sample cctld human rights impact assessment tool · sample cctld human rights impact assessment...

37
Sample ccTLD Human Rights Impact Assessment Tool Introduction to the Tool This Human Rights Assessment Tool contains a range of scenarios and questions related to Human Rights relevant to a Registry's operations (specifically, a Country Code Top-level Domain, or ccTLD, registry). The tool covers the following issue areas: Issue Areas Page # A. Registries as Employers 3 – 14 A.1 Working Hours 3 A.2 Wages 3 A.3 Leave 4 A.4 Harassment 5 A.5 Employee Privacy 6 A.6 Grievance Mechanism 7 A.7 Forced Labour 8 A.8 Child Labour 9 A.9 Promoting Diversity 10 A.10 Non-Discrimination 10 A.11 Freedom of Association 11 A.12 Workplace Health and Safety 12 A.13 Intellectual property rights 13 B. Registries as Procurers of Goods and Services 15 – 20 B.1 Human Rights in Supply Chain Management 15 B.2 Hours, Wages and Leave 15 B.3 Workplace Health and Safety 16 B.4 Forced Labour 16 B.5 Child Labour 17 B.6 Non-Discrimination 17 B.7 Privacy 18 B.8 Intellectual property rights 18 B.9 Community Impact 19 C. Registries, the Environment, and Local Communities 21 – 24 C.1 Environmental Impacts 21 C.2 Security 21 C.3 Land Management 22 C.4 Corruption and Bribery 23 D. Registries as Providers of TLD and Other Domain Services (in-house or outsourced) 25 – 34 D.1 Acquiring TLDs 25 D.2 Human Rights in Registrar Engagement 26 D.3 Providing Domain Names 27 D.4 Maintaining Domain Names 30 D.5 Amending / Transferring Domain Names 31 D.6 Engaging with Third Parties 31 D.7 Terminating Domain Names 33 D.8 Grievance Mechanisms and Resolution 33 D.9 Transparency 34 E. Due Diligence 35 – 37 E.1 Assessing Impacts 35 E.2 Addressing impacts 35 E.3 Government requests 35 E.4 Tracking compliance 36 E.5 Communication and reporting 36 E.6 Access to remedy 37

Upload: others

Post on 04-Mar-2020

8 views

Category:

Documents


0 download

TRANSCRIPT

SampleccTLDHumanRightsImpactAssessmentToolIntroductiontotheTool

ThisHumanRightsAssessmentToolcontainsarangeofscenariosandquestionsrelatedtoHumanRightsrelevanttoaRegistry'soperations(specifically,aCountryCodeTop-levelDomain,orccTLD,registry).Thetoolcoversthefollowingissueareas:

IssueAreas Page#

A.RegistriesasEmployers 3–14

A.1WorkingHours 3

A.2Wages 3

A.3Leave 4

A.4Harassment 5

A.5EmployeePrivacy 6

A.6GrievanceMechanism 7

A.7ForcedLabour 8

A.8ChildLabour 9

A.9PromotingDiversity 10

A.10Non-Discrimination 10

A.11FreedomofAssociation 11

A.12WorkplaceHealthandSafety 12

A.13Intellectualpropertyrights 13

B.RegistriesasProcurersofGoodsandServices 15–20

B.1HumanRightsinSupplyChainManagement 15

B.2Hours,WagesandLeave 15

B.3WorkplaceHealthandSafety 16

B.4ForcedLabour 16

B.5ChildLabour 17

B.6Non-Discrimination 17

B.7Privacy 18

B.8Intellectualpropertyrights 18

B.9CommunityImpact 19

C.Registries,theEnvironment,andLocalCommunities 21–24

C.1EnvironmentalImpacts 21

C.2Security 21

C.3LandManagement 22

C.4CorruptionandBribery 23

D.RegistriesasProvidersofTLDandOtherDomainServices(in-houseoroutsourced) 25–34

D.1AcquiringTLDs 25

D.2HumanRightsinRegistrarEngagement 26

D.3ProvidingDomainNames 27

D.4MaintainingDomainNames 30

D.5Amending/TransferringDomainNames 31

D.6EngagingwithThirdParties 31

D.7TerminatingDomainNames 33

D.8GrievanceMechanismsandResolution 33

D.9Transparency 34

E.DueDiligence 35–37

E.1AssessingImpacts 35

E.2Addressingimpacts 35

E.3Governmentrequests 35

E.4Trackingcompliance 36

E.5Communicationandreporting 36

E.6Accesstoremedy 37

HowtoUseThisToolThistoolisaworkingmodelforassessingthehumanrightsimpactsofInternetinfrastructureproviders,startingwith

country-codetopleveldomain(ccTLD)registries.

Ifyouwouldliketoofferfeedbackonthemodelorareinterestedinpartneringtocarryoutanhumanrightsimpact

assessmentforyourbusiness,pleasecontact:

COLLINKURRE([email protected])orCATHRINEBLOCHVEIBERG([email protected])

Step1:Completethehumanrightsimpactscenario.Foreachscenarioplease:

1.Ratetheprobabilityofthescenariotakingplaceduringoneyearfromnowacrosstheoperationsofyourcompany:oDoesnotoccur

oIsolatedincidentsmayoccur

oOccurssystematically

2.Describethekeypotentialimpactsandwhoisimpacted.3.Ratethenumberofindividualspotentiallyimpactedinanyoneyear:

o0-500persons

o500-5.000persons

o5.000personsandabove

4.Ratetheseverityofthehumanrightsconsequencesfortheaffectedindividuals:oLow

oMedium

oHigh

Step2:CompleteofthehumanrightscomplianceassessmentindicatorsForeachquestionandindicatortherespondantispresentedwiththefollowingansweroptions:

oYes/No.Themoreindicatorsandquestionstherespondant9sabletoanswerinthisway,themorereliabletheassessmentwill

be.

oF/A(Furtherattentionrequired):Thisoptionisintendedasalastresortiftherespondantisuncertainaboutwhatthecorrectansweris,andshouldthereforebeusedinfrequently,ifatall.

oN/A(Notapplicable):usethisoptionifaparticularquestionorindicatorisn'trelevantforthecompany.Pleaseprovidean

explanationinthe"Comments"sectionwhererelevant.

Theindicatorsshowyouthekindofpolicies,procedures,andpracticesyoushouldideallyhaveinplaceinordertoanswer“yes”

tothemainHumanRightsCompliancequestion.

Whenyouanswer“no”toagivenquestionorindicatoritmayimplythatyouhaveidentifiedagapinyourpolicies,procedures,

orpractices.Makeanoteoftheindicator(s)thatresultedinthisgap,andaddthemtoaprioritisedlistofimprovementactions.If

youanswered“Furtherattention”toagivenquestionorindicator,makeanoteofwhatactionyouneedtotakebeforethe

questionorindicatorcanbeansweredwitha“yes.”

Step3:AnswertheHumanRightsCompliancequestionIt’simportantthatalltheindicatorsarecompletedbeforeattemptingtoanswerthemainHumanRightsCompliancequestion.

Oncealloftheindicatorshavebeencompleted,usetheanswerstoassesstheHumanRightsCompliancequestion.

Iftheanswerisdeterminedtobe“yes”totheCompliancequestionbutoneormoreindicatorshavebeenansweredwith“No”or

"FurtherAttention,"anoteshouldbeincludedexplainingwhytheindicatorswerenotconsiderednecessaryfortheCompany.

2

A.RegistriesasEmployersAppliestoallemployeesincludingfieldworkersandmaintenancepersonnelandtothird-partyin-premisestaff

A.1WorkingHours

Righttoworkandtojustandfavourableconditionsatwork,RighttorestandleisureHumanrightsimpactscenario

Probability(click

belowtochoose

option)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aNormalcompanyworkinghoursarelimitedto48hoursperweekbybothcompanypolicyandpractice(orfewerifprovidedbynationallaw,collectiveagreementorindustrystandards).

b Overtimeisinfrequent,remuneratedatpremiumrate,anddoesnotexceed12hoursinanyoneweekor36hourspermonth.

cTheregistryhasasystemtoplan,recordandmonitorhoursworkedbyeachemployee,andregularlyevaluateswhetherthenumberofemployeesissufficienttomeetproductiontargetswithoutresortingtoovertime.

dWhereovertimeperemployeesystematicallyexceeds12hoursperweek,theregistryincreasesitsworkforcetocorrespondtoproductiontargets,orputsinplacemeasurestoincreaseworkerproductivityandreduceovertime.

e Registryemployeesareallowedatleast24consecutivehoursofrest(ormoreifprovidedbynationallaworindustrystandards)ineverysevendayperiod.

f

Theregistryensuresthatemployeeshavenolessthana30-minutebreakforevery4hoursofwork(ormoreifprovidedbynationallaworindustrystandards)andthatemployeesareallowedtousetoiletfacilitieswhenevernecessaryandnotjustduringdesignatedbreaks.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryensurethattheworkweekislimitedto48hours;that

overtimeisinfrequentandlimited;andthatemployeesaregivenreasonable

breaksandrestperiods?

A.2Wages

Righttoworkandtojustandfavourableconditionsatwork,RighttoadequatestandardoflivingHumanrightsimpactscenario

Employeesareunabletomake,atminimum,alivingwagesufficienttomeetthebasicneedsoftheemployeeandtheemployee'slegitimatedependents.

