievanceisallowedtoparticipateinhearingsheldwithrespecttothatgrievanceandisinformedoftheoutcomeofthegrievanceresolutionprocess.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryhaveamechanismforhearing,processing,andsettling

grievancesofemployees?

A.7ForcedLabour

RighttofreedomfromforcedlabourandservitudeHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryensuresthatallemployeesreceiveemploymentcontractspriortostartingworkfortheregistry,andthatcontractsareunderstoodbytheemployees.

b Noticeperiodsareofreasonablelengthandclearlycommunicatedtoworkerspriortostartingemployment.

c Iflettersofreleaseorotherdocumentsareneededfortheemployeetoleaveemployment,theregistryissuessuchletterswithoutdelay.

dWithinnormalworkinghoursemployeesareabletoearnalivingwagesufficienttomeetthebasicneedsofthemselvesandtheirclosestdependents.

e Overtimeworkispaid,voluntaryandnotcompelledthroughthreatofpaydeductions,terminationorothersanctions.

fAllworkersareallowedtoleaveregistrypremisesduringbreaksandattheendoftheirshifts,andworkersinregistryhousingmayfreelyenterandexittheiraccommodationatanytime.

g

Theregistry(oritsrecruitingagencies)doesnotrequireworkerstopayrecruitmentfeesorlodgemoneydeposits,anddonotretainidentitycards,passports,traveldocumentsorotherpersonalitemswithoutwhichemployeescannotleaveemployment.

Workfromemployeesisobtainedinvoluntarilyandunderrealorperceivedthreat(e.g.Forcedovertime,Recruitmentfees,MoneydepositsandRetentionofpersonaldocuments).

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

8

h

Loansorsalaryadvancementstoemployeesarebasedonfairtermsthatareclearlyexplainedtotheemployee,arenotgrantedtocoverbasiclivingexpenses,arelimitedinsize,anddonotrequiretheemployeetoremainwiththeregistryuntilrepaymentiscompleted.

iIftheregistryusesprisonlabouritensuresthatallprisonworkershavebeenconvictedbyacourtoflaw,andthattheworkisvoluntaryandsupervisedbyapublicauthority.

j Theregistryensuresthatitdoesnotuselabourfromagenciesorfirmsinvolvedinhumantraffickingorotherformsofbondedlabour.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakeallnecessarymeasurestoensurethatitdoesnot

participateinanyformofforcedorbondedlabour?

A.8ChildLabour

RightsofthechildHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistrydoesnotemployworkersunder15yearsofageforfull-timework,13yearsofageforlightworkand18yearsofageforhazardouswork.

b Iftheregistryemploysminorsbelowtheageof18,theregistryhasalistofjobfunctionsthatcansafelybeperformedbyminors.

cTheregistryisawareoflocalage-levelsforcompletionofcompulsoryeducationanddoesnotemployworkersunderthatageforworkthatmayinterferewithsucheducation.

d

Theregistryhasareliableproceduretochecktheageofyoungjobcandidatesbybirthcertificate,otherofficialformsofidentification,orbyalternativemeanssuchasphysicalappearanceorknowledgeofhistoricevents.

e

registryapprenticeshipprogrammesdonotconstitutethemainportionoftheworkforce,arelimitedinduration,areperformedinconjunctionwithaschoolprogramme(orsupervisedbyLabourMinistersorLabourOrganisations),anddonotinterferewiththechild'scompulsoryeducation.

Employmentofchildrenorminors(belowtheageof15yearsforfull-timeworkandbelowtheageof18yearsforhazardouswork)occursintheworkplace.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

9

f

Iftheregistrybecomesawarethatitisemployingyoungworkersbelowminimumage,itensuresthattheyareenrolledineducationprogramme,andthattheirdependentsarecompensatedfortheresultinglossofincome.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrycomplywithminimumagestandards?

A.9PromotingDiversity

TherighttofreedomfromdiscriminationandharassmentHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Apolicyondiversitymanagementisinplacecontainingacommitmenttohaveadiverseworkforcethatmirrorsthesocietyinwhichtheregistryoperates

b Thepolicyissupportedwithproceduresandguidancedefiningresponsibilitiesandimplementationsmeasures.

c Allmanagersreceivetrainingincompanypolicyandguidanceondiversitymanagement.

d Theregistryhasestablishedgoalsandtargetsforrepresentationofspecificemployeegroupsintheworkforceandcontinuouslymonitorsperformance.

eTheregistryhasestablishedgoalsandtargetsforperformanceofdiverseemployeegroupsinrelationtorecruitment,hiring,jobgrade,andremunerationandcontinuouslymonitorsperformance.

f Wheregoalsarenotmettheregistrytakesactivestepstopromotediversityintheworkforce.

gTheregistryhasestablishedaforum,accessibleandknowntoallemployees,wherebytheycanregistersuggestionsandideasforimprovementindiversitymanagement.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryrecognize,valueandpromotethedifferencesthat

individualsbringtoitsworkforce?

A.10Non-Discrimination

TherighttofreedomfromdiscriminationandharassmentHumanrightsimpactscenario

Peoplefromcertainsocietalgroupsdonothaveequalopportunitiestogainemploymentorpromotionintheregistryorincertainpositionsintheregistry.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

10

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aItiscompanypolicytoensurethatdecisionsconcerninghiring,wages,promotion,training,discipline,retirementandterminationarebasedonlyonunbiasedcriteria.

b Eachjobcategoryintheregistryhasawrittendescriptionstatingthesalarylevelandthequalificationsrequiredforthatjobcategory.

cEmploymentadvertisementsdonotreferencediscriminatorycriteria,suchasrace,genderorage(unlesslistedaspartofalegalequalopportunitiespromotion).

dJobapplicantsarenotaskedtogiveinformationabouttheirmaritalstatus,pregnancy,intenttohavechildren,numberofdependents,orsimilarinformationthatmayleadtodiscriminatoryhiringdecisions.

e Allhiringmanagersreceivetrainingregardingthecompany'snon-discriminationpolicies.

fTheregistryhasestablishedagrievancemechanism,accessibleandknowntoallemployees,whereemployeescansafelyreportincidentsofworkplacediscrimination.

gTheregistrytakesreasonablestepstoenablequalifiedpersonswithdisabilitiesorhealthconditionstogainemploymentopportunitieswiththeregistry,forexampleallowingwheelchairaccess,flexibleworkinghours,longerbreaksetc.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryensurethatemployment-relateddecisionsarebasedon

relevantandobjectivecriteria?

A.11FreedomofAssociation

RighttofreedomofassociationHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Employment-relateddecisionsaremadeondiscriminatorygrounds,andnotonthebasisofqualifications,skillsandrelevantexperience.(Canbeseeninpracticesrelatedto:recruitment,compensation,accesstotraining,employeebenefitsandservices,promotion,terminationorretirement.Groundsfordiscriminationcanbe:sex,race,colour,disability,religionorbelief,sexualorientation,age,language,nationalorsocialorigin,politicalorotheropinion,tradeunionmembership,marital,caste,healthoranyotherstatusrecognizedbyinternationallaw.)

