info@marcbrainltd.com +233 2487 70024

Apps

Marcbrain Marcbrain

Celebrate the joy of the season with us!

Compliance Framework

Effective Date: 24th August, 2019

Last Updated: 31st December, 2025

At Marcbrain, compliance is not just about meeting legal requirements—it's about building trust with our customers, partners, and stakeholders. We are committed to maintaining the highest standards of regulatory compliance, ethical business practices, and corporate governance across all aspects of our operations. This Compliance Framework outlines our approach to meeting and exceeding regulatory obligations while delivering innovative software solutions.

Our Compliance Philosophy

We believe that strong compliance practices are fundamental to sustainable business success. Our compliance program is designed to protect our customers, employees, and business interests while fostering a culture of integrity, transparency, and accountability. We proactively identify compliance requirements, implement appropriate controls, and continuously monitor our adherence to applicable laws and regulations.

Compliance at Marcbrain is everyone's responsibility. From our executive leadership to individual contributors, every member of our team is expected to understand and follow compliance requirements relevant to their role. We provide comprehensive training, clear policies, and accessible resources to ensure all employees can fulfill their compliance obligations.

Data Protection and Privacy Compliance

We recognize that data protection is one of the most critical compliance areas for a software company. Marcbrain is committed to complying with applicable data protection laws and regulations worldwide, including but not limited to the General Data Protection Regulation, California Consumer Privacy Act, and other regional privacy laws.

Our data protection program includes comprehensive data mapping to understand what personal information we collect, how we use it, where it is stored, and who has access to it. We maintain detailed records of processing activities and conduct regular privacy impact assessments for new products, services, and processing activities.

We implement privacy by design principles, incorporating data protection considerations into the development of new products and services from the earliest stages. Our systems are designed to collect only the personal information necessary for specified purposes, and we provide individuals with transparent information about our data practices and meaningful control over their personal information.

Individuals have the right to access their personal information, request corrections to inaccurate data, request deletion of their information where applicable, object to certain processing activities, and receive their data in a portable format. We have established processes to respond to these requests promptly and in accordance with applicable legal requirements.

Information Security Compliance

Marcbrain maintains compliance with recognized information security standards and frameworks. We implement technical and organizational measures designed to ensure a level of security appropriate to the risk, including measures to protect against unauthorized or unlawful processing and against accidental loss, destruction, or damage.

Our information security program is aligned with industry best practices and includes regular security assessments, penetration testing, and vulnerability management. We maintain incident response procedures and breach notification processes to comply with regulatory requirements and ensure timely communication with affected parties in the event of a security incident.

Software Development Compliance

Our software development practices incorporate compliance considerations throughout the development lifecycle. We conduct security and privacy reviews of new features and products, implement secure coding standards, and maintain documentation of our development processes.

We ensure that our software products comply with applicable accessibility standards to make our solutions available to users with disabilities. Our development teams receive training on accessibility requirements and incorporate accessibility testing into our quality assurance processes.

For products that handle sensitive data or operate in regulated industries, we implement additional compliance controls specific to those requirements. This includes maintaining audit trails, implementing data retention and deletion capabilities, and providing compliance reporting features for our customers.

Intellectual Property Compliance

We respect intellectual property rights and expect our employees, contractors, and partners to do the same. Marcbrain has policies and procedures to ensure that we do not infringe on the intellectual property rights of others and that we properly protect our own intellectual property assets.

Our development processes include reviews to identify and properly license any third-party software components or open-source code incorporated into our products. We maintain an inventory of software dependencies and monitor for license compliance issues.

We protect our proprietary information through confidentiality agreements, access controls, and clear policies regarding the handling of confidential information. Employees receive training on intellectual property protection and their obligations to safeguard company and customer confidential information.

Export Control and Trade Compliance

As a software company operating globally, Marcbrain complies with applicable export control laws and regulations. We have implemented export compliance procedures to ensure our products and services are not provided to restricted parties or used for prohibited purposes.

We screen customers and partners against government-maintained restricted party lists and implement controls to prevent unauthorized export of controlled technology. Our compliance team monitors changes in export regulations and updates our procedures accordingly.

Financial Compliance

Marcbrain maintains accurate financial records and complies with applicable accounting standards and financial reporting requirements. We have implemented internal controls over financial reporting to ensure the accuracy and reliability of our financial statements.

Our financial compliance program includes policies on revenue recognition, expense management, and financial disclosure. We conduct regular internal audits and work with external auditors to verify compliance with financial regulations and accounting standards.

We maintain anti-money laundering and know-your-customer procedures appropriate for our business. These procedures help us identify and report suspicious activities and comply with financial crime prevention regulations.

Anti-Corruption and Business Ethics

Marcbrain has zero tolerance for corruption, bribery, and unethical business practices. We comply with anti-corruption laws including the Foreign Corrupt Practices Act and similar laws in the jurisdictions where we operate.

Our Code of Business Conduct and Ethics provides guidance on acceptable business practices and prohibits offering or accepting bribes, kickbacks, or improper payments. We require all employees, contractors, and business partners to act with integrity and in compliance with applicable anti-corruption laws.

