Compliance Policy

Appcharge is committed to keeping up with the latest compliance regulations and providing our publishers and player data with the best security and privacy. We continuously monitor and improve our compliance program as part of this approach. We highly prioritize security, compliance, and data protection in every product and technology-building step. We decided that by the end of July 2024, we will be audited and certificated with PCI level 1, GDPR, SOC 2 - Type 2, and COPPA. We partnered with Hub Security and EY as advisors and auditors.

PCI - level 1
From the start, it was very important for us in Appcharge to comply with the Payment Card Industry Data Security Standard (PCI DSS). Our systems are regularly audited to ensure compliance with PCI standards. Penetration testing is conducted to identify and address vulnerabilities.
Comsec and Hub Security certified us in January 2024 to comply with all the PCI level 1 requirements.

GDPR
General Data Protection Regulation (GDPR). GDPR compliance ensures the protection of the personal data of EU citizens. Appcharge is committed to saving and protecting all users' private information. We've implemented measures such as data encryption and consent management. Regular audits ensure continuous alignment with GDPR requirements.
Hub Security certified us in Feb 2024 that we comply with all the GDPR requirements.

SOC 2 - Type 2
Appcharge adheres to SOC 2 principles of security, availability, processing integrity, confidentiality, and privacy. Regular audits ensure ongoing compliance with SOC 2 requirements. We engage third-party auditors Hub Security and EY to perform rigorous validations to ensure compliance.
We started the official audit process at the beginning of March 2024 and will finish it by the beginning of June 2024.

COPPA
Appcharge adheres to the Children’s Online Privacy Protection Act (COPPA) and the management of users whose ages meet or exceed the legal age of majority. The obligations and responsibilities detailed herein are divided into two primary domains of operation: Publisher Responsibilities for White-Label Webstore Services and Appcharge Responsibilities as Merchant of Record for Checkout Transactions.