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Theregistrydoesnotalloworfacilitatetherightofemployeestoorganizeandtobargaincollectively,andemployeesareexposedtoharassmentorretaliationbasedontheirorganisational/tradeunion

affiliationornon-affiliation(includingincountriesofoperationwheretrade-unionsareun-commonandsuppressed).

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

11

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a

Theregistryhasacommitmenttorecognisetherightsofitsworkerstofreedomofassociationandcollectivebargaining,includingtherighttofreelyformand/orjoinindependenttradeunions,andthiscommitmentisclearlycommunicatedtoallemployees.

b

Theregistryrecognisesworkers'organisationsforcollectivebargainingpurposesandhasproceduresinplacetoensureregularcollectivebargainingwithauthorisedworkerrepresentativesconcerningallworkplacerelatedissues.

cTheregistryallowsworkerrepresentativesaccesstocollectivebargainingagreements,registrypremises,employeesandotherrelevantdocumentationneededtofulfiltheirduties.

dTheregistryprohibitsdiscriminationoradverseactionsagainstworkerrepresentativesoremployeesforparticipatingorrefrainingtoparticipateinlawfultradeunionactivities.

eTheregistryhasagreedwithworkers'representativesabouttherequirementsofafairhearingtobefollowedinrelationtoalldisciplinarycasesandemployeegrievances.

fTheregistryhasacommittee,withparticipationofemployee-electedrepresentatives,whichisresponsibleforhearing,processing,andsettlingdisciplinarycasesandemployeegrievances.

gTheregistryallowsemployeestoengageinregularemployee-onlymeetingswithinnormalworkinghours,whereemployeescandiscussconcernsregardingworkingconditions.

hWhereallowedbylocallegislation,andifindependenttradeunionsarenotpresent,theregistryinformsemployeesoftheirrighttoformindependentcollectiverepresentationattheworkplace.

iWhereallowedbylocallegislation,theregistryinformsemployeesoftheirrighttoengageinregularcollectivebargainingconcerningallworkplaceissues.

jCompanymanagementmeetsregularlywithemployeerepresentativestodiscusswork-relatedproblemsandanygrievancesemployeesmaywishtoraise.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryrecognisetherightsofitsworkerstofreedomofassociation

andtobargaincollectively?

A.12WorkplaceHealthandSafety

Righttoworkandtojustandfavourableconditionsatwork,Righttoadequatehealth,Righttolife.Humanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Employeesareexposedtounsafeorunhealthyworkingenvironments,resultinginaccidentsorpersonalinjury.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

12

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhaseffectivehealthandsafetyproceduresinplace,whichcomplywithindustry,nationalandinternationalstandards.

b Healthandsafetyinformationandproceduresareavailabletoemployeesinalanguagetheyunderstand.

c Responsibilitiesforhealthandsafetytasksareclearlydefined.

dHealthandsafetyincidentsarereportedandinvestigated,andaconfidentialprocedureisinplaceforreceivingandhandlinghealthandsafetycomplaintsfromemployees.

e Theregistryroutinelymonitorsitsproductionprocesses,machineryandequipmenttoensurethattheyaresafeandingoodworkingorder.

fWorkersandmanagersaretrainedtorespondtoworkplaceemergencies;firstaidkitsandfireextinguishersarereadilyavailable;andescapeexitsareclearlymarkedandfreefromobstruction.

gTheworkplaceismaintainedtoensurecleanandcomfortableconditionsincludingasuitabletemperature,ventilationandlighting;suitablewashingandsanitationareasappropriateforbothgenders.

h

Residentialorovernightfacilitiesaresafeandsanitaryandmeetthebasicneedsofworkersincludingwithregardtosafety,space,temperature,lighting,ventilation,food,water,sanitaryfacilities,privacy,andaffordability.

i Theregistryprovidessafedrinkingwaterforallemployeesandfacilitiesforcleanandsanitaryfoodstorageandeating.

jWhererelevanttheregistryhasputinplacespecialhealthandsafetyprecautionsforpregnantwomen,employeeswithdisabilities,nightworkers,youngworkersandothervulnerablegroups.

kTheregistryhasaproceduretoensurethatallemployeesareprovided,freeofchargeordeposits,withtheprotectiveequipmentandtrainingnecessarytosafelyperformtheirjobfunctions.

lEmployeesarekeptfullyinformed,inalanguageandformunderstandabletothem,ofanyhealthandsafetyrisksassociatedwiththeirjobfunctions,includingrequirementsforprotectiveequipment.

m

Ataminimumofeverytwoyears,andwhenassignedtonewtasks,employeesreceivetrainingbyaknowledgeableexpertinthesafeuseofequipmentandprocesses,andanaccuraterecordiskeptofwhohasbeentrainedandforwhattasks.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryensurethatitsworkersareaffordedsafe,suitableand

sanitaryworkfacilities?

A.13IntellectualPropertyRights

Righttointellectualproperty

13

Humanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistrypolicyonownershipoftheintellectualpropertyrightsforinventionsorotherworksisagreeduponbyemployeesandtheirrepresentatives.

bTheregistryhasanagreementwithitsemployeesabouthowintellectualpropertyrightsforproductscreatedorinventedinwholeorinpartbyemployeesaretobeshared.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryobtainemployees'informedconsentandprovidethemwith

compensationforinventionsorotherworksgeneratedbythementirelyorin

part?

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Aspartofitsduediligenceprocesses,thecompanycontactsthepatentofficestoobtaininformationaboutinventionsitmaywishtouse.

b Thecompanyobtainsauthorizationfrompatentholdersbeforecommerciallyexploitinganylocallypatentedideasorproducts.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doesthecompanyobtainauthorizationfromexistingpatentholder(s)before

commerciallyexploitinganylocallypatentedinvention?

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Employeesarenotcompensatedforinventionsorotherworksgeneratedinwholeorinpartbythem.

14

B.RegistriesasProcurersofGoodsandServicesAppliestoTier1suppliers,andtolower-tiersupplierswhereasignificantpartoftheirproductiongoestotheregistry.

B.1HumanRightsinSupplyChainManagementHumanrightsimpactscenario

Probability(clickbelowtochooseoption)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhasacommitmenttopromotethecontinuousimprovementofhumanrightsstandardsofitssuppliers.

b Thecommitmentissupportedbytrainingonhumanrightsstandardsforrelevantmanagementandprocurementstaff.

c Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofabusivehumanrightsconduct.

dTheregistryhasdefinedminimumrequirementsforthehumanrightsstandardsofsuppliersandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

e Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofhumanrightsstandards.

fTheregistry'sprocurementpractices,suchasprices,deliverytimesandinternalincentivestructures,encourageimprovedhumanrightsinsuppliersandbusinesspartners.

g Theregistrycollaborateswithothercompaniestopromoteimprovedhumanrightsstandardsinsuppliers.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrypromoteinternationalhumanrightsstandards(e.g.employee,communityandconsumerrights)initsinteractionswithsuppliersandbusinesspartners?