Employeesareexposedtoexcessiveworkinghours,excessiveovertimeorlackofrestperiods.(Exceeding48hoursinanormalworkweek.Forshiftwork,exceeding56hoursinanyoneweek,or48hours'averageinathree-weekperiod).Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

3

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aItiscompanypolicytoprovideemployeeswithalivingwagesufficienttomeetbasicfood,clothingandhousingneedsandprovidesomediscretionaryincomeforthemselvesandtheirdependents.

b Theregistryisawareofwhetherthelegalminimumwageinthecountryofoperationmeetstherequirementforalivingwageinpractice.

c

Ifnonationalminimumwageisestablished,orifnationalminimumwagestandardsareinsufficienttomeetthebasicneedsofemployeesandtheirdependents,theregistrycalculatesalivingwagebasedonthecostoflivinginitsareaofoperation.

dPart-timeworkersreceivewagesandbenefitsthatareproportionatetothoseoffull-timeworkers,andreceiveovertimecompensationataminimumof1.25timestheirhourlysalary.

eTheregistrypayswagesatregularintervalsanddoesnottakedeductionsfromwagesfordisciplinarymeasuresorotherdeductionsnotauthorisedbynationallaw.

f Bonusandpiece-ratepaymentsystemsaremonitoredtoensurethatthetotalsalarypaidmeetslivingwagerequirementswithoutresortingtoovertime.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryprovidealivingwagethatenablesworkerstomeetthebasic

needsofthemselvesandtheirdependents?

A.3Leave

Righttoworkandtojustandfavourableconditionsatwork,Righttofamilylife,RighttohealthHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a

Companyemployeesaregrantedatleastthreeweeksofpaidholidayleaveperyearormoreifrequiredbynationallaworcollectiveagreements.Part-timeandshort-termemployeesareprovidedwithpaidholidayleaveproportionatetothenumberofhoursworked,atarateequaltothatofpermanentfulltimeemployees.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Employeesarenotprovidedwithleave,includingannualpaidleave(minimum3weeks),paidsickleaveandpaidmaternityleave(minimum14weeks).Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

4

b

Employeesareentitledtopaidsickleaveinaccordancewiththeapplicablenationallaw.Ifsickleaveisnotprovidedforinnationallaw,theregistryconsultswithunionorworkerrepresentativestoestablishalternativemeansofprotectionincaseofillnessorinjury.

c Sickleaveisnotdeductedfromemployees'vacationtime.

d Femaleemployeesareentitledtonolessthanfourteenweeksofpaidmaternityleaveperchild.

e

Theregistrygrantscompassionateorparentalleavetoemployeeswhohaverecentlyadoptedachildorchildren,orhavetakenontheresponsibilitytocareforfosterchildrenorotherdependentchildren.Suchleaveshouldbegrantedonequalbasisi.e.regardlessoftheemployee'sgender.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrygrantemployeespaidholidayleave,sickleave,andparental

leaveinaccordancewithinternationalminimumstandards?

A.4Harassment

TherighttofreedomfromdiscriminationandharassmentHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasacommitmenttopreventworkplaceharassment,andactivelyinformsemployeesoftheirobligationstorefrainfromviolent,threateningorabusiveconduct.

b Theregistryhasacodeofconducttooutlineguidelinesforappropriatebehaviourattheworkplaceandmanageoffensiveorabusivebehaviour.

c Allemployeesareinformedaboutapplicableinternalproceduresandcomplaintmechanismsinrelationtooffensivebehaviourorabusivebehaviour.

d Managersreceivetrainingonhowtoidentifyanddealwithinstancesofharassmentintheworkplace.

eTheregistryinvestigatesallcomplaintsofworkplaceharassmentandtakesappropriatepreventativeanddisciplinaryactionincludingreportingofcriminalactionstotheappropriateauthorities.

f Theregistryhasaninternalsystemforhandlingcasesofoffensiveorabusebehaviour.(Suchasystemcouldincludeadesignatedcommittee.)

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Incidentsofsexualorothertypesofphysicalorpsychologicalharassmentoccurintheworkplace.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

5

Doestheregistryprotectworkersfromworkplaceharassment,including

physical,verbal,non-verbal,sexualorpsychologicalharassment,intimidation,

abuse,orthreats?

A.5EmployeePrivacy

RighttoprivacyA.5.1PersonaldataandmonitoringHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasaprocedurestatingwhatkindsofworkplacemonitoringareallowed;whatkindofpersonalemployeeinformationisretained;whereitisstored;whohasaccess;andwhytheinformationisnecessary.

bEmployeesaremadeawareofallworkplacemonitoring,includingcamerasandInternetore-mailmonitoring,andthespecificpurposeofthemonitoring.

c

Theregistrydoesnotattempttogaininformationfromanindividualwithwhomtheemployeehasaprivilegedrelationship,includingaformeremployer,doctororlawyer,withouttheemployee'spriorwrittenconsent.

d

Employeeshaveaccesstoallpersonaldatacollectedaboutthem,includingdataconcerningdisciplinarydecisionsanddataobtainedthroughmonitoring,butexcludingconfidentialmanagementspecificinformationrelatedtoperformanceevaluations,salarynegotiations,promotions,rotationandsimilaremploymentdecisions.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryrespecttheprivacyofitsemployeeswheneveritgathers

privateinformationormonitorstheworkplace?

A.5.2SensitivepersonaldataHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Workplacemonitoringorcollectionofemployeepersonaldataoccurswithouttheknowledgeofemployees,withoutajustifiablepurposeorinadisproportionatemanner.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Theregistryhandlessensitivepersonaldataaboutemployeeswithoutcarefulconsultationofnationalandinternationallawsondataprotection.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

6

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhasacommitmenttoprotectsensitivepersonaldataofitsemployees.

b Theregistryonlygatherspersonaldatathatislawful,proportionateandforajustifiablepurpose.

c Employeesaremadeawareofrequeststoaccesstheirsensitivepersonaldata.

dTheregistryhasinplaceanemployeewhistle-blowerprogramthroughwhichemployeescanreportconcernsonthemanagementoftheirpersonaldata.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrycomplywithnationalandinternationallawsondata

protectioninrelationtogatheringandhandlingsensitivepersonaldata?

A.6GrievanceMechanism

RighttoafairhearingHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasawrittenprocedure,agreeduponwithemployeerepresentatives,forhowemployeegrievancesarereceived,processedandsettled.

b Theprocedureisopentogrievancesconcerningallemployment-andworkplace-relatedissues.

c Allemployees,includingtemporaryorthird-partyemployees,areabletousetheprocedure.

dEmployeesareclearlyinformed,inalanguageunderstandabletothem,onhowtousetheprocedure;whatgrievancescanbereported;andhowgrievancesareprocessedandresolved.

e Employeesareabletolodgegrievancesconfidentiallyandwithoutfearofretributionbymanagementorotheremployees.

f Thegrievanceprocedureisabletorespondtocasesofharassmentbymanagers,includinggenderspecificissues,suchassexualharassment.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Employeesareunabletofileandresolveworkplacegrievancesinasafe,transparentandfairmanner.

7

gThereiscommitteeresponsibleforhearing,processing,andsettlinggrievances,andthecommitteehasrepresentationbyemployeerepresentatives.

hAnemployeelodgingagrievanceisallowedtoparticipateinhearingsheldwithrespecttothatgrievanceandisinformedoftheoutcomeofthegrievanceresolutionprocess.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryhaveamechanismforhearing,processing,andsettling

grievancesofemployees?

A.7ForcedLabour

RighttofreedomfromforcedlabourandservitudeHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryensuresthatallemployeesreceiveemploymentcontractspriortostartingworkfortheregistry,andthatcontractsareunderstoodbytheemployees.

b Noticeperiodsareofreasonablelengthandclearlycommunicatedtoworkerspriortostartingemployment.

c Iflettersofreleaseorotherdocumentsareneededfortheemployeetoleaveemployment,theregistryissuessuchletterswithoutdelay.

dWithinnormalworkinghoursemployeesareabletoearnalivingwagesufficienttomeetthebasicneedsofthemselvesandtheirclosestdependents.

e Overtimeworkispaid,voluntaryandnotcompelledthroughthreatofpaydeductions,terminationorothersanctions.

fAllworkersareallowedtoleaveregistrypremisesduringbreaksandattheendoftheirshifts,andworkersinregistryhousingmayfreelyenterandexittheiraccommodationatanytime.

g

Theregistry(oritsrecruitingagencies)doesnotrequireworkerstopayrecruitmentfeesorlodgemoneydeposits,anddonotretainidentitycards,passports,traveldocumentsorotherpersonalitemswithoutwhichemployeescannotleaveemployment.

Workfromemployeesisobtainedinvoluntarilyandunderrealorperceivedthreat(e.g.Forcedovertime,Recruitmentfees,MoneydepositsandRetentionofpersonaldocuments).

