Skip to main content
    Banner das políticas da empresa
    Nossas
    Políticas
    Privacy Policy

    Privacy Policy


    1. OBJECTIVE

    This policy aims to document and disclose the general privacy requirements defined by NEKI as fundamental, in alignment with legal requirements, especially LGPD.

    2. APPLICATIONS

    This policy applies to individuals (natural persons) who interact with NEKI's operations, such as customers, employees, representatives of our partners and other personal data subjects. This policy explains how your personal data is collected, used and disclosed by NEKI (referred to in this policy as "NEKI", "We", "Us"). It also informs how you can access and update your personal data and make certain decisions about how your personal data is used.

    This policy covers our data processing activities both online and offline, covering personal data that we collect through our channels.

    Please note that we may aggregate personal data combined from different sources (for example, our website and offline events). As part of this, we combine personal data that was originally collected by different NEKI entities or partners. You can consult the "About your rights regarding Personal Data" section for more information on how to object to this.

    In some specific cases, if you decide not to provide your personal data indicated as necessary (we will indicate when this is the case, for example, by explicitly placing this information in our forms), we may not be able to provide you with our products and/or services.

    3. RESPONSIBILITIES

    It is NEKI's responsibility to keep this policy updated and disclosed to all stakeholders at all times. The DPO is responsible for meeting the demands of data subjects, ANPD or other stakeholders. It is the responsibility of the personal data subject to know and understand the policy, as well as to report through the DPO contact channel any discrepancy or doubt found.

    4. GUIDELINES

    4. 1 SOURCES OF PERSONAL DATA

    We collect your Personal Data through the following sources:

    · Offline records: Records completed offline, distributed during visits and other interactions with NEKI.

    · Employee and contract records: Data sent by you when executing the admission, hiring or interaction process with the company's areas.

    · Data received from third parties: Including, but not limited to, social networks and third-party sites such as Facebook, Instagram, LinkedIn, and similar, data aggregator services, NEKI partners, public sources and data received during acquisition of other companies.

    · NEKI and group company sites and systems: All our sites can be used to collect personal data. This includes both sites that we operate directly, through our domains and IP addresses, and sites or pages that we establish on third-party services, such as Facebook, LinkedIn, and other third parties that offer this type of service.

    · Electronic mail and instant messaging systems: Services used to maintain electronic communications between you and NEKI, including those provided directly by us, or third-party services such as WhatsApp, Telegram, SMS (short message service) and similar.

    4. 2 PERSONAL DATA WE COLLECT AND HOW IT IS COLLECTED

    · Contact Information: Includes any type of information that may facilitate our contact with you, including your physical mailing address, phone numbers, email addresses, websites and social media profiles.

    · Registration Information: Data necessary for registration in official systems, to meet legal requirements.

    · Login information: Includes information to identify and authenticate in services provided by NEKI, including your registration name (login), password in irrecoverable format (encrypted), and security questions.

    · Demographic information: Any information that can describe your demographic data, habits or your behavioral characteristics, including items such as your birthday, date of birth, age or age group.

    · Technical information about your computer equipment or mobile devices: Details about your computer or other portable device that was used to access one of our sites, services or applications, including the record of the IP address used to connect your computer or device to the internet, including your geographic location, the type and version of operating system and the type and version of web browser. If you access a NEKI website or application using a mobile device, such as a smartphone or tablet, the information collected will also include, whenever permitted, your phone's unique device ID, geographic location and other similar mobile device data.

    · Information about how you use our sites and services: During your interaction with our sites and services, we use automated data collection technologies to capture information about the actions you have taken. This may include details such as which links you click, which pages or content you view and for how long, and other similar information and statistics about your interactions, such as response times to content, download errors and duration of visits to certain pages. This information is captured through automated technologies, such as Cookies (browser cookies, Flash cookies and similar) and web beacons, and via third-party tracking. You have complete freedom to oppose the use of such technologies, for this consult the details in the "About your rights regarding Personal Data" section.

    · Third-party social media information: This refers to any data that you share publicly on a third-party social network or information that is part of your profile on a third-party social network (such as Facebook, Instagram, LinkedIn and similar) and that you allow the third-party social network to share with us. This data may include details such as your basic account information (name, email address, gender, date of birth, current city, profile photo, user ID, friends list and similar information.) and any other additional information or activities that you allow the third-party social network to share with us. We receive your third-party social network profile information (or parts thereof) whenever you download an item or interact with a NEKI web application or service on a third-party social network, whenever you use a social network feature that is integrated into a NEKI site or whenever you interact with us through a third-party social network. To learn more about how your information from a third-party social network is obtained by NEKI or to opt out of sharing this social network information, visit the specific third-party social network site.