B.2Hours,Wages,andLeaveRighttoworkandtojustandfavourableconditionsatwork,Righttorestandleisure,Righttoadequatestandardofliving,Righttofamilylife,RighttohealthHumanrightsimpactscenario

Humanrightsstandards(e.g.onemployeetreatment,communityimpactandconsumerrights)arenotadequatelypromotedininteractionswithsuppliersandbusinesspartners

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

Supplieremployeesareexposedto:-excessiveworkinghours,excessiveovertimeandlackofrestperiods;-salariesthatdonotconstitutealivingwagesufficienttomeetthebasicneedsoftheemployeeandtheemployee'slegitimatedependents;or-lackofpaidannualleave,paidsickleaveandpaidmaternityleave.

15

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasdefinedminimumrequirementsconcerningworkinghours,overtime,restperiods,wagesandlaveandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnon-conformancewiththeserequirements.

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrightscompliancequestion YES NO F/A N/A

Doestheregistrypromotelabourstandardsonworkinghours,overtime,restperiods,wagesandleaveinitsinteractionswithsuppliersandbusinesspartners?

B.3WorkplaceHealthandSafetyRighttoworkandtojustandfavourableconditionsatwork,RighttohealthHumanrightsimpactscenario

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasdefinedminimumrequirementsconcerningworkplacehealthandsafetyandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnon-conformancewiththeserequirements.

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakestepstoensurethatemployeesofitssuppliersareaffordedsafe,suitableandsanitaryworkfacilities?

B.4ForcedLabourRighttofreedomfromforcedlabourandservitudeHumanrightsimpactscenario

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

Supplieremployeesareexposedtounsafeorunhealthyworkingenvironments,resultinginaccidentsorpersonalinjury.

7
16

Probability

(choose)

Severityofconsequencesfor

impactedpeople(clickto

chooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasdefinedminimumrequirementsconcerningforcedandbondedlabourandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnon-conformancewiththeserequirements.

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakeallnecessarymeasurestoensurethatitssuppliersdonot

participateinanyformofforcedorbondedlabour?

B.5ChildLabour

RightsoftheChildHumanrightsimpactscenario

Probability

(choose)

Severityofconsequencesfor

impactedpeople(clickto

chooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhasdefinedminimumrequirementsconcerningminimumageandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnon-conformancewiththeserequirements.

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakeallnecessarymeasurestoensurethatitssupplierscomply

withminimumagestandards?

B.6Non-Discrimination

TherighttofreedomfromdiscriminationandharassmentHumanrightsimpactscenario

Workfromsupplieremployeesisobtainedinvoluntarilyandunderrealorperceivedthreat(e.g.Forcedovertime,Recruitmentfees,MoneydepositsandRetentionofpersonaldocuments).Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Suppliersemploychildrenorminors(belowtheageof15yearsforfull-timeworkandbelowtheageof18yearsforhazardouswork).

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

17

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)High

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasdefinedminimumrequirementsconcerningnon-discriminationandnon-harassmentandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnon-conformancewiththeserequirements.

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakeallnecessarymeasurestoensurethatitssuppliersprohibitharassmentandbaseemployment-relateddecisionsonrelevantandobjectivecriteria?

B.7PrivacyRighttoprivacyHumanrightsimpactscenario

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhasdefinedminimumrequirementsconcerningprivacyandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnotmeetingtheprivacystandards

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakeallnecessarymeasurestoensurethatitssupplierscomplyprivacystandards?

B.8IntellectualPropertyRightsRighttointellectualproperty,righttosecurity,

Supplieremployeesareexposedtoharassmentoremploymentrelateddecisionsmadeondiscriminatorygrounds,andnotonthebasisofqualifications,skillsandrelevantexperience.(Canbeseeninpracticesrelatedto:recruitment,compensation,accesstotraining,employeebenefitsandservices,promotion,terminationorretirement.Groundsfordiscriminationcanbe:sex,race,colour,Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

Supplierworkplacemonitoringorcollectionofemployeepersonaldataoccurswithouttheknowledgeofsupplieremployees,withoutajustifiablepurposeorinadisproportionatemanner.

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

18

Humanrightsimpactscenario

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasdefinedminimumrequirementsconcerningintellectualpropertyandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

cTheregistryhasconsideredapreferenceforfreeandopen-sourcesoftwareandhardwaretoenhancesecurityandreducepotentialunforseenintellectualpropertlyclaims.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakeallnecessarymeasurestoensurethatitssupplierscomplywithintellectualpropertyrightsstandards?

B.9CommunityImpactRighttoadequatehealth,RighttoadequatestandardoflivingHumanrightsimpactscenario

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasdefinedminimumrequirementsconcerningenvironmentalimpactsandhazardsandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnon-conformancewiththeserequirements.

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Employeesofsuppliersarenotcompensatedforinventionsorotherworksgeneratedbythem,entirelyorinpart.

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

Environmentalimpactsofsuppliersleadingtohealthproblems,reducedlivelihoodsandaccesstosafewaterforlocalcommunitiesoccur.

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

19

Doestheregistrytakeallnecessarymeasurestoensurethatitssuppliershaveaproceduretoassessandaddresstheenvironmentalimpactsofitsoperationsonthehumanrightsoflocalcommunities?

20

C.Registries,theEnvironment,andLocalCommunities

C.1EnvironmentalImpacts

Righttoadequatehealth,RighttoadequatestandardoflivingHumanrightsimpactscenario

Probability(click

belowtochoose

option)

Severityofconsequencesfor

impactedpeople(clicktochoose

option)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryfollowsinternationalenvironmentalstandardsorlocallaw,whateveristhehighest.

b

Beforestartingnewoperationsordevelopments,theregistryconductsanimpactstudytoassessthepotentialenvironmentalandsocialimpactsoftheplannedactivities,includinganassessmentoftheirpotentialhumanrightsconsequencesforlocalinhabitantsorotheraffectedcommunities.

cTheregistryhasamethodforidentifyingtheindividualswhoarelikelytobeaffectedbysuchimpactsandengagesinconsultationwiththoseindividuals,priorto,duringandaftercarryingouttheoperations.

dTheregistrysharesthefindingsofitssocialandenvironmentalimpactassessmentstudieswiththeaffectedindividualsinaformandlanguageaccessibletothem.

eInconsultationwiththeaffectedindividuals,theregistrydevelopsappropriatemanagementplanstoprevent,reduceandmitigateadversesocialandenvironmentalimpacts.

fTheregistrycontinuouslymonitorsitssocialandenvironmentalimpactsandprovidesaffectedindividualswithregularaccesstoupdatedinformationaboutthesocialandenvironmentalimpactsofregistryoperations.

g Theregistryhasclearproceduresinplaceforwastemanagement,includinge-wastemanagement.

hTheregistryprovidesorcollaboratesinanaccessible,effective,fairandtransparentmechanismtoreceiveandresolvegrievancesfrompotentiallyaffectedindividuals.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryhaveaproceduretoassessandaddresstheimpactofitsoperations

onthehumanrightsoflocalcommunities?