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

8

h

Loansorsalaryadvancementstoemployeesarebasedonfairtermsthatareclearlyexplainedtotheemployee,arenotgrantedtocoverbasiclivingexpenses,arelimitedinsize,anddonotrequiretheemployeetoremainwiththeregistryuntilrepaymentiscompleted.

iIftheregistryusesprisonlabouritensuresthatallprisonworkershavebeenconvictedbyacourtoflaw,andthattheworkisvoluntaryandsupervisedbyapublicauthority.

j Theregistryensuresthatitdoesnotuselabourfromagenciesorfirmsinvolvedinhumantraffickingorotherformsofbondedlabour.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakeallnecessarymeasurestoensurethatitdoesnot

participateinanyformofforcedorbondedlabour?

A.8ChildLabour

RightsofthechildHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistrydoesnotemployworkersunder15yearsofageforfull-timework,13yearsofageforlightworkand18yearsofageforhazardouswork.

b Iftheregistryemploysminorsbelowtheageof18,theregistryhasalistofjobfunctionsthatcansafelybeperformedbyminors.

cTheregistryisawareoflocalage-levelsforcompletionofcompulsoryeducationanddoesnotemployworkersunderthatageforworkthatmayinterferewithsucheducation.

d

Theregistryhasareliableproceduretochecktheageofyoungjobcandidatesbybirthcertificate,otherofficialformsofidentification,orbyalternativemeanssuchasphysicalappearanceorknowledgeofhistoricevents.

e

registryapprenticeshipprogrammesdonotconstitutethemainportionoftheworkforce,arelimitedinduration,areperformedinconjunctionwithaschoolprogramme(orsupervisedbyLabourMinistersorLabourOrganisations),anddonotinterferewiththechild'scompulsoryeducation.

Employmentofchildrenorminors(belowtheageof15yearsforfull-timeworkandbelowtheageof18yearsforhazardouswork)occursintheworkplace.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

9

f

Iftheregistrybecomesawarethatitisemployingyoungworkersbelowminimumage,itensuresthattheyareenrolledineducationprogramme,andthattheirdependentsarecompensatedfortheresultinglossofincome.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrycomplywithminimumagestandards?

A.9PromotingDiversity

TherighttofreedomfromdiscriminationandharassmentHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Apolicyondiversitymanagementisinplacecontainingacommitmenttohaveadiverseworkforcethatmirrorsthesocietyinwhichtheregistryoperates

b Thepolicyissupportedwithproceduresandguidancedefiningresponsibilitiesandimplementationsmeasures.

c Allmanagersreceivetrainingincompanypolicyandguidanceondiversitymanagement.

d Theregistryhasestablishedgoalsandtargetsforrepresentationofspecificemployeegroupsintheworkforceandcontinuouslymonitorsperformance.

eTheregistryhasestablishedgoalsandtargetsforperformanceofdiverseemployeegroupsinrelationtorecruitment,hiring,jobgrade,andremunerationandcontinuouslymonitorsperformance.

f Wheregoalsarenotmettheregistrytakesactivestepstopromotediversityintheworkforce.

gTheregistryhasestablishedaforum,accessibleandknowntoallemployees,wherebytheycanregistersuggestionsandideasforimprovementindiversitymanagement.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryrecognize,valueandpromotethedifferencesthat

individualsbringtoitsworkforce?

A.10Non-Discrimination

TherighttofreedomfromdiscriminationandharassmentHumanrightsimpactscenario

Peoplefromcertainsocietalgroupsdonothaveequalopportunitiestogainemploymentorpromotionintheregistryorincertainpositionsintheregistry.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

10

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aItiscompanypolicytoensurethatdecisionsconcerninghiring,wages,promotion,training,discipline,retirementandterminationarebasedonlyonunbiasedcriteria.

b Eachjobcategoryintheregistryhasawrittendescriptionstatingthesalarylevelandthequalificationsrequiredforthatjobcategory.

cEmploymentadvertisementsdonotreferencediscriminatorycriteria,suchasrace,genderorage(unlesslistedaspartofalegalequalopportunitiespromotion).

dJobapplicantsarenotaskedtogiveinformationabouttheirmaritalstatus,pregnancy,intenttohavechildren,numberofdependents,orsimilarinformationthatmayleadtodiscriminatoryhiringdecisions.

e Allhiringmanagersreceivetrainingregardingthecompany'snon-discriminationpolicies.

fTheregistryhasestablishedagrievancemechanism,accessibleandknowntoallemployees,whereemployeescansafelyreportincidentsofworkplacediscrimination.

gTheregistrytakesreasonablestepstoenablequalifiedpersonswithdisabilitiesorhealthconditionstogainemploymentopportunitieswiththeregistry,forexampleallowingwheelchairaccess,flexibleworkinghours,longerbreaksetc.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryensurethatemployment-relateddecisionsarebasedon

relevantandobjectivecriteria?

A.11FreedomofAssociation

RighttofreedomofassociationHumanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Employment-relateddecisionsaremadeondiscriminatorygrounds,andnotonthebasisofqualifications,skillsandrelevantexperience.(Canbeseeninpracticesrelatedto:recruitment,compensation,accesstotraining,employeebenefitsandservices,promotion,terminationorretirement.Groundsfordiscriminationcanbe:sex,race,colour,disability,religionorbelief,sexualorientation,age,language,nationalorsocialorigin,politicalorotheropinion,tradeunionmembership,marital,caste,healthoranyotherstatusrecognizedbyinternationallaw.)

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Theregistrydoesnotalloworfacilitatetherightofemployeestoorganizeandtobargaincollectively,andemployeesareexposedtoharassmentorretaliationbasedontheirorganisational/tradeunion

affiliationornon-affiliation(includingincountriesofoperationwheretrade-unionsareun-commonandsuppressed).

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

11

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a

Theregistryhasacommitmenttorecognisetherightsofitsworkerstofreedomofassociationandcollectivebargaining,includingtherighttofreelyformand/orjoinindependenttradeunions,andthiscommitmentisclearlycommunicatedtoallemployees.

b

Theregistryrecognisesworkers'organisationsforcollectivebargainingpurposesandhasproceduresinplacetoensureregularcollectivebargainingwithauthorisedworkerrepresentativesconcerningallworkplacerelatedissues.

cTheregistryallowsworkerrepresentativesaccesstocollectivebargainingagreements,registrypremises,employeesandotherrelevantdocumentationneededtofulfiltheirduties.

dTheregistryprohibitsdiscriminationoradverseactionsagainstworkerrepresentativesoremployeesforparticipatingorrefrainingtoparticipateinlawfultradeunionactivities.

eTheregistryhasagreedwithworkers'representativesabouttherequirementsofafairhearingtobefollowedinrelationtoalldisciplinarycasesandemployeegrievances.

fTheregistryhasacommittee,withparticipationofemployee-electedrepresentatives,whichisresponsibleforhearing,processing,andsettlingdisciplinarycasesandemployeegrievances.

gTheregistryallowsemployeestoengageinregularemployee-onlymeetingswithinnormalworkinghours,whereemployeescandiscussconcernsregardingworkingconditions.

hWhereallowedbylocallegislation,andifindependenttradeunionsarenotpresent,theregistryinformsemployeesoftheirrighttoformindependentcollectiverepresentationattheworkplace.

iWhereallowedbylocallegislation,theregistryinformsemployeesoftheirrighttoengageinregularcollectivebargainingconcerningallworkplaceissues.

jCompanymanagementmeetsregularlywithemployeerepresentativestodiscusswork-relatedproblemsandanygrievancesemployeesmaywishtoraise.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryrecognisetherightsofitsworkerstofreedomofassociation

andtobargaincollectively?

A.12WorkplaceHealthandSafety

Righttoworkandtojustandfavourableconditionsatwork,Righttoadequatehealth,Righttolife.Humanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Employeesareexposedtounsafeorunhealthyworkingenvironments,resultinginaccidentsorpersonalinjury.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

12

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhaseffectivehealthandsafetyproceduresinplace,whichcomplywithindustry,nationalandinternationalstandards.

b Healthandsafetyinformationandproceduresareavailabletoemployeesinalanguagetheyunderstand.

c Responsibilitiesforhealthandsafetytasksareclearlydefined.

dHealthandsafetyincidentsarereportedandinvestigated,andaconfidentialprocedureisinplaceforreceivingandhandlinghealthandsafetycomplaintsfromemployees.

e Theregistryroutinelymonitorsitsproductionprocesses,machineryandequipmenttoensurethattheyaresafeandingoodworkingorder.

fWorkersandmanagersaretrainedtorespondtoworkplaceemergencies;firstaidkitsandfireextinguishersarereadilyavailable;andescapeexitsareclearlymarkedandfreefromobstruction.

gTheworkplaceismaintainedtoensurecleanandcomfortableconditionsincludingasuitabletemperature,ventilationandlighting;suitablewashingandsanitationareasappropriateforbothgenders.

h

Residentialorovernightfacilitiesaresafeandsanitaryandmeetthebasicneedsofworkersincludingwithregardtosafety,space,temperature,lighting,ventilation,food,water,sanitaryfacilities,privacy,andaffordability.

i Theregistryprovidessafedrinkingwaterforallemployeesandfacilitiesforcleanandsanitaryfoodstorageandeating.

jWhererelevanttheregistryhasputinplacespecialhealthandsafetyprecautionsforpregnantwomen,employeeswithdisabilities,nightworkers,youngworkersandothervulnerablegroups.

kTheregistryhasaproceduretoensurethatallemployeesareprovided,freeofchargeordeposits,withtheprotectiveequipmentandtrainingnecessarytosafelyperformtheirjobfunctions.

lEmployeesarekeptfullyinformed,inalanguageandformunderstandabletothem,ofanyhealthandsafetyrisksassociatedwiththeirjobfunctions,includingrequirementsforprotectiveequipment.

m

Ataminimumofeverytwoyears,andwhenassignedtonewtasks,employeesreceivetrainingbyaknowledgeableexpertinthesafeuseofequipmentandprocesses,andanaccuraterecordiskeptofwhohasbeentrainedandforwhattasks.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryensurethatitsworkersareaffordedsafe,suitableand

sanitaryworkfacilities?