We maintain a gift and entertainment policy that sets clear limits on what employees can give or receive in business contexts. Any gifts or hospitality must be reasonable, transparent, and properly documented.

Employment and Labor Compliance

Marcbrain is committed to fair employment practices and compliance with labor laws in all jurisdictions where we operate. We prohibit discrimination, harassment, and retaliation in all forms and maintain a work environment that is safe, respectful, and inclusive.

Our employment practices comply with applicable laws regarding wages, hours, benefits, workplace safety, and employee rights. We conduct regular reviews of our employment practices to ensure ongoing compliance with changing labor laws and regulations.

We respect employees' rights to freedom of association and collective bargaining where applicable. We provide multiple channels for employees to raise concerns about potential violations of law or company policy, including a confidential ethics hotline.

Environmental and Social Responsibility

While primarily a software company, Marcbrain recognizes our responsibility to operate sustainably and minimize our environmental impact. We comply with applicable environmental laws and regulations and implement practices to reduce our carbon footprint, including energy-efficient data center operations and sustainable office practices.

We are committed to corporate social responsibility and ethical business practices throughout our supply chain. We expect our suppliers and partners to maintain similar standards of environmental and social responsibility and compliance with applicable laws.

Vendor and Third-Party Compliance

We recognize that our compliance obligations extend to the third parties we work with. Marcbrain has implemented a vendor management program that includes compliance due diligence before engaging with new vendors and ongoing monitoring of vendor compliance performance.

Our vendor agreements include compliance requirements and the right to audit vendor compliance with applicable laws and contractual obligations. We require vendors to notify us of any compliance issues that may affect their ability to meet their obligations to us or that may pose risks to our business.

Compliance Training and Awareness

All Marcbrain employees receive compliance training appropriate to their roles and responsibilities. New employees complete compliance training during onboarding, and all employees receive annual refresher training on key compliance topics.

We provide specialized compliance training for employees in roles with elevated compliance risks, such as those handling customer data, engaging with government officials, or managing financial transactions. Training is updated regularly to reflect changes in laws, regulations, and company policies.

We maintain a compliance awareness program that includes regular communications, resources, and tools to help employees understand and meet their compliance obligations. Employees can access compliance policies, procedures, and guidance through our internal knowledge management systems.

Compliance Monitoring and Auditing

We conduct regular compliance monitoring and auditing activities to verify adherence to applicable laws, regulations, and internal policies. Our compliance team performs risk assessments to identify areas of compliance risk and prioritize monitoring and audit activities accordingly.

Internal audits are conducted by personnel independent of the functions being audited. Audit findings are reported to management and appropriate remediation actions are implemented promptly. We track remediation efforts to ensure issues are fully resolved.

We also engage external auditors and assessors to provide independent verification of our compliance with specific standards and regulations. External audit results are reviewed by executive leadership and the board of directors where appropriate.

Incident Reporting and Investigation

Marcbrain maintains multiple channels for reporting potential compliance violations, including a confidential ethics hotline available to employees, contractors, and external parties. Reports can be made anonymously where legally permitted, and we prohibit retaliation against individuals who report concerns in good faith.

All reported compliance concerns are investigated promptly and thoroughly. Our investigation procedures ensure fairness, confidentiality to the extent possible, and appropriate corrective action when violations are confirmed. Serious violations may result in disciplinary action up to and including termination of employment.

We maintain records of compliance incidents, investigations, and corrective actions. These records are used to identify trends, improve our compliance program, and demonstrate our commitment to compliance to regulators and other stakeholders.

Regulatory Engagement

Marcbrain maintains constructive relationships with relevant regulatory authorities and participates in industry forums on compliance topics. We respond promptly and cooperatively to regulatory inquiries and provide requested information in accordance with applicable laws.

We monitor regulatory developments that may affect our business and assess the impact of new or changed regulations on our operations. When new compliance requirements are identified, we develop and implement appropriate compliance measures in a timely manner.

Continuous Improvement

Compliance is an ongoing commitment that requires continuous attention and improvement. We regularly review and update our compliance program to address emerging risks, incorporate lessons learned from compliance incidents, and align with evolving best practices.

We solicit feedback from employees, customers, and other stakeholders on our compliance program and use this feedback to make improvements. Our compliance team stays informed about industry trends, regulatory changes, and emerging compliance risks through participation in professional organizations and ongoing education.

Compliance Governance

Ultimate responsibility for compliance at Marcbrain rests with our Board of Directors and executive leadership. We have established a compliance function with appropriate authority, resources, and access to leadership to fulfill its responsibilities effectively.

Our executive leadership receives regular reports on compliance program performance, significant compliance risks, and compliance incidents. The board of directors provides oversight of our compliance program and is informed of significant compliance matters.

Questions and Contact Information

If you have questions about our compliance program, need compliance guidance, or wish to report a potential compliance concern, please contact us:

Compliance Team Email: N/A

General Inquiries: info@marcbrainltd.com

We are committed to addressing all compliance questions and concerns promptly and appropriately. Your input helps us maintain the highest standards of compliance and continue to earn the trust of our customers, partners, and stakeholders.