C.2Security

Righttofreedomfromtorture,ordegradingtreatmentorpunishment,Righttolife,libertyandsecurityofpersonHumanrightsimpactscenario

Environmentalimpactsleadingtohealthproblems,reducedlivelihoodsorreducedaccesstosafewaterforlocalcommunitiesoccur.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

21

Probability

(choose)

Severityofconsequencesfor

impactedpeople(clicktochoose

option)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryregularlyconductssecurityriskassessments,andensuresthatcompanysecurityarrangements,includingthedeploymentofprivateguardsorpublicsecuritypersonnel,areproportionatetothesecurityrisk.

b Companysecurityriskassessmentsincludeanassessmentoftheriskofhumanrightsabusesbyprivateandpublicsecuritypersonnelinthecountryorareasofoperation.

c

Theregistryselectsprivatesecurityfirmsbasedoninformationaboutprofessionalability,levelofstafftraining,qualityofequipment,pastinvolvementinhumanrightsabuses,linkswithpoliticalfactionsororganisationsandotherrelevantcriteria.

d

Contractswithprivatesecurityfirmsincluderequirementsrelatedtointernationalhumanrightsstandardsforlawenforcementanduseofforce;requiretheinvestigationanddisciplineofanyunlawfulorabusiveconductbysecurityguards;andallowforterminationofthecontractincaseofsuchconduct.

eThereisamanualdefiningthedutiesofsecuritypersonnel,andallsecuritypersonnelreceivetrainingonrulesofconductbasedoninternationalhumanrightsstandardsforlawenforcementandtheuseofforce.

f

Wherepublicsecuritypersonnelareassignedtocompanyfacilities,theregistryseekstoensuretransparencyconcerningitsinteractionswithpublicsecurityagencies,andtheregistrycommunicatestotherelevantpublicsecurityagenciesitsdesirethatsecurityfunctionsbeconductedinaccordancewithinternationalhumanrightsstandardsforlawenforcementandtheuseofforce.

g

Theregistryhasaprocedureforrecordingsecurity-relatedincidents,includingamechanismforhandlingcomplaintsfromstafforlocalcommunitiesrelatedtotheconductofsecuritypersonnel,andforwardscredibleallegationsofhumanrightsabusestotherelevantauthorities.

h

Theregistryhasaprocedureformonitoringandevaluatingitssecurityarrangements,includingtheproportionalityofthesecurityarrangement;impactonlocalcommunities;impactonexistinglocaltensionsorconflicts;securityincidentsrecorded;andcredibleallegationsofhumanrightsabusesbyregistrysecuritypersonnel.Representativesfromthelocalcommunityareconsultedaspartofthemonitoring.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakestepstoensurethatcompanysecurityarrangementsarein

accordancewithinternationalhumanrightsprinciplesforlawenforcementandthe

useofforce?

C.3LandManagement

Righttoownproperty,Righttoadequatehousing,Righttoadequatestandardofliving

Localcommunitiesareexposedtoharassment,intimidation,useofforceorotherimpropertreatmentbyprivatesecurityguards,policeormilitaryprovidingsecurityforcompanypersonnelorforassetsthatare

owned,operatedorusedbytheregistry.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

22

Humanrightsimpactscenario

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aPriortobuying,renting,acquiringorotherwiseaccessinglandorproperty,whetherdirectlyorthroughathirdparty,theregistryidentifiesallexistingownersandusersorofthelandorproperty.

b

Theregistryalsoinvestigatesthepastusageandownershipofthelandorpropertytoensurethatpastusersandownershavenotbeenwrongfullyremoved,andthatanyexpropriationsbytheauthoritieshavebeenconductedinaccordancewithinternationallaw.

c

Theregistryconsultswithaffectedusersandownersofthelandorproperty(includingwomen,tenants,settlers,minoritiesandothervulnerablegroups)andseekstheirfreeandinformedconsentbeforecontinuingtoacquireoraccessthelandorproperty.

dTheregistryensuresthataffectedownersandusersofthelandorpropertyareadequatelycompensated,atorabovemarketreplacementrates,forthelandorproperty,includingfordamagestoland,damagestoassets,andlossofincome.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Beforebuying,renting,acquiringorotherwiseaccessinglandorproperty,doestheregistryensurethatallaffectedownersandusersofthelandorproperty,havebeenadequatelyconsultedandcompensated?

C.4CorruptionandBriberyRighttoaccesstoinformation,RighttotakepartiningovernmentHumanrightsimpactscenario

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryinformsallemployeesaboutitsanti-corruptioncommitment.

b Theregistryprovidesanti-corruptiontrainingatalllevelswithintheorganization

c Informationondisciplinaryproceduresforviolationsofcompanyanti-corruptionpoliciesisavailabletoemployees.

d Theregistryactivelyseeksemployeefeedbackanddialogueonitsanti-corruptioninitiatives.

Acquisition,leasing,orrentingoflandorpropertyleadstoimproperdisplacementofowners,residentsoruserswithoutadequatepriorinformedconsultationorwithoutadequatecompensation.Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

Payments,giftsorservicesaremadeorofferedbyregistryoritsrepresentatives,agentsorsupplierstocivilservantsorpublicauthorities,togainorfacilitatedecisionsandservices

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

23

eTheregistryhasandpromotesafunctionbywhichemployeescansafelyreportsuspicionofcorruptionrelatedcases(e.g.hotlineormailbox)andallocatesresourcestosystematicallyaddresstheissuesthatareidentified.

fTheregistryevaluatesthepotentialareasofcorruptionincludingfactorssuchastypeoftransaction,countriesofoperation,industries,andcustomersorbusinesspartnersinvolved.

g Theregistryevaluatestheriskofcorruptionwhenemployees,agents,intermediariesorconsultantsdealwithpublicofficialsincludingemployeesofstateownedcompanies.

hTheregistryevaluatestheriskofinternalandexternalconflictsofinterestinrelationtobusinesspartnersandgovernmentofficialsincludingemployeesofstateownedcompanies.

i Theregistryhasdevelopedanactionplantoaddresstheriskofcorruption,andhasdefinedresponsibilitiesforeachtaskincludingdetailedpoliciesforhigh-riskareas.

jTheregistryhasidentifiedtheweakestspotsofcorruptionwithintheregistryandseekstoaddresstheseweaknessesinthepreventionofcorruptioninternalfunctionswiththehighestriskofcorruption,andaddressesweaknessesinthepreventionofcorruption.

kTheregistrysharesexperience,proceduresandchallengesofcorruptionwithotherorganizationsi.e.thelocalbusinesscommunity,sectorinitiatives,networksetc.

l Theregistryhasinitiatedorjoinedinitiativeswithothercompaniesinthesamesectorforthepurposeofpromotingafairbusinessenvironment.

m Theregistrystimulatesmulti-stakeholderdialogueonchallengesofcorruption.

n Theregistryencouragesthelocalbusinesscommunityandbusinesspartnerstoinitiatecooperationtofightcorruption.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryevaluateandassesstheriskofcorruptionwhendoingbusiness?