A.13IntellectualPropertyRights

Righttointellectualproperty

13

Humanrightsimpactscenario

Probability(choose) Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistrypolicyonownershipoftheintellectualpropertyrightsforinventionsorotherworksisagreeduponbyemployeesandtheirrepresentatives.

bTheregistryhasanagreementwithitsemployeesabouthowintellectualpropertyrightsforproductscreatedorinventedinwholeorinpartbyemployeesaretobeshared.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryobtainemployees'informedconsentandprovidethemwith

compensationforinventionsorotherworksgeneratedbythementirelyorin

part?

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Aspartofitsduediligenceprocesses,thecompanycontactsthepatentofficestoobtaininformationaboutinventionsitmaywishtouse.

b Thecompanyobtainsauthorizationfrompatentholdersbeforecommerciallyexploitinganylocallypatentedideasorproducts.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doesthecompanyobtainauthorizationfromexistingpatentholder(s)before

commerciallyexploitinganylocallypatentedinvention?

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Employeesarenotcompensatedforinventionsorotherworksgeneratedinwholeorinpartbythem.

14

B.RegistriesasProcurersofGoodsandServicesAppliestoTier1suppliers,andtolower-tiersupplierswhereasignificantpartoftheirproductiongoestotheregistry.

B.1HumanRightsinSupplyChainManagementHumanrightsimpactscenario

Probability(clickbelowtochooseoption)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhasacommitmenttopromotethecontinuousimprovementofhumanrightsstandardsofitssuppliers.

b Thecommitmentissupportedbytrainingonhumanrightsstandardsforrelevantmanagementandprocurementstaff.

c Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofabusivehumanrightsconduct.

dTheregistryhasdefinedminimumrequirementsforthehumanrightsstandardsofsuppliersandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

e Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofhumanrightsstandards.

fTheregistry'sprocurementpractices,suchasprices,deliverytimesandinternalincentivestructures,encourageimprovedhumanrightsinsuppliersandbusinesspartners.

g Theregistrycollaborateswithothercompaniestopromoteimprovedhumanrightsstandardsinsuppliers.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrypromoteinternationalhumanrightsstandards(e.g.employee,communityandconsumerrights)initsinteractionswithsuppliersandbusinesspartners?

B.2Hours,Wages,andLeaveRighttoworkandtojustandfavourableconditionsatwork,Righttorestandleisure,Righttoadequatestandardofliving,Righttofamilylife,RighttohealthHumanrightsimpactscenario

Humanrightsstandards(e.g.onemployeetreatment,communityimpactandconsumerrights)arenotadequatelypromotedininteractionswithsuppliersandbusinesspartners

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

Supplieremployeesareexposedto:-excessiveworkinghours,excessiveovertimeandlackofrestperiods;-salariesthatdonotconstitutealivingwagesufficienttomeetthebasicneedsoftheemployeeandtheemployee'slegitimatedependents;or-lackofpaidannualleave,paidsickleaveandpaidmaternityleave.

15

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasdefinedminimumrequirementsconcerningworkinghours,overtime,restperiods,wagesandlaveandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnon-conformancewiththeserequirements.

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrightscompliancequestion YES NO F/A N/A

Doestheregistrypromotelabourstandardsonworkinghours,overtime,restperiods,wagesandleaveinitsinteractionswithsuppliersandbusinesspartners?

B.3WorkplaceHealthandSafetyRighttoworkandtojustandfavourableconditionsatwork,RighttohealthHumanrightsimpactscenario

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasdefinedminimumrequirementsconcerningworkplacehealthandsafetyandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnon-conformancewiththeserequirements.

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakestepstoensurethatemployeesofitssuppliersareaffordedsafe,suitableandsanitaryworkfacilities?

B.4ForcedLabourRighttofreedomfromforcedlabourandservitudeHumanrightsimpactscenario

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

Supplieremployeesareexposedtounsafeorunhealthyworkingenvironments,resultinginaccidentsorpersonalinjury.

7
16

Probability

(choose)

Severityofconsequencesfor

impactedpeople(clickto

chooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasdefinedminimumrequirementsconcerningforcedandbondedlabourandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnon-conformancewiththeserequirements.

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakeallnecessarymeasurestoensurethatitssuppliersdonot

participateinanyformofforcedorbondedlabour?

B.5ChildLabour

RightsoftheChildHumanrightsimpactscenario

Probability

(choose)

Severityofconsequencesfor

impactedpeople(clickto

chooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhasdefinedminimumrequirementsconcerningminimumageandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnon-conformancewiththeserequirements.

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakeallnecessarymeasurestoensurethatitssupplierscomply

withminimumagestandards?

B.6Non-Discrimination

TherighttofreedomfromdiscriminationandharassmentHumanrightsimpactscenario

Workfromsupplieremployeesisobtainedinvoluntarilyandunderrealorperceivedthreat(e.g.Forcedovertime,Recruitmentfees,MoneydepositsandRetentionofpersonaldocuments).Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Suppliersemploychildrenorminors(belowtheageof15yearsforfull-timeworkandbelowtheageof18yearsforhazardouswork).

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

17

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)High

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasdefinedminimumrequirementsconcerningnon-discriminationandnon-harassmentandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnon-conformancewiththeserequirements.

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakeallnecessarymeasurestoensurethatitssuppliersprohibitharassmentandbaseemployment-relateddecisionsonrelevantandobjectivecriteria?

B.7PrivacyRighttoprivacyHumanrightsimpactscenario

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhasdefinedminimumrequirementsconcerningprivacyandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnotmeetingtheprivacystandards

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakeallnecessarymeasurestoensurethatitssupplierscomplyprivacystandards?

B.8IntellectualPropertyRightsRighttointellectualproperty,righttosecurity,

Supplieremployeesareexposedtoharassmentoremploymentrelateddecisionsmadeondiscriminatorygrounds,andnotonthebasisofqualifications,skillsandrelevantexperience.(Canbeseeninpracticesrelatedto:recruitment,compensation,accesstotraining,employeebenefitsandservices,promotion,terminationorretirement.Groundsfordiscriminationcanbe:sex,race,colour,Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

Supplierworkplacemonitoringorcollectionofemployeepersonaldataoccurswithouttheknowledgeofsupplieremployees,withoutajustifiablepurposeorinadisproportionatemanner.

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

18

Humanrightsimpactscenario

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasdefinedminimumrequirementsconcerningintellectualpropertyandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

cTheregistryhasconsideredapreferenceforfreeandopen-sourcesoftwareandhardwaretoenhancesecurityandreducepotentialunforseenintellectualpropertlyclaims.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakeallnecessarymeasurestoensurethatitssupplierscomplywithintellectualpropertyrightsstandards?

B.9CommunityImpactRighttoadequatehealth,RighttoadequatestandardoflivingHumanrightsimpactscenario

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryhasdefinedminimumrequirementsconcerningenvironmentalimpactsandhazardsandcommunicatestheseinwritingtonewandexistingsuppliersandbusinesspartners.

b Theregistryhasconductedanassessmentofitssupplychaintoidentifywhichsuppliershavethegreatestriskofnon-conformancewiththeserequirements.

c Wherenecessary,theregistrycollaborateswithindividualsupplierstoimplementcontinuousimprovementsofthesestandards.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Employeesofsuppliersarenotcompensatedforinventionsorotherworksgeneratedbythem,entirelyorinpart.

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

Environmentalimpactsofsuppliersleadingtohealthproblems,reducedlivelihoodsandaccesstosafewaterforlocalcommunitiesoccur.

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

19

Doestheregistrytakeallnecessarymeasurestoensurethatitssuppliershaveaproceduretoassessandaddresstheenvironmentalimpactsofitsoperationsonthehumanrightsoflocalcommunities?

20

C.Registries,theEnvironment,andLocalCommunities

C.1EnvironmentalImpacts

Righttoadequatehealth,RighttoadequatestandardoflivingHumanrightsimpactscenario

Probability(click

belowtochoose

option)

Severityofconsequencesfor

impactedpeople(clicktochoose

option)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryfollowsinternationalenvironmentalstandardsorlocallaw,whateveristhehighest.

b

Beforestartingnewoperationsordevelopments,theregistryconductsanimpactstudytoassessthepotentialenvironmentalandsocialimpactsoftheplannedactivities,includinganassessmentoftheirpotentialhumanrightsconsequencesforlocalinhabitantsorotheraffectedcommunities.

cTheregistryhasamethodforidentifyingtheindividualswhoarelikelytobeaffectedbysuchimpactsandengagesinconsultationwiththoseindividuals,priorto,duringandaftercarryingouttheoperations.

dTheregistrysharesthefindingsofitssocialandenvironmentalimpactassessmentstudieswiththeaffectedindividualsinaformandlanguageaccessibletothem.

eInconsultationwiththeaffectedindividuals,theregistrydevelopsappropriatemanagementplanstoprevent,reduceandmitigateadversesocialandenvironmentalimpacts.

fTheregistrycontinuouslymonitorsitssocialandenvironmentalimpactsandprovidesaffectedindividualswithregularaccesstoupdatedinformationaboutthesocialandenvironmentalimpactsofregistryoperations.

g Theregistryhasclearproceduresinplaceforwastemanagement,includinge-wastemanagement.

hTheregistryprovidesorcollaboratesinanaccessible,effective,fairandtransparentmechanismtoreceiveandresolvegrievancesfrompotentiallyaffectedindividuals.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryhaveaproceduretoassessandaddresstheimpactofitsoperations

onthehumanrightsoflocalcommunities?

