OverviewOverview\Cybersecurity

Cybersecurity

The following information is provided to help an organization that needs to report on cybersecurity compliance.

1.      AI use in the product: None.

2.      Presence in China: None.

3.      Details of any API used: The add-in uses the Windows API for several purposes as shown in the table below.

Function

Library

Purpose

RtlMoveMemory

kernel32.dll

access the Windows clipboard

GlobalUnlock

kernel32.dll

access the Windows clipboard

GlobalLock

kernel32.dll

access the Windows clipboard

GlobalAlloc

kernel32.dll

access the Windows clipboard

lstrcpy

kernel32.dll

access the Windows clipboard

CloseClipboard

user32.dll

access the Windows clipboard

OpenClipboard

user32.dll

access the Windows clipboard

EmptyClipboard

user32.dll

access the Windows clipboard

SetClipboardData

user32.dll

access the Windows clipboard

URLDownloadToFile

urlmon.dll

download a file from the internet to the computer

ShellExecute

shell32.dll

runs an external program (e.g. launch the web browser, launch Notepad to view a text file, launch Windows Explorer, launch the EAC setup program)

GetUserName

advapi32.dll

retrieves the name of the user who is logged on to Windows

GetVolumeInformation

kernel32.dll

retrieves the serial number of the hard drive

InternetGetConnectedState

wininet.dll

retrieves the connected state of an internet connection

 

4.      Type of encryption employed in data transfer: None.

5.     Type of data involved in use:

a.      Personally identifiable information (PII) – no sensitive PII is used by EAC tools. For more information about non-sensitive PII please see the Privacy Policy.

b.     Individually identifiable health information (PHI) – None.