24

D.RegistriesasProvidersofTLDandOtherDomainServices(in-houseoroutsourced)

D.1AcquiringTLDs

Righttofreedomofexpression,righttoprivacy,freedomofassociation,freedomfromdiscriminationD.1.1AgreementswithICANN

Humanrightsimpactscenario

Probability(click

belowtochoose

option)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a TheagreementwithICANNincludesacommitmenttorespectinternationalhumanrights.

b TheagreementwithICANNincludesacommitmenttorespecttherighttoprivacyofregistrarsandregistrants.

c InformationaddedtothepublicWHOISregistryisinlinewithlocalandinternationallawaswellashumanrights.

d InformationaddedtothepublicWHOISregistrycanbeminimizedtoimproveregistrantsprivacy.

e TheagreementwithICANNincludesacommitmenttorespecttherighttofreedomofexpressionofregistrarsandregistrants.

f TheagreementwithICANNincludesacommitmenttorespecttherighttofreedomofassociationofregistrarsandregistrants.

g TheagreementwithICANNincludesacommitmenttoensuretherighttofreedomfromdiscriminationofregistrarsandregistrants.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Arerelevanthumanrightsissuesapartoftheagreementbetweentheregistryand

ICANN?

D.1.2Agreementswithgovernment

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theagreementwiththecorrespondinggovernmentincludesacommitmenttorespectinternationalhumanrights

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

TheagreementbetweentheregistryandICANNdoesnotcoverhowtheregistryshouldalignitselfwithhumanrights,includingonissuessuchasfreedomofexpressionandrighttoprivacy,andinrelationtothe

registry'stermsandconditions.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

InthecaseofaccTLD,theagreementbetweentheregistryandthecorrespondinggovernmentdoesnotcoverhowtheregistryshouldalignitselfwithhumanrights,includingonissuessuchasfreedomofexpression

andrighttoprivacy,initstermsandconditions.

25

b Theagreementwiththecorrespondinggovernmentincludesacommitmenttocomplywiththerighttoprivacyofregistrarsandregistrants.

c Theagreementwiththecorrespondinggovernmentincludesacommitmenttocomplytherighttofreedomofexpressionofregistrarsandregistrants.

d Theagreementwiththecorrespondinggovernmentincludesacommitmenttoensuretherighttofreedomofassociationofregistrarsandregistrants.

e Theagreementwiththecorrespondinggovernmentincludesacommitmenttoensuretherighttofreedomfromdiscriminationofregistrarsandregistrants.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Arehumanrightsintegratedintotheagreementbetweentheregistryandthe

correspondinggovernment?

D.2HumanRightsinRegistrarEngagement

Righttofreedomofexpression,righttoprivacy,freedomofassociation,freedomfromdiscriminationD.2.1Humanrightsininteractionswithregistrars

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhasacommitmenttopromotethecontinuousimprovementofhumanrightsstandardsofitsregistrars.

b Thecommitmentissupportedbytrainingonhumanrightsstandardsforrelevantstaff.

c Theregistryhasdefinedminimumrequirementsforthehumanrightsstandardsofregistrarsandcommunicatestheseinwritingtonewandexistingregistrars.

dThecontractbetweenregistryandregistrarcommitsregistrarstoavoidcontributingtoactionsthatmayinterferewiththerighttoprivacyofregistrantsorotherusers,exceptwheresuchactionsarelawful,proportionateandforajustifiablepurpose.

eThecontractbetweenregistryandregistrarincludesacommitmenttorespectinternationalhumanrights,suchastherighttoprivacy,freedomofexpression,freedomfromdiscriminationandfreedomofassociation.

f

Inrelationtotakedownsandblockingofspecificdomains,thecontractbetweenregistryandregistrarcommitsregistrarstorespecttherighttofreedomofexpressionofregistrantsandotherusers,andtoavoidcontributingtoactionsthatmayinterferewiththisright,exceptwheresuchactionsarelawful,proportionateandforajustifiablepurpose.

g

Thecontractbetweenregistryandregistrarcommitsregistrarstomaintainopennessandthefreeflowofinformationovertheinternetexceptinfew,exceptional,andlimitedcircumstancesprescribedbyinternationalhumanrightslaw,suchasinthecaseofabusiveordiscriminatorycontent.

h Theregistryhasinplaceproceduresforongoingmonitoringofregistrars'compliancewiththerequirementssetoutinthecontract.

Humanrightsstandardsarenotadequatelypromotedininteractionswithregistrars.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

26

iThecontractbetweentheregistryandregistrarcontainsprovisionsfortheregistrartoinformtheregistryinthecasethattheregistrarisnotwillingtodelegatespecificdomainsonthebasisoflegitimateandreasonablegrounds.

jTheregistrymaintainsaninventoryofspecificdomainswithlimitedavailabilitytoensurewideavailabilityofregistration,andinformsregistrantsoftheavailabilityofalternativeoptionstoregisterdomains.

k Iftheregistrychoosestolimittheregistrationofdomains,thedelegationisinlinewithhumanrightsandclearlycommunicatedwithappropriatedueprocess.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrypromoteinternationalhumanrightsstandardsinitsinteractions

withregistrars?

D.2.2Humanrightsincontracttermswithregistrars

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aThecontractbetweenregistryandregistrarincludesacommitmenttorespectinternationalhumanrights,suchastherighttoprivacy,freedomofexpression,freedomfromdiscriminationandfreedomofassociation.

bThecontractbetweenregistryandregistrarcommitsregistrarstoavoidcontributingtoactionsthatmayinterferewiththerighttoprivacyofregistrantsorotherusers,exceptwheresuchactionsarelawful,proportionateandforajustifiablepurpose.

c

Inrelationtotakedownsandblockingofspecificdomains,thecontractbetweenregistryandregistrarcommitsregistrarstorespecttherighttofreedomofexpressionofregistrantsandotherusers,andtoavoidcontributingtoactionsthatmayinterferewiththisright,exceptwheresuchactionsarelawful,proportionateandforajustifiablepurpose.

d

Thecontractbetweenregistryandregistrarcommitsregistrarstomaintainopennessandthefreeflowofinformationovertheinternetexceptinfew,exceptional,andlimitedcircumstancesprescribedbyinternationalhumanrightslaw,suchasinthecaseofabusiveordiscriminatorycontent.

e Theregistryhasinplaceproceduresforongoingmonitoringofregistrars'compliancewiththerequirementssetoutinthecontract.

f Inthecasethatthereisadirectcontractualrelationbetweentheregistryandtheregistrantthecontractisalignmentwiththeregistrycommitmenttohumanrights.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrysetrequirementsonregistrarstorespecthumanrightsintheir

engagementwithregistrantsandotherusers?

D.3ProvidingDomainNames

Freedomofexpression,righttoprivacy,freedomofassociation,freedomfromdiscrimination,righttomaterialgainsfrominventionsandmoralrightsofauthorsD.3.1Contractsbetweenregistrarandregistrant

Humanrightsimpactscenario

Theregistrydoesnotrequireregistrarstorespecthumanrightsintheirengagementwithregistrants.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

27

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Low

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryensuresthattheirtermsofserviceareclearlyandopenlycommunicatedinthecontractsbetweenregistrarsandregistrants.

b Theregistryensuresthatregistrarscommunicateclearlyandopenlyaboutcontractualcommitmentsbetweenregistryandregistrantsintheircontractswithregistrants.

cThecontractbetweentheregistryandregistrarincludesprovisionstoensurethatthehumanrightscommitmentsareconveyedtotheregistrantinawaythatiseasilyaccessible.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryensurethatregistrarsinformregistrantsabouttheircontractual

commitmentstotheregistry,andabouttheregistry'stermsofservice?

