{"component": "clause", "props": {"groups": [{"snippet": "a. Jamf will maintain policies and standards regarding the use of cryptographic controls that are implemented to protect Customer Content. Jamf will implement Industry Standard key management policies and practices designed to protect encryption keys for their entire lifetime.", "samples": [{"hash": "2FZqe7aVXgG", "uri": "/contracts/2FZqe7aVXgG#cryptography", "label": "Data Sharing and Confidentiality Agreement", "score": 32.2271881104, "published": true}, {"hash": "azih0kCaU97", "uri": "/contracts/azih0kCaU97#cryptography", "label": "Data Sharing/Use Agreement", "score": 31.412946701, "published": true}], "size": 7, "snippet_links": [{"key": "policies-and-standards", "type": "definition", "offset": [22, 44]}, {"key": "cryptographic-controls", "type": "clause", "offset": [66, 88]}, {"key": "customer-content", "type": "definition", "offset": [121, 137]}, {"key": "industry-standard", "type": "definition", "offset": [159, 176]}, {"key": "policies-and-practices", "type": "clause", "offset": [192, 214]}, {"key": "encryption-keys", "type": "clause", "offset": [235, 250]}], "hash": "db635cdc323f219d4bed06f6c819ecb4", "id": 3}, {"snippet": "Use of transport encryption for information that traverses across networks outside of the direct control of Zoho including, but not limited to the Internet, Wi-Fi and mobile phone networks.", "samples": [{"hash": "blSGb8IZRAF", "uri": "/contracts/blSGb8IZRAF#cryptography", "label": "Privacy Terms", "score": 35.9384117126, "published": true}, {"hash": "jG7Y82sa7h7", "uri": "/contracts/jG7Y82sa7h7#cryptography", "label": "Master Subscription Agreement", "score": 35.7651939392, "published": true}, {"hash": "kxuQpLnLAh2", "uri": "/contracts/kxuQpLnLAh2#cryptography", "label": "Master Subscription Agreement", "score": 35.7210273743, "published": true}], "size": 7, "snippet_links": [{"key": "transport-encryption", "type": "definition", "offset": [7, 27]}, {"key": "for-information", "type": "clause", "offset": [28, 43]}, {"key": "control-of", "type": "definition", "offset": [97, 107]}, {"key": "not-limited", "type": "clause", "offset": [128, 139]}, {"key": "the-internet", "type": "clause", "offset": [143, 155]}, {"key": "mobile-phone", "type": "definition", "offset": [167, 179]}], "hash": "8507061f24663e1fae421f1ce9271b36", "id": 2}, {"snippet": "Supplier will maintain policies and standards on the use of cryptographic controls that are implemented to protect Accenture Data.", "samples": [{"hash": "aqbJa1efWso", "uri": "/contracts/aqbJa1efWso#cryptography", "label": "General Terms and Conditions of Purchase", "score": 35.4821357727, "published": true}, {"hash": "aZATdteIEAG", "uri": "/contracts/aZATdteIEAG#cryptography", "label": "Purchase Order Agreement", "score": 35.4257202148, "published": true}, {"hash": "7RzbEB4UbsT", "uri": "/contracts/7RzbEB4UbsT#cryptography", "label": "Vendor Agreement", "score": 33.8877792358, "published": true}], "size": 220, "snippet_links": [{"key": "supplier-will", "type": "clause", "offset": [0, 13]}, {"key": "policies-and-standards", "type": "definition", "offset": [23, 45]}, {"key": "cryptographic-controls", "type": "clause", "offset": [60, 82]}, {"key": "accenture-data", "type": "definition", "offset": [115, 129]}], "hash": "00fd9c700577bfabf819fe57635cb1bd", "id": 1}, {"snippet": "6.1. As defined by \u2587\u2587\u2587\u2587 & \u2587\u2587\u2587\u2587\u2587\u2587\u2019\u2587 Cryptography Policy, cryptographic controls are employed to protect sensitive data both whilst in transit and at rest.\n6.2. Encryption on Mobile Devices is enforced via Microsoft Intune Endpoint Manager policies\n6.3. PII Database encryption is in place via Thales CipherTrust (AES 256-Bit Encryption, data tokenisation and encryption services).\n6.4. Database Encryption is in place using Transparent Data Encryption (TDE) AES-256 Encryption.\n6.5. All traffic from/to our Public facing applications (Websites + Mobile App) utilize HTTPS certificates issued by GlobalSign Certificate Authority and are encrypted with TLS 1.2 or higher.