Compliance Documentation
Last Updated:
WCAG 2.2 AA
Conformant
ISO 30071-1
Aligned
Privacy Act
Compliant
OWASP
Aligned
WCAG 2.2 Level AA Conformance
TradeitUp is committed to conforming to the Web Content Accessibility Guidelines (WCAG) 2.2 at Level AA. Our platform has been designed and developed to meet these standards, ensuring that users with disabilities can access and use our services effectively.
Conformance Status
Status: Partially Conformant
TradeitUp partially conforms to WCAG 2.2 Level AA. "Partially conformant" means that some parts of the content do not fully conform to the accessibility standard, and we are actively working to address these areas.
Key Accessibility Features
- Semantic HTML structure with proper heading hierarchy
- ARIA landmarks and labels for screen reader navigation
- Keyboard-accessible navigation and interactive elements
- Colour contrast ratios meeting WCAG AA requirements (4.5:1 minimum)
- Focus indicators visible for all interactive elements
- Alternative text for all meaningful images
- Responsive design supporting text resizing up to 200%
- Form labels and error messages properly associated with inputs
Security Compliance
TradeitUp implements comprehensive security measures aligned with industry best practices and Australian regulatory requirements.
Data Encryption
- At Rest: 256-bit AES encryption for all stored data
- In Transit: TLS 1.2/1.3 encryption for all data transmission
- Database: Encrypted database with secure key management
OWASP Alignment
Our development practices are aligned with the OWASP (Open Web Application Security Project) guidelines, including protection against:
- SQL Injection and NoSQL Injection attacks
- Cross-Site Scripting (XSS)
- Cross-Site Request Forgery (CSRF)
- Broken authentication and session management
- Sensitive data exposure
- Security misconfiguration
Privacy Compliance
TradeitUp complies with Australian privacy legislation and international standards:
- Privacy Act 1988 (Cth): Full compliance with Australian Privacy Principles (APPs)
- Privacy and Other Legislation Amendment Act 2024: Compliance with updated privacy requirements
- Notifiable Data Breaches scheme: Procedures in place for mandatory breach notification
- GDPR: Compliance for users in the European Economic Area
For full details, please see our Privacy Policy.
VET Sector Compliance
As an apprenticeship management platform, TradeitUp supports compliance with Australian vocational education and training requirements:
- National VET Data Policy: Support for AVETMISS reporting requirements
- USI Requirements: Secure handling of Unique Student Identifiers
- VET Quality Framework: Support for RTO compliance obligations
- State Training Authority Requirements: Alignment with state and territory regulations
Audits and Assessments
TradeitUp undergoes regular assessments to ensure ongoing compliance:
- Quarterly accessibility audits using automated tools and manual testing
- Annual security penetration testing by independent assessors
- Continuous security monitoring and vulnerability scanning
- Regular review of privacy practices and data handling procedures
Known Limitations
We are aware of the following accessibility limitations and are working to address them:
- Some PDF documents generated by the platform may not be fully accessible
- Certain third-party integrations may have accessibility limitations outside our control
- Some complex data visualisations are being enhanced for better screen reader support
We are committed to resolving these issues and welcome feedback on any barriers you encounter.
Contact Us
For questions about our compliance status or to report accessibility issues:
Accessibility Team: origae.dev@gmail.com
Privacy Officer: origae.dev@gmail.com
Security Team: origae.dev@gmail.com