D.3.2Accesstodomains

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryensuresthatitsownpricesettingofdomainsallowsforequalaccesstoitsservices.

b Theregistryengageswithregistrarstoensurethattheirpricesareatalevelthatallowsforequalaccesstoacquiringdomains.

c Theregistryengageswiththeregistrartoensureaccesstothedomainforpeoplewithdisabilitiesorlanguageconstraintsimpairingtheiruseoftheregistrarplatform.

d Theregistryensuresthatthedomainsarewidelyavailable,accessibleandaffordabletoall.

e Theregistryensuresthatnoregistrantisexcludedfromaccesstoadomainbytheregistrar,unlesssuchexclusionisbasedonnationallawofthecountryoftheregistry.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryensurefairandequalaccesstoacquiringdomains?

D.3.3Managingpersonaldata

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Registrantsarenotclearlyandopenlyinformedabouttheircontractualcommitmentstotheregistryortheregistry'stermsofservice.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

5.000personsandabove

CertaingroupsarefullyorpartlyexcludedfromacquiringavailableTLDs,duetopricingorotherobstacles.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Personaldataiscollected,storedorusedwithoutaclearlydefinedpurpose,inanunlawfulorunsafemanner,orwithouttheinformedandcontinuedconsentofregistrants.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

28

Indicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

a Personaldataiscollectedforaspecificandclearlydefinedpurpose.Theregistryhasmechanismstoensurethatdataisaccurate,completeandkeptup-to-date.

bTheregistryhasprocessestoensurethatpersonaldataisdeletedwhenitisnolongernecessarytofulfilthepurposesforwhichitwascollected,exceptifthedataisstrictlynecessaryforoperationalpurposes.

c

Theregistryhasmeasurestopreventthatpersonaldataisdisclosed,madeavailableorotherwiseusedforpurposesotherthanthoseforwhichitiscollected;exceptwiththeconsentoftheregistrantoruser,orbytheauthorityoflaw.

d Dataisonlyusedtoidentifyuserpatternsinananonymizedform.

e Employeeshaveadutyofconfidentialitybylawandwrittenagreementsregardingnon-disclosure.

f

Personaldataisprotectedbyreasonablesecuritysafeguardsagainstsuchrisksaslossorunauthorisedaccess,fraud,destruction,use,modificationordisclosureofdata.Anybreachinsecurityorintheconfidentialityofpersonaldataareremediatedwithin24hours,ifatallpossible.

gSecurityauditsarecontinuouslyconductedtoensureimplementationofcorrectiveactions(e.g.incaseofsecurityincidents)andtomaximizecompliancewithprivacyanddataprotectionpoliciesandguidelines.

h

Registrantsandusersmayobtaininformationaboutdatarelatingtohim/her;havethosedatacommunicatedwithinareasonabletimeinaninexpensiveandreasonablemanner;beabletochallengedatarelatingtohim/herand,ifthechallengeissuccessful,havethedataerasedorrectified.

iThereisageneralpolicyofopennessaboutpracticesandpolicieswithrespecttopersonaldata.Meansarereadilyavailableofestablishingthenatureofpersonaldatacollected,themainpurposesoftheiruse,andtheidentityofthedatacontroller.

j

Registryservicesthatincludeprivacysettingsarebydefaultsettomaximizetheprivacyprotectionoftheregistrantand/oruser.Theregistryprovidesclearinformationandwarningstoregistrantsandusers,includingminors,ofthepotentialconsequencesofchangestheymakeintheirdefaultprivacysettings.

k Theregistryisawareofandcomplieswithrelevantnationallaws,internationalguidelines,andindustrystandardsregardingthetransferofpersonaldata.

Humanrights

compliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryrespecttheprivacyofregistrantsandotherusers,andprotecttheir

personaldata?

D.3.4Securityinservicesandoperations

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Servicesprovidedbytheregistryarenotsecureduetolackofprecautionarymeasures.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

29

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a TheregistryhasdocumentedDNSSECsigningproceduresinplace.

b TheregistryhasformalsecuritycontrolframeworksinlinewithISOstandards.

c Theregistryimplementscurrentapplicableprivacystandards(e.g.DNSoverTLS,orDNSoverQEUC).

d TheregistryoffersbothIPv4andIPv6forallitsservices.

e Aregularsecurityreviewandauditofregistrysoftwareplatformsisperformedthroughindependentthirdpartyaudits.

f Iftheregistryhasserviceshostedonthird-partyhostingordistributionplatforms,theapplicablelegalframeworkandtermsofservicecomplywithhumanrightsstandards.

g Throughthecontractswiththeregistryandorregistrantitisclearlycommunicatedinwhichjurisdictionsandunderwhichtermsofservicetheirdataishandled.

h Iftheregistryhasservicesinternallyhosted,theToEsarereflectedintheregistry'sowntermsofservice.

iIftheregistryhasphysicalserverslocatedindifferentphysicallocationsindifferentjurisdictions,theregistryensuresthatsecuritystandardsaremetinalllocationsandjurisdictions.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryapplysufficientandappropriatemeasures,includingnewest

standardsandtechnologies,toensurethesecurityofitsservicesandoperations?

D.4MaintainingDomainNames

Righttofreedomofexpression,righttoprivacy,freedomofassociation,righttosecurityHumanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aInanyoperationstoensurerobustnessresilienceandstabilityoftheTLD,policiesandproceduresareinplacetoensuretheprivacy,freedomofexpressionandotherhumanrightsofregistrantsandusers.

b Theregistryhasinplaceasystemtomonitorsystemfunction.

c Registrarsareinformedincaseoftechnicalfailure.

d Registrarsarerequiredbytheregistrytoinformregistrantsincaseoftechnicalfailure.

e Registrarsareinformedincaseofsecuritybreaches.

f Registrarsarerequiredbytheregistrytoinformregistrantsincasesofsecuritybreaches,consequencesandremediationapproaches.

g Theregistryhasstandardiseditsprocessesinaccordancewithinternationalstandards,suchasISO9001orequivalent.

Personaldataiscompromisedduetosystemmalfunctionorsecuritybreach.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

30

h TheregistryhasasysteminplacetomitigateattacksagainsttheTLD(e.g.amplificationattacks).

i Theregistryhassystemsinplacetomitigateinfrastructureabuses(e.g.malware,botnetsetc.).

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryasysteminplacetoensuretheongoingmaintenanceandfunction

oftheTLD?