\n6.6. All backups are encrypted.", "samples": [{"hash": "hPgOcwiIh31", "uri": "/contracts/hPgOcwiIh31#cryptography", "label": "Data Protection Schedule", "score": 33.4230384827, "published": true}, {"hash": "9ubSKZaKNZZ", "uri": "/contracts/9ubSKZaKNZZ#cryptography", "label": "Data Protection Schedule", "score": 33.3543930054, "published": true}, {"hash": "47kiQNoJFFy", "uri": "/contracts/47kiQNoJFFy#cryptography", "label": "Data Protection Schedule", "score": 33.1363372803, "published": true}], "size": 5, "snippet_links": [{"key": "cryptographic-controls", "type": "clause", "offset": [56, 78]}, {"key": "sensitive-data", "type": "clause", "offset": [103, 117]}, {"key": "mobile-devices", "type": "definition", "offset": [173, 187]}, {"key": "manager-policies", "type": "clause", "offset": [230, 246]}, {"key": "in-place", "type": "clause", "offset": [279, 287]}, {"key": "data-encryption", "type": "definition", "offset": [435, 450]}, {"key": "mobile-app", "type": "clause", "offset": [545, 555]}, {"key": "issued-by", "type": "definition", "offset": [584, 593]}, {"key": "authority-and", "type": "clause", "offset": [617, 630]}], "hash": "66685d1f8e5bdb49b91b24251af3c33c", "id": 4}, {"snippet": "Empower uses cryptography techniques that assist Empower with preventing the unauthorized capture, modification of or access to data or inf ormation. Empower uses standard encryption algorithms that f ollow up-to-date encryption standards and industry practices. Such cryptography techniques may include but are not limited to: encryption of sensitive data sent across external communication lines; requirement of minimum 128-bit encryption TLS encryption f or web browsers; and encryption of Personal Data while stored on laptops, mobile devices, and in recordkeeping databases.", "samples": [{"hash": "53j66FWp9ym", "uri": "/contracts/53j66FWp9ym#cryptography", "label": "Master Services Agreement", "score": 30.2779541016, "published": true}], "size": 4, "snippet_links": [{"key": "modification-of", "type": "clause", "offset": [99, 114]}, {"key": "access-to-data", "type": "clause", "offset": [118, 132]}, {"key": "encryption-standards", "type": "clause", "offset": [218, 238]}, {"key": "industry-practices", "type": "definition", "offset": [243, 261]}, {"key": "not-limited", "type": "clause", "offset": [312, 323]}, {"key": "sensitive-data", "type": "clause", "offset": [342, 356]}, {"key": "communication-lines", "type": "clause", "offset": [378, 397]}, {"key": "web-browsers", "type": "clause", "offset": [461, 473]}, {"key": "encryption-of-personal-data", "type": "clause", "offset": [479, 506]}, {"key": "mobile-devices", "type": "definition", "offset": [532, 546]}], "hash": "308ed47b99904eebe3d5c7ad8a16df98", "id": 5}, {"snippet": "The application uses PBKDF2-HMAC-SHA512 hashing algorithm for storing the hashes of users\u2019 passwords and authentication tokens. The cloud service does not encrypt any data with public-key or symmetric-key algorithms. SSL versions lower than 3.0 are prevented from accessing the service. At the moment the service supports encryption protocols TLS 1.2, TLS 1.1 and TLS 1.0. SSLv3 and SSLv2 are all supported. TLS 1.0 support will be removed by the end of 2020. From Iris AI\u2019s security documentation: Continuous Protection keeps data safe on SQL Server 2019. Every change to your data is written to write-ahead logs, which are shipped to multi-datacenter, high-durability storage. In the unlikely event of unrecoverable hardware failure, these logs can be automatically \u2018replayed\u2019 to recover the database to within seconds of its last known state. We also provide you with the ability to backup your database to meet your own backup and data retention requirements.", "samples": [{"hash": "bSqDzXxbaPx", "uri": "/contracts/bSqDzXxbaPx#cryptography", "label": "Privacy Policy", "score": 26.6043796539, "published": true}], "size": 4, "snippet_links": [{"key": "the-application", "type": "clause", "offset": [0, 15]}, {"key": "hashing-algorithm", "type": "definition", "offset": [40, 57]}, {"key": "authentication-tokens", "type": "clause", "offset": [105, 126]}, {"key": "the-cloud-service", "type": "clause", "offset": [128, 145]}, {"key": "accessing-the-service", "type": "clause", "offset": [264, 285]}, {"key": "security-documentation", "type": "definition", "offset": [475, 