C.2Security

Righttofreedomfromtorture,ordegradingtreatmentorpunishment,Righttolife,libertyandsecurityofpersonHumanrightsimpactscenario

Environmentalimpactsleadingtohealthproblems,reducedlivelihoodsorreducedaccesstosafewaterforlocalcommunitiesoccur.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

21

Probability

(choose)

Severityofconsequencesfor

impactedpeople(clicktochoose

option)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistryregularlyconductssecurityriskassessments,andensuresthatcompanysecurityarrangements,includingthedeploymentofprivateguardsorpublicsecuritypersonnel,areproportionatetothesecurityrisk.

b Companysecurityriskassessmentsincludeanassessmentoftheriskofhumanrightsabusesbyprivateandpublicsecuritypersonnelinthecountryorareasofoperation.

c

Theregistryselectsprivatesecurityfirmsbasedoninformationaboutprofessionalability,levelofstafftraining,qualityofequipment,pastinvolvementinhumanrightsabuses,linkswithpoliticalfactionsororganisationsandotherrelevantcriteria.

d

Contractswithprivatesecurityfirmsincluderequirementsrelatedtointernationalhumanrightsstandardsforlawenforcementanduseofforce;requiretheinvestigationanddisciplineofanyunlawfulorabusiveconductbysecurityguards;andallowforterminationofthecontractincaseofsuchconduct.

eThereisamanualdefiningthedutiesofsecuritypersonnel,andallsecuritypersonnelreceivetrainingonrulesofconductbasedoninternationalhumanrightsstandardsforlawenforcementandtheuseofforce.

f

Wherepublicsecuritypersonnelareassignedtocompanyfacilities,theregistryseekstoensuretransparencyconcerningitsinteractionswithpublicsecurityagencies,andtheregistrycommunicatestotherelevantpublicsecurityagenciesitsdesirethatsecurityfunctionsbeconductedinaccordancewithinternationalhumanrightsstandardsforlawenforcementandtheuseofforce.

g

Theregistryhasaprocedureforrecordingsecurity-relatedincidents,includingamechanismforhandlingcomplaintsfromstafforlocalcommunitiesrelatedtotheconductofsecuritypersonnel,andforwardscredibleallegationsofhumanrightsabusestotherelevantauthorities.

h

Theregistryhasaprocedureformonitoringandevaluatingitssecurityarrangements,includingtheproportionalityofthesecurityarrangement;impactonlocalcommunities;impactonexistinglocaltensionsorconflicts;securityincidentsrecorded;andcredibleallegationsofhumanrightsabusesbyregistrysecuritypersonnel.Representativesfromthelocalcommunityareconsultedaspartofthemonitoring.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrytakestepstoensurethatcompanysecurityarrangementsarein

accordancewithinternationalhumanrightsprinciplesforlawenforcementandthe

useofforce?

C.3LandManagement

Righttoownproperty,Righttoadequatehousing,Righttoadequatestandardofliving

Localcommunitiesareexposedtoharassment,intimidation,useofforceorotherimpropertreatmentbyprivatesecurityguards,policeormilitaryprovidingsecurityforcompanypersonnelorforassetsthatare

owned,operatedorusedbytheregistry.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

22

Humanrightsimpactscenario

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aPriortobuying,renting,acquiringorotherwiseaccessinglandorproperty,whetherdirectlyorthroughathirdparty,theregistryidentifiesallexistingownersandusersorofthelandorproperty.

b

Theregistryalsoinvestigatesthepastusageandownershipofthelandorpropertytoensurethatpastusersandownershavenotbeenwrongfullyremoved,andthatanyexpropriationsbytheauthoritieshavebeenconductedinaccordancewithinternationallaw.

c

Theregistryconsultswithaffectedusersandownersofthelandorproperty(includingwomen,tenants,settlers,minoritiesandothervulnerablegroups)andseekstheirfreeandinformedconsentbeforecontinuingtoacquireoraccessthelandorproperty.

dTheregistryensuresthataffectedownersandusersofthelandorpropertyareadequatelycompensated,atorabovemarketreplacementrates,forthelandorproperty,includingfordamagestoland,damagestoassets,andlossofincome.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Beforebuying,renting,acquiringorotherwiseaccessinglandorproperty,doestheregistryensurethatallaffectedownersandusersofthelandorproperty,havebeenadequatelyconsultedandcompensated?

C.4CorruptionandBriberyRighttoaccesstoinformation,RighttotakepartiningovernmentHumanrightsimpactscenario

Probability(choose)

Severityofconsequencesforimpactedpeople(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryinformsallemployeesaboutitsanti-corruptioncommitment.

b Theregistryprovidesanti-corruptiontrainingatalllevelswithintheorganization

c Informationondisciplinaryproceduresforviolationsofcompanyanti-corruptionpoliciesisavailabletoemployees.

d Theregistryactivelyseeksemployeefeedbackanddialogueonitsanti-corruptioninitiatives.

Acquisition,leasing,orrentingoflandorpropertyleadstoimproperdisplacementofowners,residentsoruserswithoutadequatepriorinformedconsultationorwithoutadequatecompensation.Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

Payments,giftsorservicesaremadeorofferedbyregistryoritsrepresentatives,agentsorsupplierstocivilservantsorpublicauthorities,togainorfacilitatedecisionsandservices

Describekeyimpactsandwhoisimpacted(writetext)

Assessnumbersimpacted(clicktochooseoption)

23

eTheregistryhasandpromotesafunctionbywhichemployeescansafelyreportsuspicionofcorruptionrelatedcases(e.g.hotlineormailbox)andallocatesresourcestosystematicallyaddresstheissuesthatareidentified.

fTheregistryevaluatesthepotentialareasofcorruptionincludingfactorssuchastypeoftransaction,countriesofoperation,industries,andcustomersorbusinesspartnersinvolved.

g Theregistryevaluatestheriskofcorruptionwhenemployees,agents,intermediariesorconsultantsdealwithpublicofficialsincludingemployeesofstateownedcompanies.

hTheregistryevaluatestheriskofinternalandexternalconflictsofinterestinrelationtobusinesspartnersandgovernmentofficialsincludingemployeesofstateownedcompanies.

i Theregistryhasdevelopedanactionplantoaddresstheriskofcorruption,andhasdefinedresponsibilitiesforeachtaskincludingdetailedpoliciesforhigh-riskareas.

jTheregistryhasidentifiedtheweakestspotsofcorruptionwithintheregistryandseekstoaddresstheseweaknessesinthepreventionofcorruptioninternalfunctionswiththehighestriskofcorruption,andaddressesweaknessesinthepreventionofcorruption.

kTheregistrysharesexperience,proceduresandchallengesofcorruptionwithotherorganizationsi.e.thelocalbusinesscommunity,sectorinitiatives,networksetc.

l Theregistryhasinitiatedorjoinedinitiativeswithothercompaniesinthesamesectorforthepurposeofpromotingafairbusinessenvironment.

m Theregistrystimulatesmulti-stakeholderdialogueonchallengesofcorruption.

n Theregistryencouragesthelocalbusinesscommunityandbusinesspartnerstoinitiatecooperationtofightcorruption.

Humanrightscompliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryevaluateandassesstheriskofcorruptionwhendoingbusiness?

24

D.RegistriesasProvidersofTLDandOtherDomainServices(in-houseoroutsourced)

D.1AcquiringTLDs

Righttofreedomofexpression,righttoprivacy,freedomofassociation,freedomfromdiscriminationD.1.1AgreementswithICANN

Humanrightsimpactscenario

Probability(click

belowtochoose

option)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a TheagreementwithICANNincludesacommitmenttorespectinternationalhumanrights.

b TheagreementwithICANNincludesacommitmenttorespecttherighttoprivacyofregistrarsandregistrants.

c InformationaddedtothepublicWHOISregistryisinlinewithlocalandinternationallawaswellashumanrights.

d InformationaddedtothepublicWHOISregistrycanbeminimizedtoimproveregistrantsprivacy.

e TheagreementwithICANNincludesacommitmenttorespecttherighttofreedomofexpressionofregistrarsandregistrants.

f TheagreementwithICANNincludesacommitmenttorespecttherighttofreedomofassociationofregistrarsandregistrants.

g TheagreementwithICANNincludesacommitmenttoensuretherighttofreedomfromdiscriminationofregistrarsandregistrants.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Arerelevanthumanrightsissuesapartoftheagreementbetweentheregistryand

ICANN?