    · Financial and payment information: Any data that NEKI needs to fulfill an order, or that you use to make a purchase, such as financial and credit evaluation data. NEKI or our payment processing service providers handle your financial and payment information in compliance with applicable laws, regulations and security standards.

    · Sensitive Personal Data: NEKI does not normally deal with personal data considered sensitive, as defined by current legislation. Therefore, we do not intend to collect or process such data in the regular course of your interactions with our products or services.

    If it becomes necessary to process your sensitive personal data, for any reason, we will ensure that we obtain your prior, express and formal consent, when processing is voluntary (for example, for marketing purposes). For other purposes, we rely on the following legal bases for processing sensitive personal data:

    1. Detection and prevention of crimes;

    2. Compliance with obligations provided for in applicable laws.

    4. 3 PERSONAL DATA OF CHILDREN AND ADOLESCENTS

    NEKI does not knowingly request, collect, process, store or share personal data of children and adolescents under age. If we discover the occurrence of any type of handling of such data unintentionally, we will remove the personal data of that child or adolescent from our records quickly.

    However, NEKI may collect personal data of children and adolescents directly from their parents or legal guardians, with explicit consent, and in accordance with the rules of current legislation.

    4. 4 USE OF PERSONAL DATA

    The following items describe the purposes for which NEKI collects your Personal Data, and the different types of Personal Data we collect for each purpose. Please note that not all uses below will be relevant to all individuals and may apply only to specific situations.

    o Customer services: Your Personal Data is used for the purpose of providing services to you, including responding to your questions, inquiries and suggestions. Usually, this requires certain personal contact information to ensure process traceability.

    § Reason for using your personal data in this situation:

    · Comply with contractual obligations;

    · Comply with legal obligations;

    · Our legitimate interests;

    § Our legitimate interests in this situation:

    · Continuously improve NEKI products and services;

    · Continuously improve the effectiveness of our communication process;

    · Evidence processes for audits;

    § Social networks and third-party sites:

    We use your Personal Data when you interact with social network and third-party site features, such as "like", to provide advertising and interact with you on third-party social networks. How these interactions work, the profile data that NEKI obtains about you, and how to cancel them ("opt-out") can be understood by reviewing the privacy policies directly on the respective social networks and third-party sites.

    § Reason for using your personal data in this situation:

    · Our legitimate interests;

    · We obtained your consent (when necessary);

    § Our legitimate interests in this situation:

    · Strengthening our brand;

    § Internal Human Resources: To carry out selection, admission, benefit provision processes and other items related to the company's personnel department routines.

    § Reason for using your personal data in this situation:

    · Legal obligations;

    § Our legitimate interests in this situation:

    · Managed provision of benefits to the employee;

    o Legal reasons or merger/acquisition: If NEKI or its assets are acquired by, or merged with, another company, including for bankruptcy reasons, we will share your Personal Data with our legal successors, respecting the requirements of current legislation. We will also disclose your Personal Data to third parties (i) when required by applicable law; (ii) in response to legal procedures; (iii) in response to a request from the competent legal authority; (iv) to protect our rights, privacy, security or property; or (v) to enforce the terms of any agreement or the terms of our website, products and services, in accordance with current legislation.

    § Reason for using your personal data in this situation:

    · Legal obligations;

    · Our legitimate interests;

    § Our legitimate interests in this situation:

    · Fully meet legal obligations;

    · Protect our systems, assets and employees.

    § Other purposes and general situations: In accordance with current legislation, NEKI uses your Personal Data for other general business purposes, such as maintaining your registration. We also use your Personal Data for management and operation of our communications, IT and data security and protection systems.

    § Reason for using your personal data in this situation:

    · Comply with contractual obligations;

    · Legal obligations;

    · Our legitimate interests;

    · We obtained your consent (when necessary);

    § Our legitimate interests in this situation:

    · Improve and develop our products, processes and services;

    · Be more efficient in meeting demands;

    · Protect our systems, networks and employees;

    · Fully comply with legal obligations;

    4. 5 DISCLOSURE OF PERSONAL DATA

    In addition to entities that are part of NEKI, we may share your Personal Data with the following types of third-party organizations:

    § Service providers: Include external companies that are used by NEKI to help operate our business. Service providers and their selected employees are only authorized to access your Personal Data on behalf of NEKI for specific tasks that are requested of them based on our direct instructions. Our service providers are contractually obligated to keep your Personal Data confidential and secure, and in cases of violation respond jointly and severally in accordance with current legislation.

    § Credit analysis, debt collection and financial services agencies: As permitted by applicable law, credit analysis and/or debt collection agencies are external companies that NEKI may use to help us verify your credit status or to collect overdue payments.

