Legal Compliance & Requirements
Last Updated: December 14, 2025
Review Status: Updated for December 2025 USA Lite Expansion
β Currently Implemented
Our comprehensive legal framework includes:
Core Legal Documents
| Document | Version | Last Updated | Status |
|---|---|---|---|
| Terms of Service | v4.2 | Dec 14, 2025 | β Complete |
| Privacy Policy | v3.2 | Dec 14, 2025 | β Complete |
| Data Ownership Statement | v2.1 | Dec 14, 2025 | β Complete |
| All Disclaimers | v3.1 | Dec 14, 2025 | β Complete |
| Community Guidelines | v2.0 | Nov 23, 2025 | β Complete |
User Consent & Transparency
- 9-Step Acceptance Flow β Mandatory on first app open
- DisclaimerBanner Component β On all major screens including Master Tracker Hub, Appeal Command Center
- Version Tracking β Users must re-accept when terms update
π December 2025 USA Lite Expansion
USA Lite legal coverage added for 13 US jurisdictions:
| Category | Coverage |
|---|---|
| Federal | Federal disability rights, ADA, FMLA |
| States | CA, NY, TX, FL, IL, MI, WA, OH, PA, TN, GA, MS |
| Topics | Workersβ compensation, civil rights frameworks, disability programs |
Same Disclaimer Framework Applies:
- All US legal information is educational only, not legal advice
- Laws vary significantly by state
- Terms & disclaimers updated to explicitly cover US-specific legal information
π Privacy & Data Protection Compliance
GDPR (European Union) β
| Requirement | Status | Implementation |
|---|---|---|
| Data minimization | β | Local-first architecture |
| User control | β | Full export, deletion rights |
| Explicit consent | β | Opt-in for all data collection |
| Right to access | β | Data export in JSON format |
| Right to erasure | β | Complete data deletion |
| Data portability | β | Export to any format |
| Legal basis documentation | β | Contract, consent, legitimate interest |
CCPA/CPRA (California) β
| Requirement | Status | Implementation |
|---|---|---|
| Data not sold | β | We never sell user data |
| User rights disclosure | β | Clear rights in Privacy Policy |
| βDo Not Sellβ link | β | Not needed (we donβt sell) |
| Right to know | β | Transparent data practices |
| Right to delete | β | Full account deletion |
PIPEDA (Canada) β
| Requirement | Status | Implementation |
|---|---|---|
| Consent | β | Explicit opt-in |
| Privacy-by-design | β | Local-first architecture |
| User ownership | β | 100% user data ownership |
| Transparency | β | Open development process |
πΆ Childrenβs Privacy (COPPA)
Age Requirement: Users must be 18+ or have guardian consent.
| Protection | Status |
|---|---|
| Age verification on signup | β Implemented |
| No data collection from under 13 | β Policy in place |
| Clear age statement in Terms | β Section 3 |
| Parental consent disclosure | β In Privacy Policy |
π Security Measures
Technical Safeguards β
| Measure | Implementation |
|---|---|
| Encryption | AES-256-GCM (military-grade) |
| Key Storage | Hardware-backed secure enclave |
| Network Security | TLS 1.3 with certificate pinning |
| Input Validation | XSS and SQL injection prevention |
| Tamper Detection | Real-time integrity monitoring |
| Authentication | Optional biometric authentication |
Operational Safeguards β
| Measure | Status |
|---|---|
| Access controls | β Implemented |
| Security monitoring | β Automated threat detection |
| Regular testing | β OWASP Mobile Top 10 compliant |
| Incident response | β Procedures in place |
βΏ Accessibility Compliance
WCAG 2.1 Level AAA β
| Category | Status |
|---|---|
| Screen reader optimization | β Full support |
| Keyboard navigation | β Complete |
| Color contrast | β AAA compliant |
| Text resize | β Up to 200% |
| Focus indicators | β Clear visible focus |
| Alternative text | β All images |
Accessibility Features
- High contrast mode
- Dyslexia-friendly fonts (OpenDyslexic)
- Motor disability accommodations
- Voice navigation
- Cognitive accessibility simplification
- Indigenous language support
- Complexity Mode (Simple/Standard/Power User)
- Bad Day Mode for reduced cognitive load
See full Accessibility Statement β
π Third-Party Service Disclosures
| Service | Purpose | Data Shared | Privacy Policy |
|---|---|---|---|
| Firebase/Google Cloud | Authentication, optional cloud | Email, user ID (if signed in) | Google Privacy |
| YouTube API | Video content | Public video metadata only | YouTube Terms |
| Expo Push Notifications | Push notifications (opt-in) | Device token only | Expo Privacy |
| Sentry | Error tracking (opt-in) | Crash logs, device info | Sentry Privacy |
Note: In BYOC Strict Mode, Firebase is completely disabled. You can use any cloud provider you choose.
π Intellectual Property
Our Content
- App content Β© 2025 3mpwrApp. All rights reserved.
- 3mpwr Appβ’ and logos are our trademarks
Your Content
- User-generated content remains 100% yours
- You grant us license only to display/store within the app
- Export your content anytime in standard formats
Open Source
- We use open-source components with proper attribution
- Full license information available in the app
π§ Contact for Legal Matters
Email: empowrapp08162025@gmail.com
Subject: Include βLegalβ for legal inquiries
Response Time: 24-48 hours
Location: Toronto, ON, Canada
Specific Inquiries
| Topic | Subject Line |
|---|---|
| Privacy questions | βPrivacyβ |
| Data requests | βData Requestβ |
| Accessibility issues | βAccessibilityβ |
| Legal concerns | βLegalβ |
| Security concerns | βSecurityβ |
π Related Documents
- Terms of Service β Complete terms and conditions
- Privacy Policy β How we handle your data
- Data Ownership Statement β Your 100% data sovereignty
- All Disclaimers β Medical, legal, financial, AI disclaimers
- Community Guidelines β Community standards
- Accessibility β Our accessibility features and compliance
- Privacy Controls β Manage your privacy settings
Review Schedule: Quarterly or upon legal changes
Last Review: December 14, 2025
Next Review: March 2026
Β© 2025 3mpwrApp. All rights reserved.
π¬ Was this page helpful?