US Legal Forms and the CCPA

We handle your personal information in compliance with The California Consumer Privacy Act, giving you control over your data and enhancing privacy protection.
CCPA picture

What is the CCPA?

The California Consumer Privacy Act (CCPA) is a law implemented by the state of California to provide California residents with greater control over their personal information. The CCPA sets guidelines for companies on how to collect, process, store, delete, and share consumer personal information with third parties.

The CCPA applies to any for-profit business that buys, sells, collects, or shares the personal information of California residents and meets at least one of the specified thresholds. As of January 2024, these thresholds are as follows:

$25M
The business generates $25 million or more in annual revenue
100K
The business collects, purchases, sells, or shares the personal information of more than 100,000 consumers.
50%
The business earns at least 50% of its annual revenue from selling or sharing personal information.

The primary obligations imposed by the CCPA

Businesses must enable and comply with a consumer’s request to opt out of selling personal information to third parties, with certain exceptions.
Businesses must allow customers to exercise their rights related to personal information, including the rights to access, correct, and delete their personal information.
Companies must disclose their privacy practices to customers in a clear and plain manner.
A California resident may use an authorized agent to submit a right-to-know request or a request to delete personal data. A resident must provide the agent with written authorization.

How US Legal Forms complies with the CCPA

To comply with the CCPA, a company needs to implement specific legal, organizational, and technical measures.
Technical measures
Legal measures
Organizational measures

US Legal Forms applies industry-standard technical measures to ensure the safety of personal information and prevent potential data breaches. These include, without limitation:

  • Data encryption in transit and at rest
  • Protection against phishing and malicious software
  • VPN usage
  • Access limitations to data systems and user authentication
  • Safe password policy
  • Device and software security measures based on NIST SP 800-88 recommendations
  • Vulnerability and security scanning of US Legal Forms systems.
  • Security of company premises.

Questions & Answers

Can’t find an answer to your question? Don’t hesitate to reach out to us.

Contact support

If you wish to close your account, please log into your account and proceed with account deletion through the account settings. For any assistance required regarding closing your account, our support team is ready to help via the contact options provided on our website. Before account closure, ensure to export all necessary documents as we cannot access or export documents from your account due to our strict privacy and security practices.