D.1.2Agreementswithgovernment

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theagreementwiththecorrespondinggovernmentincludesacommitmenttorespectinternationalhumanrights

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

TheagreementbetweentheregistryandICANNdoesnotcoverhowtheregistryshouldalignitselfwithhumanrights,includingonissuessuchasfreedomofexpressionandrighttoprivacy,andinrelationtothe

registry'stermsandconditions.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

InthecaseofaccTLD,theagreementbetweentheregistryandthecorrespondinggovernmentdoesnotcoverhowtheregistryshouldalignitselfwithhumanrights,includingonissuessuchasfreedomofexpression

andrighttoprivacy,initstermsandconditions.

25

b Theagreementwiththecorrespondinggovernmentincludesacommitmenttocomplywiththerighttoprivacyofregistrarsandregistrants.

c Theagreementwiththecorrespondinggovernmentincludesacommitmenttocomplytherighttofreedomofexpressionofregistrarsandregistrants.

d Theagreementwiththecorrespondinggovernmentincludesacommitmenttoensuretherighttofreedomofassociationofregistrarsandregistrants.

e Theagreementwiththecorrespondinggovernmentincludesacommitmenttoensuretherighttofreedomfromdiscriminationofregistrarsandregistrants.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Arehumanrightsintegratedintotheagreementbetweentheregistryandthe

correspondinggovernment?

D.2HumanRightsinRegistrarEngagement

Righttofreedomofexpression,righttoprivacy,freedomofassociation,freedomfromdiscriminationD.2.1Humanrightsininteractionswithregistrars

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhasacommitmenttopromotethecontinuousimprovementofhumanrightsstandardsofitsregistrars.

b Thecommitmentissupportedbytrainingonhumanrightsstandardsforrelevantstaff.

c Theregistryhasdefinedminimumrequirementsforthehumanrightsstandardsofregistrarsandcommunicatestheseinwritingtonewandexistingregistrars.

dThecontractbetweenregistryandregistrarcommitsregistrarstoavoidcontributingtoactionsthatmayinterferewiththerighttoprivacyofregistrantsorotherusers,exceptwheresuchactionsarelawful,proportionateandforajustifiablepurpose.

eThecontractbetweenregistryandregistrarincludesacommitmenttorespectinternationalhumanrights,suchastherighttoprivacy,freedomofexpression,freedomfromdiscriminationandfreedomofassociation.

f

Inrelationtotakedownsandblockingofspecificdomains,thecontractbetweenregistryandregistrarcommitsregistrarstorespecttherighttofreedomofexpressionofregistrantsandotherusers,andtoavoidcontributingtoactionsthatmayinterferewiththisright,exceptwheresuchactionsarelawful,proportionateandforajustifiablepurpose.

g

Thecontractbetweenregistryandregistrarcommitsregistrarstomaintainopennessandthefreeflowofinformationovertheinternetexceptinfew,exceptional,andlimitedcircumstancesprescribedbyinternationalhumanrightslaw,suchasinthecaseofabusiveordiscriminatorycontent.

h Theregistryhasinplaceproceduresforongoingmonitoringofregistrars'compliancewiththerequirementssetoutinthecontract.

Humanrightsstandardsarenotadequatelypromotedininteractionswithregistrars.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

26

iThecontractbetweentheregistryandregistrarcontainsprovisionsfortheregistrartoinformtheregistryinthecasethattheregistrarisnotwillingtodelegatespecificdomainsonthebasisoflegitimateandreasonablegrounds.

jTheregistrymaintainsaninventoryofspecificdomainswithlimitedavailabilitytoensurewideavailabilityofregistration,andinformsregistrantsoftheavailabilityofalternativeoptionstoregisterdomains.

k Iftheregistrychoosestolimittheregistrationofdomains,thedelegationisinlinewithhumanrightsandclearlycommunicatedwithappropriatedueprocess.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrypromoteinternationalhumanrightsstandardsinitsinteractions

withregistrars?

D.2.2Humanrightsincontracttermswithregistrars

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aThecontractbetweenregistryandregistrarincludesacommitmenttorespectinternationalhumanrights,suchastherighttoprivacy,freedomofexpression,freedomfromdiscriminationandfreedomofassociation.

bThecontractbetweenregistryandregistrarcommitsregistrarstoavoidcontributingtoactionsthatmayinterferewiththerighttoprivacyofregistrantsorotherusers,exceptwheresuchactionsarelawful,proportionateandforajustifiablepurpose.

c

Inrelationtotakedownsandblockingofspecificdomains,thecontractbetweenregistryandregistrarcommitsregistrarstorespecttherighttofreedomofexpressionofregistrantsandotherusers,andtoavoidcontributingtoactionsthatmayinterferewiththisright,exceptwheresuchactionsarelawful,proportionateandforajustifiablepurpose.

d

Thecontractbetweenregistryandregistrarcommitsregistrarstomaintainopennessandthefreeflowofinformationovertheinternetexceptinfew,exceptional,andlimitedcircumstancesprescribedbyinternationalhumanrightslaw,suchasinthecaseofabusiveordiscriminatorycontent.

e Theregistryhasinplaceproceduresforongoingmonitoringofregistrars'compliancewiththerequirementssetoutinthecontract.

f Inthecasethatthereisadirectcontractualrelationbetweentheregistryandtheregistrantthecontractisalignmentwiththeregistrycommitmenttohumanrights.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistrysetrequirementsonregistrarstorespecthumanrightsintheir

engagementwithregistrantsandotherusers?

D.3ProvidingDomainNames

Freedomofexpression,righttoprivacy,freedomofassociation,freedomfromdiscrimination,righttomaterialgainsfrominventionsandmoralrightsofauthorsD.3.1Contractsbetweenregistrarandregistrant

Humanrightsimpactscenario

Theregistrydoesnotrequireregistrarstorespecthumanrightsintheirengagementwithregistrants.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

27

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Low

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryensuresthattheirtermsofserviceareclearlyandopenlycommunicatedinthecontractsbetweenregistrarsandregistrants.

b Theregistryensuresthatregistrarscommunicateclearlyandopenlyaboutcontractualcommitmentsbetweenregistryandregistrantsintheircontractswithregistrants.

cThecontractbetweentheregistryandregistrarincludesprovisionstoensurethatthehumanrightscommitmentsareconveyedtotheregistrantinawaythatiseasilyaccessible.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryensurethatregistrarsinformregistrantsabouttheircontractual

commitmentstotheregistry,andabouttheregistry'stermsofservice?

D.3.2Accesstodomains

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryensuresthatitsownpricesettingofdomainsallowsforequalaccesstoitsservices.

b Theregistryengageswithregistrarstoensurethattheirpricesareatalevelthatallowsforequalaccesstoacquiringdomains.

c Theregistryengageswiththeregistrartoensureaccesstothedomainforpeoplewithdisabilitiesorlanguageconstraintsimpairingtheiruseoftheregistrarplatform.

d Theregistryensuresthatthedomainsarewidelyavailable,accessibleandaffordabletoall.

e Theregistryensuresthatnoregistrantisexcludedfromaccesstoadomainbytheregistrar,unlesssuchexclusionisbasedonnationallawofthecountryoftheregistry.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryensurefairandequalaccesstoacquiringdomains?

D.3.3Managingpersonaldata

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Registrantsarenotclearlyandopenlyinformedabouttheircontractualcommitmentstotheregistryortheregistry'stermsofservice.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

5.000personsandabove

CertaingroupsarefullyorpartlyexcludedfromacquiringavailableTLDs,duetopricingorotherobstacles.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Personaldataiscollected,storedorusedwithoutaclearlydefinedpurpose,inanunlawfulorunsafemanner,orwithouttheinformedandcontinuedconsentofregistrants.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

28

Indicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

a Personaldataiscollectedforaspecificandclearlydefinedpurpose.Theregistryhasmechanismstoensurethatdataisaccurate,completeandkeptup-to-date.

bTheregistryhasprocessestoensurethatpersonaldataisdeletedwhenitisnolongernecessarytofulfilthepurposesforwhichitwascollected,exceptifthedataisstrictlynecessaryforoperationalpurposes.

c

Theregistryhasmeasurestopreventthatpersonaldataisdisclosed,madeavailableorotherwiseusedforpurposesotherthanthoseforwhichitiscollected;exceptwiththeconsentoftheregistrantoruser,orbytheauthorityoflaw.

d Dataisonlyusedtoidentifyuserpatternsinananonymizedform.

e Employeeshaveadutyofconfidentialitybylawandwrittenagreementsregardingnon-disclosure.

f

Personaldataisprotectedbyreasonablesecuritysafeguardsagainstsuchrisksaslossorunauthorisedaccess,fraud,destruction,use,modificationordisclosureofdata.Anybreachinsecurityorintheconfidentialityofpersonaldataareremediatedwithin24hours,ifatallpossible.

gSecurityauditsarecontinuouslyconductedtoensureimplementationofcorrectiveactions(e.g.incaseofsecurityincidents)andtomaximizecompliancewithprivacyanddataprotectionpoliciesandguidelines.

h

Registrantsandusersmayobtaininformationaboutdatarelatingtohim/her;havethosedatacommunicatedwithinareasonabletimeinaninexpensiveandreasonablemanner;beabletochallengedatarelatingtohim/herand,ifthechallengeissuccessful,havethedataerasedorrectified.

iThereisageneralpolicyofopennessaboutpracticesandpolicieswithrespecttopersonaldata.Meansarereadilyavailableofestablishingthenatureofpersonaldatacollected,themainpurposesoftheiruse,andtheidentityofthedatacontroller.

j

Registryservicesthatincludeprivacysettingsarebydefaultsettomaximizetheprivacyprotectionoftheregistrantand/oruser.Theregistryprovidesclearinformationandwarningstoregistrantsandusers,includingminors,ofthepotentialconsequencesofchangestheymakeintheirdefaultprivacysettings.

k Theregistryisawareofandcomplieswithrelevantnationallaws,internationalguidelines,andindustrystandardsregardingthetransferofpersonaldata.