D.5Amending/TransferringDomainNames

Righttofreedomofexpression,righttoprivacy,freedomofassociation,righttosecurityHumanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhasinplaceasystemtoeasilyamendandtransferdomains.

b AnytransferalsoramendmentsaredonewithpermissionbytheregistrantandinlinewithhumanrightsstandardsandapplicablenationallawsthatgoverntheRegistry.

c Registrarsarerequiredtofileamendmentstothesystemoftheregistry.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryhaveasysteminplacetotransferdomainsinawaywhichalignsto

nationalregulationandinaccordancewithhumanrightsstandards?

D.6EngagingwithThirdParties

Righttofreedomofexpression,righttoprivacy,freedomofassociation,righttosecurityD.6.1Interferencewiththerighttoprivacy

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

a Theregistryhasapolicycommitmenttocomplywithrelevantinternationalandregionalstandardsonprivacyanddataprotection.

bRegistrantsareinformedaboutcircumstancesinwhichtheregistryisunderalegalobligationtorevealtheiridentification,connectionortrafficdatabyrequestfromgovernmentagencies.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Registrantsareunabletoamendortransfertheirdomains.

Personaldataisaccessed,disclosedormonitoredinamannerwhichisunlawful,disproportionateorinbreachofinternationalhumanrightsprinciples.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

31

c

Theregistryhasacommitmenttoevaluateanyinternalorexternalrequest-includinggovernmentrequests-thatmayinterferewiththeregistrants'orusers'righttoprivacyaccordingtointernationalprivacystandards,e.g.tomonitororaccesspersonaldata.Theregistryrequiresdetailsregardingthenecessityandjustificationforanyrestrictiverequest.Requestsarerequiredinwrittenform,ifatallpossible.

dProcedurestobefollowedincaseofarequestthatinterferewithregistrants'orusers'righttoprivacyareclearlydescribedandincludedinrelevantcompanyguidelines/instructions.

e Anylegitimaterequestthatinterferewiththerighttoprivacyisnarrowlyinterpretedandenforcedintheshortesttimeperiodpossible.

fWhenrequestsappeartobeinconflictwithinternationalstandardsonprivacytheregistryhasprocessestoseekjudicialreviewinaccordancewithestablishedinternationaltreaties,guidelines,orotherresources.

g Registrants,governmentauthorities,andotherrelevantstakeholdersarenotifiedintheeventofdatabreachorunauthorizedprocessingofpersonaldata.

Humanrights

compliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryavoidcontributingtoactionsthatmayinterferewiththeprivacyof

registrantsandusers,exceptwheresuchactionsarelawful,proportionateandfora

justifiablepurpose?

D.6.2Interferencewiththerighttofreedomofexpression

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

a Theregistryhasacommitmenttointernationalandregionalstandardsonfreedomofexpression.

bTheregistrywillasthegeneralrulemaintainopennessandthefreeflowofinformationovertheinternetexceptinfew,exceptional,andlimitedcircumstancesprescribedbyinternationalhumanrightslaw,suchasabusiveordiscriminatorycontent.

c

Theregistryhasacommitmenttoevaluateanyinternalorexternalrequesttoconductanintentionaltakedownaspecificdomainaccordingtointernationalstandardsonfreedomofexpression.Theregistryrequiresdetailsregardingthenecessityandjustificationforanyrestrictiverequest.Requestsarerequiredinwrittenform,ifatallpossible.

d

Incaseoftakingdownorblockingofspecificdomain,thisisbasedonadecisionbyacompetentjudicialauthorityorabodythatisindependentofanypolitical,commercialorotherunwarrantedinfluence.ThedecisioncanbereviewedbyanindependentandimpartialtribunalorregulatorybodyinaccordancewiththerequirementsofArticle6oftheEuropeanConventiononHumanRights.

e Procedurestobefollowedincaseofarequesttorestrictadomainserviceareclearlydescribedandincludedinrelevantcompanyguidelines/instructions.

f Anylegitimaterequestthatinterferewiththerighttofreedomofexpressionisnarrowlyinterpretedandenforcedintheshortesttimeperiodpossible.

Registrantsorusersarebarredfromcommunicating,seekingorimpartinginformationinamanner,whichisunlawfulordisproportionateorinbreachofinternationalhumanrightsprinciples.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

32

g

Whenrequestsappeartobeinconflictwiththeinternationalstandardsonfreedomofexpression,theregistryhasprocessestoseekjudicialreview,appealtorelevantbranchesoftheadministration,andengagewithrelevantbodiesorotherstakeholders,includingfromcivilsociety,foradviceandsupport.

h

Theregistryconsiders,asthegeneralrule,requeststocompletelydisconnectregistrantsfromaccesstotheirTLDtobedisproportionateandinviolationofhumanrightsprinciples,regardlessofthejustificationprovided,includingonthegroundsofviolatingintellectualpropertyrightslaw.

i

Theregistryhasprocessestoensurethatitwillnotinterferewiththeregistrants'andotherusers'freedomtoaccesscontentanduseapplicationsoftheirchoice,unlesssuchinterferenceisstrictlynecessaryandproportionatetosafeguardtheintegrityandsafetyofthedomainorservice,executeacourtorder,orcomplywithawrittenrequestfromtheregistrantoruser.

Humanrights

compliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryhaveacommitmenttorespecttherighttofreedomofexpressionof

registrantsandusers,andtoavoidcontributingtoactionsthatmayinterferewith

thisright,exceptwheresuchactionsarelawful,proportionateandforajustifiable

purpose?

D.7TerminatingDomianNames

Righttofreedomofexpression,righttoprivacy,freedomofassociation,righttosecurityHumanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a TheregistryhasinplaceaprocedureforterminationoftheTLD.

b TheregistryhasinplacerequirementsintheengagementwiththeregistraronthetermsforterminationoftheaccesstotheTLD.

c Theregistryengageswiththeregistraronhowtoengagewithregistrantsontermination,includingnoticeperiodsandlengthofstorageofpersonaldata.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryensurethatregistrantsareinformedabouttheprocedurefor

termination?

D.8GrievanceMechanismsandResolution

Righttoremedy,freedomofexpression,righttoprivacy,freedomofassociation,righttonon-descriminationHumanrightsimpactscenario

Registrantsanddomainusersarenotprovidedaccesstomechanismstoraisegrievancesandachieveremedy.

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

RegistrantsarenotgivenpriornoticeabouttheterminationoftheiraccesstotheTLD.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

33

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aRegistrantsandusers,includingminors,areprovidedwitheffective,safe,confidentialandtransparentmechanismsforvoicingandresolvingconcernsrelatingtohumanrightsissues.

bSubjecttolegalrestrictions,registrantsandusers,includingminors,whohavebeensubjecttointerferencewiththeirrightsisprovidedwithadviceonhowandwheretheymayrespond.

c Theregistryprovidesfor(orcollaboratesin)theswift,fairandcomprehensiveinvestigationandremediationofregistrantorusercomplaints.

d Theregistryprovidesindependentmediationorcomplaintbodyinthecasethataregistrarorregistrantdoesnotagreewithadecisionmadebysaidregistry.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryhaveamechanism(ormechanisms)inplacetorecieve,processand

adressgreivancesofregistrantsandotherdomainusers?

