Technology Development Approach
At ZDHC, we are paving the way for sustainable chemical management within the fashion industry. In our pursuit of programme excellence, we extend our commitment to the technology and platform development solutions we provide.
Our approach to technology and platform development includes:
- Continuous Learning and Improvement: ZDHC recognises that technology continues to evolve. We review relevant developments and consider opportunities to improve our technology and platform solutions where appropriate.
- Architecture and Reliability: Our technology solutions are designed with considerations such as scalability, security, reliability, and maintainability in mind.
- User-Centric Design: User needs and feedback are considered as part of the platform development process and help inform the ongoing development of platform functionality and usability.
- Quality Assurance and Testing: Quality assurance and testing form part of our development and release processes. Appropriate testing activities are applied depending on the nature and scope of the development.
- Security Considerations: Security is considered throughout the development and operation of our technology solutions. Appropriate measures are applied to support the security and operation of the platform.
- Collaboration and Communication: Collaboration across relevant teams and engagement with stakeholders form part of our development approach and help inform the continued evolution of our technology solutions.
ZDHC Gateway Platform Data Security and Protection
Overview
Security and data protection are considered throughout the development, operation, and ongoing maintenance of the ZDHC Gateway. Appropriate measures are applied to support the security and reliable operation of the platform. Security practices are reviewed and updated as appropriate as part of the ongoing development and operation of the ZDHC Gateway. For security reasons, ZDHC does not publicly disclose detailed information regarding its infrastructure architecture, security configuration, operational security controls, or specific security testing methodologies.
Data Hosting and Location
The primary hosting environment for the ZDHC Gateway is located in Germany. Detailed information regarding the underlying infrastructure and hosting architecture is not publicly disclosed for security reasons.
Access Management
Access to information is governed by assigned roles, permissions, and applicable organisational relationships.
Business Continuity and Disaster Recovery
Business continuity and disaster recovery processes are in place to support the resilience and availability of the ZDHC Gateway. These processes form part of the platform's operational practices and are reviewed and updated as appropriate.
Backups and Data Recovery
Technical backup and recovery procedures are maintained to support the ZDHC Gateway’s operations and recovery. These platform-level procedures are not intended to serve as an individual backup, archival, or records retention service for users or organisations. Users and organisations remain responsible for maintaining any additional copies or records required for their own business, compliance, or retention purposes. For security reasons, ZDHC does not publicly disclose detailed information regarding backup schedules, retention periods, recovery procedures, or related infrastructure.
Quality Assurance and Testing
Quality assurance and testing form part of the platform development and release processes. These activities are intended to support the reliability and stability of the ZDHC Gateway.
Security Validation
Security validation forms part of the ZDHC Gateway's software development, release, and operational processes. Appropriate security validation activities form part of the overall quality and security assurance process. For security reasons, ZDHC does not publicly disclose details regarding the nature, scope, timing, methodologies, tools, or providers involved in individual security validation activities.
Security Incident Management
ZDHC maintains processes for managing security incidents. Where notification to affected parties is required, this is handled in accordance with applicable legal and contractual requirements. The timing and scope of any notification depend on the nature and circumstances of the incident.
Security Documentation
Detailed security architecture and operational security documentation is not made publicly available. ZDHC continuously reviews the information and guidance made available to users and stakeholders and may provide additional security-related documentation as the platform and its security practices continue to evolve.
Continuous Improvement
The ZDHC Gateway continues to evolve in response to technology, user requirements, and operational needs. This ongoing approach supports the continued development of the platform and its security, reliability, and usability over time.
Further Questions
For additional questions regarding the security or data protection of the ZDHC Gateway, please contact the ZDHC Customer Support Team via support@zdhc.org.