brand-claim

TCC Gitlab Terms of use

1. Introduction
The tool is operated by T-Systems Road User Services GmbH (TS RS GmbH) and is used both by clients, partners and suppliers (hereafter "partners") for their use and by TS RS GmbH to support the internal workflows. In particular, it is used in the creation, testing, delivery, documentation, and operation of software and services to fulfill customer contracts.

The simple, fast and, as far as possible, unrestricted sharing of current information as well as distributed and collaborative work on information is an essential prerequisite in the design of modern, knowledge-based working environments. The tools provide functionalities that allow separation and allocation of use for pertners or internal purposes.

2. Use of the tool and type of content
TCC GitLab provides a platform for storing, managing and version controlling source code repositories, creating and maintaining CI/CD pipelines for deploying and managing applications, as well as container registry and code review instruments.

All users must take into account to keep all security tools (antivirus/anti-malware software, security scanning tools etc.) up to date.

All users shall observe the general rules of fair, non-discriminatory and friendly conduct when creating, saving ("upload") and linking content (see Netiquette). For employees of companies affiliated with Deutsche Telekom AG, the rules of the Code of Conduct apply.

When saving ("upload") documents and linking to external content, the potential risk to users, e.g., from malware or phishing, must be considered and weighed in.

3. Copyrights and classified content
For all content (incl. documents) coming from foreign/external authors, the copyrights must be clarified and respected. Only content of the protection classes "open" and "internal" may be stored, whereby customer-, supplier- and partner-specific contractual regulations must be respected.

The authors grant the company responsible for a space or project room unlimited rights of use and utilization (copyrights) to the content they have created.

4. Data protection-relevant content and person-related data analysis
For the collection, storage and processing of necessary data of the users of the tools, the Data Privacy Information applies.

Only data with data Protection Class 1 is allowed to be stored in TCC GitLab.

Store passwords or any sensitive data in plaintext without using encrypted vaults or secrets is prohibited.

Personal data of third parties may only be stored in the tools within the framework of (e.g. customer-, supplier- or partner-specific) contractual regulations.

In all cases, the consent of all persons identifiable on images or in videos must be obtained before storage ("upload") in the tools.

Person-related data analysis may only be carried out to support the company's own activities (e.g. display of content with names, searches for responsibilities, contact data, etc.). Person-related analysis to monitor the behavior and performance of users is prohibited. This does not include measures to ensure the proper operation of the tools.

5. Notifications, download and sharing of content
The tools can send messages to users via various channels (e-mail, instant or short messages), which may contain header data as well as parts of content from the tools. In general, users treat these messages with confidentiality and access protection, especially on mobile devices.

Copying or saving ("download") of information outside of the tools is only permitted in cases justified by the service (e.g. offline access, forwarding to authorized third parties, non-person-related analyses). Processing of exported data and messages for the purpose of monitoring the behavior and performance of users is prohibited.

In any case, the applicable legal and official regulations must be respected, especially with regard to data protection, copyrights/licensing and security.

Data and messages stored externally are to be deleted after the justified purpose expires - at the latest, after applicable deletion periods have expired.

6. Suspicion of improper use or unjustified use of data
Suspected compliance violations in the use of the tools can be reported to TSRS_Security_Data_Privacy@t-systems.com for clarification.

7. Revision Date
22.01.2024