D.9Transparency

RighttofreedomofinformationHumanrightsimpactscenario

Registrantsanddomainusersareunabletoaccessinformationonthehumanrightsrelatedcommitments,policies,proceduresandperformanceoftheregistry.

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistry'spoliciesonhumanrightsareexplainedtoregistrars,registrants,andusersinclearlanguageandanaccessibleform,takingintoaccountforexamplepeople,withdisabilities,children,elderlyandethnicminorities.

b

Requeststhatinterferewithregistrants'orusers'righttoprivacyorfreedomofexpressionaredocumentedandcommunicatedtocustomersandotherrelevantstakeholderstothefullestextentpossible.Subjecttolegalrestrictions,affectedregistrantsandusersareinformedabouttheprocedurefortherequest,aswellastheactiontaken.

cSubjecttolegalrestrictions,theregistrypubliclyreportsdatabycountryonthenumberandcharacterofrequestsreceived,e.g.tomonitororaccessregistrants'orusers'dataorrestrictdomainservices,andhowithasrespondedtotheserequests.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryallowregistrants,domainusersandotherinterestedstakeholders

toaccessinformationonregistrycommitments,policies,proceduresand

performanceonhumanrights?

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

34

E.DueDiligenceQuestions

F.1AssessingImpactsIndicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

aTheregistryhasapolicycommitmenttoassessthepotentialadverseimpactsontheinternationalhumanrights,suchasrighttoprivacyandfreedomofexpression,associatedwithdesigning,selling,andoperatingdomainservices.

bProductimpactassessmentsarecarriedoutpriortoimplementingnewproductsorservices,toidentifyandmitigatepotentialadverseimpactthesemayhaveonhumanrights.

cTheassessmentincludesengagementwithstakeholdergroups,independentexpertresources,humanrightsgroups,andotherwithspecificknowledgeonnationallawsandregulation,tothewidestextentpossible.

Humanrightscompliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryidentifyandassesstheriskofcontributingtoadverseimpactsontheinternationalhumanrights?

F.2AddressingImpactsIndicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

aTheregistryhasadoptedstrategiestoanticipate,respondandminimisepotentialadverseimpactsonhumanrights.

b

Theregistryhasclearandunambiguoustermsofservice,iteratingthattheregistryiscommittedtointernationalhumanrightsstandards,includingonprivacy,dataprotection,andfreedomofexpression,andwillnotinterfereinthefreeflowofinformationovertheinternetexceptinfew,exceptional,andlimitedcircumstancesprescribedbyinternationalhumanrightslaw.

c Theregistryhasafunction,reportingtosenior-levelmanagement,withresponsibilityforoverseeingcompliancewithitsprinciplesonhumanrights.

d Sufficientorganisationalresourcesareinplacetoensureimplementationoftheregistry´scommitmenttohumanrights.

e Employeesreceivetrainingontheregistry'sprinciplesonhumanrights.

f Employeeshaveeffectivemeanstosafelyreportnoncompliancewiththeregistry'sprinciplesonhumanrights.

Humanrightscompliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryhavesystemsandorganisationalcapacityinplacetoaddresspotentialadverseimpactsoninternationalhumanrights?

F.3GovernmentRequestsIndicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

aGovernmentrequeststhatinterferewiththerighttoprivacyortherighttofreedomofexpressionaresubjecttooperationalprocessesthatassesstherequestforhumanrightscompliance.

35

bIncomplexcases,theassessmentincludesengagementwithindependentexperts,humanrightsgroups,andotherswithspecificknowledgeonnationallawsandregulation.

cGovernmentsarerequestedtoprovidedetailsregardingthenecessityandjustificationforanyrestrictiverequest.Requestsarerequiredinwrittenform,ifpossible.

d

Whengovernmentrequestsappeartobeinconflictwithhumanrightsstandardsonfreedomofexpressionortherighttoprivacy,theregistryhasprocessestoseekjudicialreview,appealtorelevantbranchesoftheadministration,engagewithrelevantUNbodiesorotherstakeholders,includingfromcivilsociety,foradviceandsupport.

e Anymeasurethatinterfereswiththerighttofreedomofexpressionistakenonthebasisofaspecificdecisionbyastateauthorityexpresslyempoweredbylawtodoso.

f

Governmentrequeststhatappearinconsistentwithhumanrightslawareaddressedbyseniorlevelmanagementtodecideontherisksofrespondingvis-a-visrejectingtherequest.Nationalandinternationalresources,includingindustrypeers,areengagedtotheextentpossible.

Humanrightscompliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryhaveproceduresinplacetohandlegovernmentrequeststopreventinterferancewiththerightstoprivacyandfreedomofexpression?

F.4TrackingComplianceIndicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

aPeriodicauditsareconductedtoassesscompliancewiththeregistry'sprinciplesonhumanrights.Theseauditsincludefeedbackfromregistrantsandotherpotentiallyaffectedstakeholders.

bSuppliersandbusinesspartnersareheldcontractuallyaccountableforcompliancewiththeregistry´sprinciplesonhumanrights.Aneffectiveprogrammeisinplacetomonitorcomplianceandensurecorrectiveaction.

Humanrightscompliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryhavesystemsinplacetotrackcompliancewithitsprinciplesonhumanrights?

F.5CommunicationandReportingIndicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

aTheregistry'spoliciesonhumanrightsareexplainedtoregistrars,registrantsandusersinaclearandaccessibleformandlanguage,takingintoaccountforexamplepeoplewithdisabilities,children,elderlyandethnicminorities.

b

Requeststhatinterferewithregistrants'orusers'righttoprivacyortheirrighttofreedomofexpressionaredocumentedandcommunicatedtocustomersandotherrelevantstakeholderstothefullestextentpossible.Subjecttolegalrestrictions,affectedregistrantsandusersareinformedabouttheprocedurefortherequest,andtheactiontaken.

36

cSubjecttolegalrestrictions,theregistrypubliclyreportsdatabycountryonthenumberandcharacterofrequestsreceived,e.g.tomonitororaccessregistrants'orusers'dataorrestrictdomainservices,andhowithasrespondedtotheserequests.

dIncasearegistrantorusertriestoaccessspecificcontentwhichhasbeenblocked,theyareprovidedwithanexplanationofwhythecontentisblockedincludingcontactdetails.

Humanrightscompliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistrycommunicateandreportonitseffortstoupholdinternationalprinciplesonhumanrights?

F.6AccesstoRemedyIndicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

aRegistrantsandusers,includingminors,areprovidedwitheffective,safe,confidentialandtransparentmechanismsforvoicingandresolvingconcernsrelatingtohumanrightsissues.

bSubjecttolegalrestrictions,registrantsandusers,includingminors,whohavebeensubjecttointerferencewiththeirrightsareprovidedwithadviceonhowandwheretheymayrespond.

c Theregistryprovidesfororcollaboratesintheswift,fairandcomprehensiveinvestigationandremediationofregistrantorusercomplaints.

Humanrightscompliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doregistrantsanduserswhoserightsmaybeaffectedbytheregistry'ssystems,productsorserviceshaveaccesstosafe,effectiveandfairremediesthroughwhichpotentialimpactscanbereported,investigatedandremediated?

37