Skip to main content

Compliance Documentation

Last Updated:

WCAG 2.2 AA

Conformant

ISO 30071-1

Aligned

Privacy Act

Compliant

OWASP

Aligned

WCAG 2.2 Level AA Conformance

TradeitUp is committed to conforming to the Web Content Accessibility Guidelines (WCAG) 2.2 at Level AA. Our platform has been designed and developed to meet these standards, ensuring that users with disabilities can access and use our services effectively.

Conformance Status

Status: Partially Conformant

TradeitUp partially conforms to WCAG 2.2 Level AA. "Partially conformant" means that some parts of the content do not fully conform to the accessibility standard, and we are actively working to address these areas.

Key Accessibility Features

  • Semantic HTML structure with proper heading hierarchy
  • ARIA landmarks and labels for screen reader navigation
  • Keyboard-accessible navigation and interactive elements
  • Colour contrast ratios meeting WCAG AA requirements (4.5:1 minimum)
  • Focus indicators visible for all interactive elements
  • Alternative text for all meaningful images
  • Responsive design supporting text resizing up to 200%
  • Form labels and error messages properly associated with inputs

Security Compliance

TradeitUp implements comprehensive security measures aligned with industry best practices and Australian regulatory requirements.

Data Encryption

  • At Rest: 256-bit AES encryption for all stored data
  • In Transit: TLS 1.2/1.3 encryption for all data transmission
  • Database: Encrypted database with secure key management

OWASP Alignment

Our development practices are aligned with the OWASP (Open Web Application Security Project) guidelines, including protection against:

  • SQL Injection and NoSQL Injection attacks
  • Cross-Site Scripting (XSS)
  • Cross-Site Request Forgery (CSRF)
  • Broken authentication and session management
  • Sensitive data exposure
  • Security misconfiguration

Privacy Compliance

TradeitUp complies with Australian privacy legislation and international standards:

  • Privacy Act 1988 (Cth): Full compliance with Australian Privacy Principles (APPs)
  • Privacy and Other Legislation Amendment Act 2024: Compliance with updated privacy requirements
  • Notifiable Data Breaches scheme: Procedures in place for mandatory breach notification
  • GDPR: Compliance for users in the European Economic Area

For full details, please see our Privacy Policy.

VET Sector Compliance

As an apprenticeship management platform, TradeitUp supports compliance with Australian vocational education and training requirements:

  • National VET Data Policy: Support for AVETMISS reporting requirements
  • USI Requirements: Secure handling of Unique Student Identifiers
  • VET Quality Framework: Support for RTO compliance obligations
  • State Training Authority Requirements: Alignment with state and territory regulations

Audits and Assessments

TradeitUp undergoes regular assessments to ensure ongoing compliance:

  • Quarterly accessibility audits using automated tools and manual testing
  • Annual security penetration testing by independent assessors
  • Continuous security monitoring and vulnerability scanning
  • Regular review of privacy practices and data handling procedures

Known Limitations

We are aware of the following accessibility limitations and are working to address them:

  • Some PDF documents generated by the platform may not be fully accessible
  • Certain third-party integrations may have accessibility limitations outside our control
  • Some complex data visualisations are being enhanced for better screen reader support

We are committed to resolving these issues and welcome feedback on any barriers you encounter.

Contact Us

For questions about our compliance status or to report accessibility issues:

Accessibility Team: origae.dev@gmail.com

Privacy Officer: origae.dev@gmail.com

Security Team: origae.dev@gmail.com