497]}, {"key": "continuous-protection", "type": "clause", "offset": [499, 520]}, {"key": "sql-server", "type": "definition", "offset": [540, 550]}, {"key": "change-to", "type": "clause", "offset": [563, 572]}, {"key": "your-data", "type": "definition", "offset": [573, 582]}, {"key": "event-of", "type": "definition", "offset": [695, 703]}, {"key": "hardware-failure", "type": "clause", "offset": [718, 734]}, {"key": "the-database", "type": "definition", "offset": [790, 802]}, {"key": "last-known", "type": "definition", "offset": [828, 838]}, {"key": "ability-to", "type": "clause", "offset": [875, 885]}, {"key": "data-retention-requirements", "type": "clause", "offset": [935, 962]}], "hash": "fcb14a1e4e1eb666118b2cddf730c292", "id": 6}, {"snippet": "refers to all methods used to transform the information contained in a readable data into a form that cannot be understood by unwanted parties.", "samples": [{"hash": "bcc1bmZpldr", "uri": "/contracts/bcc1bmZpldr#cryptography", "label": "Cloud Computing Agreement", "score": 31.5549926758, "published": true}, {"hash": "gHlQK3mmDYu", "uri": "/contracts/gHlQK3mmDYu#cryptography", "label": "Membership Agreement", "score": 25.2970561981, "published": true}, {"hash": "93lpYvAtcS5", "uri": "/contracts/93lpYvAtcS5#cryptography", "label": "Cloud Computing Agreement", "score": 23.8172492981, "published": true}], "size": 3, "snippet_links": [{"key": "the-information", "type": "clause", "offset": [40, 55]}, {"key": "contained-in", "type": "definition", "offset": [56, 68]}], "hash": "e092294e20a89d352ed21db322c9d289", "id": 7}, {"snippet": "6.1. The Supplier shall:\n6.1.1. ensure that any electronic Confidential Information transfers over public / non-secure network are undertaken securely using appropriate encryption methods;\n6.1.2. have appropriate technical controls to prevent the unauthorised transfer of Customer Data to Portable Media and Devices; and\n6.1.3. ensure that Confidential Information is not stored on Portable Media and Devices unless appropriately encrypted.", "samples": [{"hash": "lr7ySIiTSuL", "uri": "/contracts/lr7ySIiTSuL#cryptography", "label": "Software and Professional Services Agreement", "score": 33.0581893921, "published": true}, {"hash": "iXA2zXxh15y", "uri": "/contracts/iXA2zXxh15y#cryptography", "label": "Software and Professional Services Agreement", "score": 26.270362854, "published": true}, {"hash": "7eQdVOEJSh2", "uri": "/contracts/7eQdVOEJSh2#cryptography", "label": "Software and Professional Services Agreement", "score": 23.1875419617, "published": true}], "size": 3, "snippet_links": [{"key": "the-supplier-shall", "type": "clause", "offset": [5, 23]}, {"key": "information-transfers", "type": "clause", "offset": [72, 93]}, {"key": "secure-network", "type": "definition", "offset": [112, 126]}, {"key": "technical-controls", "type": "clause", "offset": [213, 231]}, {"key": "transfer-of-customer-data", "type": "clause", "offset": [260, 285]}, {"key": "portable-media-and-devices", "type": "clause", "offset": [289, 315]}], "hash": "6101f53b8d1d1cb5a55ce21e4090715c", "id": 8}, {"snippet": "6.1 Leading Resolutions shall ensure that cryptographic keys and digital certificates are managed securely at all times, in accordance with documented control requirements and procedures which are consistent with Good Industry Practice.\n6.2 Leading Resolutions shall ensure that if public key infrastructure (PKI) is used, it shall be protected by \u2018hardening\u2019 the underlying operating system(s) and restricting access to a Certificate Authority.\n6.3 All of the Customer\u2019s Confidential Information stored on any digital or electronic portable storage device must be encrypted with a Federal Information Processing Standards (FIPS) or National Institute for Standards and Technology (NIST) certified cipher and any associated encryption keys are managed by Leading Resolutions.", "samples": [{"hash": "8Ljj1SKrKXW", "uri": "/contracts/8Ljj1SKrKXW#cryptography", "label": "Framework Agreement for the Supply of Consultancy Services", "score": 35.1197242737, "published": true}, {"hash": "cIhCpZebSNe", "uri": "/contracts/cIhCpZebSNe#cryptography", "label": "Framework Agreement for the Supply of Consultancy Services", "score": 