Humanrights

compliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryrespecttheprivacyofregistrantsandotherusers,andprotecttheir

personaldata?

D.3.4Securityinservicesandoperations

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Servicesprovidedbytheregistryarenotsecureduetolackofprecautionarymeasures.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

29

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a TheregistryhasdocumentedDNSSECsigningproceduresinplace.

b TheregistryhasformalsecuritycontrolframeworksinlinewithISOstandards.

c Theregistryimplementscurrentapplicableprivacystandards(e.g.DNSoverTLS,orDNSoverQEUC).

d TheregistryoffersbothIPv4andIPv6forallitsservices.

e Aregularsecurityreviewandauditofregistrysoftwareplatformsisperformedthroughindependentthirdpartyaudits.

f Iftheregistryhasserviceshostedonthird-partyhostingordistributionplatforms,theapplicablelegalframeworkandtermsofservicecomplywithhumanrightsstandards.

g Throughthecontractswiththeregistryandorregistrantitisclearlycommunicatedinwhichjurisdictionsandunderwhichtermsofservicetheirdataishandled.

h Iftheregistryhasservicesinternallyhosted,theToEsarereflectedintheregistry'sowntermsofservice.

iIftheregistryhasphysicalserverslocatedindifferentphysicallocationsindifferentjurisdictions,theregistryensuresthatsecuritystandardsaremetinalllocationsandjurisdictions.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryapplysufficientandappropriatemeasures,includingnewest

standardsandtechnologies,toensurethesecurityofitsservicesandoperations?

D.4MaintainingDomainNames

Righttofreedomofexpression,righttoprivacy,freedomofassociation,righttosecurityHumanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aInanyoperationstoensurerobustnessresilienceandstabilityoftheTLD,policiesandproceduresareinplacetoensuretheprivacy,freedomofexpressionandotherhumanrightsofregistrantsandusers.

b Theregistryhasinplaceasystemtomonitorsystemfunction.

c Registrarsareinformedincaseoftechnicalfailure.

d Registrarsarerequiredbytheregistrytoinformregistrantsincaseoftechnicalfailure.

e Registrarsareinformedincaseofsecuritybreaches.

f Registrarsarerequiredbytheregistrytoinformregistrantsincasesofsecuritybreaches,consequencesandremediationapproaches.

g Theregistryhasstandardiseditsprocessesinaccordancewithinternationalstandards,suchasISO9001orequivalent.

Personaldataiscompromisedduetosystemmalfunctionorsecuritybreach.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

30

h TheregistryhasasysteminplacetomitigateattacksagainsttheTLD(e.g.amplificationattacks).

i Theregistryhassystemsinplacetomitigateinfrastructureabuses(e.g.malware,botnetsetc.).

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryasysteminplacetoensuretheongoingmaintenanceandfunction

oftheTLD?

D.5Amending/TransferringDomainNames

Righttofreedomofexpression,righttoprivacy,freedomofassociation,righttosecurityHumanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a Theregistryhasinplaceasystemtoeasilyamendandtransferdomains.

b AnytransferalsoramendmentsaredonewithpermissionbytheregistrantandinlinewithhumanrightsstandardsandapplicablenationallawsthatgoverntheRegistry.

c Registrarsarerequiredtofileamendmentstothesystemoftheregistry.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryhaveasysteminplacetotransferdomainsinawaywhichalignsto

nationalregulationandinaccordancewithhumanrightsstandards?

D.6EngagingwithThirdParties

Righttofreedomofexpression,righttoprivacy,freedomofassociation,righttosecurityD.6.1Interferencewiththerighttoprivacy

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

a Theregistryhasapolicycommitmenttocomplywithrelevantinternationalandregionalstandardsonprivacyanddataprotection.

bRegistrantsareinformedaboutcircumstancesinwhichtheregistryisunderalegalobligationtorevealtheiridentification,connectionortrafficdatabyrequestfromgovernmentagencies.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Registrantsareunabletoamendortransfertheirdomains.

Personaldataisaccessed,disclosedormonitoredinamannerwhichisunlawful,disproportionateorinbreachofinternationalhumanrightsprinciples.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

31

c

Theregistryhasacommitmenttoevaluateanyinternalorexternalrequest-includinggovernmentrequests-thatmayinterferewiththeregistrants'orusers'righttoprivacyaccordingtointernationalprivacystandards,e.g.tomonitororaccesspersonaldata.Theregistryrequiresdetailsregardingthenecessityandjustificationforanyrestrictiverequest.Requestsarerequiredinwrittenform,ifatallpossible.

dProcedurestobefollowedincaseofarequestthatinterferewithregistrants'orusers'righttoprivacyareclearlydescribedandincludedinrelevantcompanyguidelines/instructions.

e Anylegitimaterequestthatinterferewiththerighttoprivacyisnarrowlyinterpretedandenforcedintheshortesttimeperiodpossible.

fWhenrequestsappeartobeinconflictwithinternationalstandardsonprivacytheregistryhasprocessestoseekjudicialreviewinaccordancewithestablishedinternationaltreaties,guidelines,orotherresources.

g Registrants,governmentauthorities,andotherrelevantstakeholdersarenotifiedintheeventofdatabreachorunauthorizedprocessingofpersonaldata.

Humanrights

compliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryavoidcontributingtoactionsthatmayinterferewiththeprivacyof

registrantsandusers,exceptwheresuchactionsarelawful,proportionateandfora

justifiablepurpose?

D.6.2Interferencewiththerighttofreedomofexpression

Humanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

a Theregistryhasacommitmenttointernationalandregionalstandardsonfreedomofexpression.

bTheregistrywillasthegeneralrulemaintainopennessandthefreeflowofinformationovertheinternetexceptinfew,exceptional,andlimitedcircumstancesprescribedbyinternationalhumanrightslaw,suchasabusiveordiscriminatorycontent.

c

Theregistryhasacommitmenttoevaluateanyinternalorexternalrequesttoconductanintentionaltakedownaspecificdomainaccordingtointernationalstandardsonfreedomofexpression.Theregistryrequiresdetailsregardingthenecessityandjustificationforanyrestrictiverequest.Requestsarerequiredinwrittenform,ifatallpossible.

d

Incaseoftakingdownorblockingofspecificdomain,thisisbasedonadecisionbyacompetentjudicialauthorityorabodythatisindependentofanypolitical,commercialorotherunwarrantedinfluence.ThedecisioncanbereviewedbyanindependentandimpartialtribunalorregulatorybodyinaccordancewiththerequirementsofArticle6oftheEuropeanConventiononHumanRights.

e Procedurestobefollowedincaseofarequesttorestrictadomainserviceareclearlydescribedandincludedinrelevantcompanyguidelines/instructions.

f Anylegitimaterequestthatinterferewiththerighttofreedomofexpressionisnarrowlyinterpretedandenforcedintheshortesttimeperiodpossible.

Registrantsorusersarebarredfromcommunicating,seekingorimpartinginformationinamanner,whichisunlawfulordisproportionateorinbreachofinternationalhumanrightsprinciples.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

32

g

Whenrequestsappeartobeinconflictwiththeinternationalstandardsonfreedomofexpression,theregistryhasprocessestoseekjudicialreview,appealtorelevantbranchesoftheadministration,andengagewithrelevantbodiesorotherstakeholders,includingfromcivilsociety,foradviceandsupport.

h

Theregistryconsiders,asthegeneralrule,requeststocompletelydisconnectregistrantsfromaccesstotheirTLDtobedisproportionateandinviolationofhumanrightsprinciples,regardlessofthejustificationprovided,includingonthegroundsofviolatingintellectualpropertyrightslaw.

i

Theregistryhasprocessestoensurethatitwillnotinterferewiththeregistrants'andotherusers'freedomtoaccesscontentanduseapplicationsoftheirchoice,unlesssuchinterferenceisstrictlynecessaryandproportionatetosafeguardtheintegrityandsafetyofthedomainorservice,executeacourtorder,orcomplywithawrittenrequestfromtheregistrantoruser.

Humanrights

compliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryhaveacommitmenttorespecttherighttofreedomofexpressionof

registrantsandusers,andtoavoidcontributingtoactionsthatmayinterferewith

thisright,exceptwheresuchactionsarelawful,proportionateandforajustifiable

purpose?

