Develop your complete privacy policy using P3Pwriter. You can make changes for up to a year at no charge and we guarantee it will validate or you get your money back. Start here --> |
|
3.0 SSL and Data Encryption Statement
Sensitive information is encrypted and is protected with the best encryption software in the industry - SSL. While on a secure page, the lock icon on the bottom of Web browsers such as Netscape Navigator and Microsoft Internet Explorer becomes locked, as opposed to un-locked, or open, when users are just ‘surfing’.
SSL works by sending a request to the server for a secure transaction. The server sends out it's public key which is generated on the spot. The client receives this key and encrypts all messages with it. The server and only the server can decrypt the messages and it will then respond with a message encrypted with the servers private key. Then the client uses the public key to decode the servers transmission.
This authentication/encryption mechanism prevents unwanted recipients from being able to read the information contained in the data transmission.
When a website collects sensitive personal, financial, or health related information there should be a description of how the site maintains security of the information. This may include encryption, physical security of hardware and software, software methods of security, authentication of user access, firewalls, employee training, and other data security methods.
|