33.0382537842, "published": true}], "size": 2, "snippet_links": [{"key": "digital-certificates", "type": "clause", "offset": [65, 85]}, {"key": "at-all-times", "type": "definition", "offset": [107, 119]}, {"key": "in-accordance-with", "type": "clause", "offset": [121, 139]}, {"key": "requirements-and-procedures", "type": "clause", "offset": [159, 186]}, {"key": "consistent-with", "type": "definition", "offset": [197, 212]}, {"key": "good-industry-practice", "type": "clause", "offset": [213, 235]}, {"key": "public-key-infrastructure", "type": "clause", "offset": [282, 307]}, {"key": "be-protected", "type": "clause", "offset": [332, 344]}, {"key": "access-to", "type": "definition", "offset": [411, 420]}, {"key": "certificate-authority", "type": "definition", "offset": [423, 444]}, {"key": "of-the-customer", "type": "clause", "offset": [454, 469]}, {"key": "confidential-information", "type": "clause", "offset": [472, 496]}, {"key": "portable-storage-device", "type": "definition", "offset": [533, 556]}, {"key": "processing-standards", "type": "clause", "offset": [602, 622]}, {"key": "national-institute", "type": "definition", "offset": [633, 651]}, {"key": "standards-and-technology", "type": "clause", "offset": [656, 680]}, {"key": "encryption-keys", "type": "clause", "offset": [724, 739]}], "hash": "a69d488434c44e4afdc5da50b7935710", "id": 9}, {"snippet": "A policy on the use of cryptographic controls for the protection of information is implemented.", "samples": [{"hash": "5Sb329ufSsk", "uri": "/contracts/5Sb329ufSsk#cryptography", "label": "Data Processing Agreement", "score": 34.5509934344, "published": true}, {"hash": "joJrt1PFnLc", "uri": "/contracts/joJrt1PFnLc#cryptography", "label": "Data Processing Agreement", "score": 33.0576248169, "published": true}], "size": 2, "snippet_links": [{"key": "policy-on-the-use-of-cryptographic-controls", "type": "clause", "offset": [2, 45]}, {"key": "protection-of-information", "type": "clause", "offset": [54, 79]}], "hash": "36c652c24baa908dbff8105f5612182d", "id": 10}], "next_curs": "ClUST2oVc35sYXdpbnNpZGVyY29udHJhY3RzcjELEhZDbGF1c2VTbmlwcGV0R3JvdXBfdjU2IhVjcnlwdG9ncmFwaHkjMDAwMDAwMGEMogECZW4YACAA", "clause": {"children": [["cryptographic-controls-policy", "Cryptographic controls policy"], ["key-management", "Key management"], ["proprietary-encryption", "Proprietary Encryption"], ["cryptographic-technologies", "Cryptographic Technologies"], ["encryption", "Encryption"]], "parents": [["information-security", "Information Security"], ["miscellaneous", "Miscellaneous"], ["authority-of-signatories", "Authority of Signatories"], ["general", "General"], ["security-of-processing", "Security of processing"]], "size": 330, "title": "Cryptography", "id": "cryptography", "related": [["bibliography", "Bibliography", "Bibliography"], ["photography", "Photography", "Photography"], ["images", "Images", "Images"], ["devices", "Devices", "Devices"], ["film", "Film", "Film"]], "related_snippets": [], "updated": "2025-07-24T04:27:51+00:00", "also_ask": ["What minimum cryptographic standards should be specified to ensure enforceability?", "How can the clause address evolving cryptographic technologies and obsolescence?", "What are the key risks if cryptographic requirements are vaguely defined?", "How do courts assess compliance with cryptography clauses in data breach cases?", "What negotiation leverage exists around liability for cryptographic failures?"], "drafting_tip": "Specify permitted cryptographic standards to ensure compliance; require regular updates to address evolving threats; mandate disclosure of encryption keys' management to maintain accountability.", "explanation": "The Cryptography clause defines the requirements and standards for the use of cryptographic methods to protect sensitive data within the scope of an agreement. It typically specifies which types of encryption algorithms or protocols must be used, outlines key management practices, and may set minimum security levels for data in transit and at rest. By establishing clear expectations for cryptographic protections, this clause helps ensure data confidentiality and integrity, reducing the risk of unauthorized access or data breaches."}, "json": true, "cursor": ""}}