D.7TerminatingDomianNames

Righttofreedomofexpression,righttoprivacy,freedomofassociation,righttosecurityHumanrightsimpactscenario

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

a TheregistryhasinplaceaprocedureforterminationoftheTLD.

b TheregistryhasinplacerequirementsintheengagementwiththeregistraronthetermsforterminationoftheaccesstotheTLD.

c Theregistryengageswiththeregistraronhowtoengagewithregistrantsontermination,includingnoticeperiodsandlengthofstorageofpersonaldata.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryensurethatregistrantsareinformedabouttheprocedurefor

termination?

D.8GrievanceMechanismsandResolution

Righttoremedy,freedomofexpression,righttoprivacy,freedomofassociation,righttonon-descriminationHumanrightsimpactscenario

Registrantsanddomainusersarenotprovidedaccesstomechanismstoraisegrievancesandachieveremedy.

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

RegistrantsarenotgivenpriornoticeabouttheterminationoftheiraccesstotheTLD.

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

33

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aRegistrantsandusers,includingminors,areprovidedwitheffective,safe,confidentialandtransparentmechanismsforvoicingandresolvingconcernsrelatingtohumanrightsissues.

bSubjecttolegalrestrictions,registrantsandusers,includingminors,whohavebeensubjecttointerferencewiththeirrightsisprovidedwithadviceonhowandwheretheymayrespond.

c Theregistryprovidesfor(orcollaboratesin)theswift,fairandcomprehensiveinvestigationandremediationofregistrantorusercomplaints.

d Theregistryprovidesindependentmediationorcomplaintbodyinthecasethataregistrarorregistrantdoesnotagreewithadecisionmadebysaidregistry.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryhaveamechanism(ormechanisms)inplacetorecieve,processand

adressgreivancesofregistrantsandotherdomainusers?

D.9Transparency

RighttofreedomofinformationHumanrightsimpactscenario

Registrantsanddomainusersareunabletoaccessinformationonthehumanrightsrelatedcommitments,policies,proceduresandperformanceoftheregistry.

Probability

(choose)

Severityofconsequencesforimpacted

people(clicktochooseoption)

Indicators YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

aTheregistry'spoliciesonhumanrightsareexplainedtoregistrars,registrants,andusersinclearlanguageandanaccessibleform,takingintoaccountforexamplepeople,withdisabilities,children,elderlyandethnicminorities.

b

Requeststhatinterferewithregistrants'orusers'righttoprivacyorfreedomofexpressionaredocumentedandcommunicatedtocustomersandotherrelevantstakeholderstothefullestextentpossible.Subjecttolegalrestrictions,affectedregistrantsandusersareinformedabouttheprocedurefortherequest,aswellastheactiontaken.

cSubjecttolegalrestrictions,theregistrypubliclyreportsdatabycountryonthenumberandcharacterofrequestsreceived,e.g.tomonitororaccessregistrants'orusers'dataorrestrictdomainservices,andhowithasrespondedtotheserequests.

Humanrights

compliancequestion YES NO F/A N/A COMMENTSANDDOCUMENTATION FOLLOW-UPACTION

Doestheregistryallowregistrants,domainusersandotherinterestedstakeholders

toaccessinformationonregistrycommitments,policies,proceduresand

performanceonhumanrights?

Describekeyimpactsandwhoisimpacted

(writetext)

Assessnumbersimpacted

(clicktochooseoption)

34

E.DueDiligenceQuestions

F.1AssessingImpactsIndicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

aTheregistryhasapolicycommitmenttoassessthepotentialadverseimpactsontheinternationalhumanrights,suchasrighttoprivacyandfreedomofexpression,associatedwithdesigning,selling,andoperatingdomainservices.

bProductimpactassessmentsarecarriedoutpriortoimplementingnewproductsorservices,toidentifyandmitigatepotentialadverseimpactthesemayhaveonhumanrights.

cTheassessmentincludesengagementwithstakeholdergroups,independentexpertresources,humanrightsgroups,andotherwithspecificknowledgeonnationallawsandregulation,tothewidestextentpossible.

Humanrightscompliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryidentifyandassesstheriskofcontributingtoadverseimpactsontheinternationalhumanrights?

F.2AddressingImpactsIndicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

aTheregistryhasadoptedstrategiestoanticipate,respondandminimisepotentialadverseimpactsonhumanrights.

b

Theregistryhasclearandunambiguoustermsofservice,iteratingthattheregistryiscommittedtointernationalhumanrightsstandards,includingonprivacy,dataprotection,andfreedomofexpression,andwillnotinterfereinthefreeflowofinformationovertheinternetexceptinfew,exceptional,andlimitedcircumstancesprescribedbyinternationalhumanrightslaw.

c Theregistryhasafunction,reportingtosenior-levelmanagement,withresponsibilityforoverseeingcompliancewithitsprinciplesonhumanrights.

d Sufficientorganisationalresourcesareinplacetoensureimplementationoftheregistry´scommitmenttohumanrights.

e Employeesreceivetrainingontheregistry'sprinciplesonhumanrights.

f Employeeshaveeffectivemeanstosafelyreportnoncompliancewiththeregistry'sprinciplesonhumanrights.

Humanrightscompliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryhavesystemsandorganisationalcapacityinplacetoaddresspotentialadverseimpactsoninternationalhumanrights?

F.3GovernmentRequestsIndicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

aGovernmentrequeststhatinterferewiththerighttoprivacyortherighttofreedomofexpressionaresubjecttooperationalprocessesthatassesstherequestforhumanrightscompliance.

35

bIncomplexcases,theassessmentincludesengagementwithindependentexperts,humanrightsgroups,andotherswithspecificknowledgeonnationallawsandregulation.

cGovernmentsarerequestedtoprovidedetailsregardingthenecessityandjustificationforanyrestrictiverequest.Requestsarerequiredinwrittenform,ifpossible.

d

Whengovernmentrequestsappeartobeinconflictwithhumanrightsstandardsonfreedomofexpressionortherighttoprivacy,theregistryhasprocessestoseekjudicialreview,appealtorelevantbranchesoftheadministration,engagewithrelevantUNbodiesorotherstakeholders,includingfromcivilsociety,foradviceandsupport.

e Anymeasurethatinterfereswiththerighttofreedomofexpressionistakenonthebasisofaspecificdecisionbyastateauthorityexpresslyempoweredbylawtodoso.

f

Governmentrequeststhatappearinconsistentwithhumanrightslawareaddressedbyseniorlevelmanagementtodecideontherisksofrespondingvis-a-visrejectingtherequest.Nationalandinternationalresources,includingindustrypeers,areengagedtotheextentpossible.

Humanrightscompliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryhaveproceduresinplacetohandlegovernmentrequeststopreventinterferancewiththerightstoprivacyandfreedomofexpression?

F.4TrackingComplianceIndicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

aPeriodicauditsareconductedtoassesscompliancewiththeregistry'sprinciplesonhumanrights.Theseauditsincludefeedbackfromregistrantsandotherpotentiallyaffectedstakeholders.

bSuppliersandbusinesspartnersareheldcontractuallyaccountableforcompliancewiththeregistry´sprinciplesonhumanrights.Aneffectiveprogrammeisinplacetomonitorcomplianceandensurecorrectiveaction.

Humanrightscompliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistryhavesystemsinplacetotrackcompliancewithitsprinciplesonhumanrights?

F.5CommunicationandReportingIndicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

aTheregistry'spoliciesonhumanrightsareexplainedtoregistrars,registrantsandusersinaclearandaccessibleformandlanguage,takingintoaccountforexamplepeoplewithdisabilities,children,elderlyandethnicminorities.

b

Requeststhatinterferewithregistrants'orusers'righttoprivacyortheirrighttofreedomofexpressionaredocumentedandcommunicatedtocustomersandotherrelevantstakeholderstothefullestextentpossible.Subjecttolegalrestrictions,affectedregistrantsandusersareinformedabouttheprocedurefortherequest,andtheactiontaken.

36

cSubjecttolegalrestrictions,theregistrypubliclyreportsdatabycountryonthenumberandcharacterofrequestsreceived,e.g.tomonitororaccessregistrants'orusers'dataorrestrictdomainservices,andhowithasrespondedtotheserequests.

dIncasearegistrantorusertriestoaccessspecificcontentwhichhasbeenblocked,theyareprovidedwithanexplanationofwhythecontentisblockedincludingcontactdetails.

Humanrightscompliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doestheregistrycommunicateandreportonitseffortstoupholdinternationalprinciplesonhumanrights?

F.6AccesstoRemedyIndicators YES NO F/A N/A COMMENTS FOLLOW-UPACTION

aRegistrantsandusers,includingminors,areprovidedwitheffective,safe,confidentialandtransparentmechanismsforvoicingandresolvingconcernsrelatingtohumanrightsissues.

bSubjecttolegalrestrictions,registrantsandusers,includingminors,whohavebeensubjecttointerferencewiththeirrightsareprovidedwithadviceonhowandwheretheymayrespond.

c Theregistryprovidesfororcollaboratesintheswift,fairandcomprehensiveinvestigationandremediationofregistrantorusercomplaints.

Humanrightscompliancequestion YES NO F/A N/A COMMENTS FOLLOW-UPACTION

Doregistrantsanduserswhoserightsmaybeaffectedbytheregistry'ssystems,productsorserviceshaveaccesstosafe,effectiveandfairremediesthroughwhichpotentialimpactscanbereported,investigatedandremediated?

37