    § Third-party companies that use Personal Data for their own marketing purposes: Except in situations where you have given your specific consent, NEKI does not license or sell your Personal Data to third-party companies for their own marketing purposes. In cases where this type of sharing occurs, the identity of these third-party companies will be revealed before obtaining your consent.

    § Third parties that use your Personal Data for legal reasons or due to merger/acquisition: We will disclose your Personal Data to third parties for legal reasons or in the context of a merger or acquisition at NEKI.

    4. 6 DATA PROCESSING RETENTION AND TERMINATION

    In accordance with current legislation, NEKI uses your Personal Data for as long as necessary to satisfy the purposes for which your Personal Data was collected, as described in this policy, or to comply with applicable legal requirements.

    Personal Data used to provide a personalized experience to you will be maintained exclusively for the time permitted, in accordance with current legislation.

    You can obtain further details about the retention of your Personal Data through the communication channels detailed in this policy.

    When terminating the processing of your Personal Data, it will be eliminated within the scope and technical limits of activities, authorized conservation in situations provided for in current legislation.

    4. 7 DATA DISCLOSURE, STORAGE OR TRANSFER

    NEKI adopts adequate measures to ensure that your Personal Data is kept confidentially and securely. However, these protections do not apply to information that you have chosen to share in public areas, such as third-party social networks.

    § People who can access your Personal Data: Your Personal Data will be processed by our employees or authorized agents, provided they need to have access to such information, depending on the specific purposes for which your Personal Data was collected.

    § Measures taken in operational environments: We store your Personal Data in operational environments that use reasonable security measures, both technical and administrative, to prevent any type of unauthorized access. We follow reasonable protocols to protect Personal Data.

    § Measures that NEKI expects you to take: It is important that you also have a role in keeping your Personal Data secure. When creating an online account, please make sure to choose a password that is strong to prevent unauthorized parties from guessing it. We recommend that you never reveal or share your password with other people. You are solely responsible for keeping this password confidential and for any action taken through your account on NEKI's compatible websites and services.

    § If you use a shared or public computer, never choose the option to remember your login name, email address or password, and make sure you log out whenever you leave the computer. You should also use any privacy settings or controls that NEKI provides on our website, services or applications, including those considered optional.

    § Transfer of your Personal Data: Given the nature of our business, we may need to transfer your Personal Data stored within NEKI to third parties, in accordance with the purposes established in this Privacy Policy. For this reason, we may transfer your Personal Data to other countries, provided they have laws and regulations compatible with those in force in Brazil.

    4. 8 DATA RIGHTS

    You have the right to confirm the existence, access, review, modify and/or request an electronic copy of the information of your Personal Data that is processed by NEKI.

    You also have the right to request details about the origin of your Personal Data or the sharing of this data with third parties.

    At any time, you may also limit the use and disclosure, or revoke consent to any of our Personal Data processing activities, except in situations provided for in current legislation.

    These rights can be exercised through the communication channels detailed in this policy, requiring validation of your identity through providing a copy of your ID or equivalent means of identification, in accordance with current legislation.

    Whenever a request is submitted without providing the necessary evidence to prove the legitimacy of the data holder, the request will be automatically rejected. We emphasize that any identification information provided to NEKI will only be processed in accordance with, and to the extent permitted by, current laws.

    We emphasize that in certain cases, we cannot delete your Personal Data without also deleting your user account. Additionally, some situations require the retention of your Personal Data after you request its deletion, to satisfy legal or contractual obligations.

    When available, our websites, applications and online services may have a dedicated function where you will be able to review and edit your Personal Data. We emphasize that NEKI requests validation of your identity using, for example, a login system with access password or similar resource, before allowing access or modification of your Personal Data, thus ensuring that there is no unauthorized access to your account and associated personal data.

    NEKI does its utmost to be able to address all questions you may have about how we process your Personal Data. However, if you have unresolved concerns, you have the right to complain to competent data protection authorities.

    4. 9 HOW TO CONTACT?

    You can contact us to:

    § Ask questions or comments about this Policy and our privacy and Personal Data protection practices;

    § Make a complaint;

    § Confirm the existence of processing of your Personal Data;

    § Obtain information on how to access your Personal Data;

    § Correct incomplete, inaccurate or outdated personal data;

    § Obtain information about the anonymization, blocking or elimination of unnecessary, excessive data or processed in non-compliance with the provisions of current legislation;

    § Obtain information about the portability of your personal data to another service or product provider, upon express request, in compliance with current legislation;

    § Request the elimination of personal data processed with your consent, except for the hypotheses provided for in current legislation;

    § Request details of public and private entities with which we share your Personal Data;

    § Obtain information about the possibility of not providing consent and about the consequences of this refusal;

    § Revoke consent for the processing of your Personal Data, except for the hypotheses provided for in current legislation;

    § Other rights of the personal data holder, according to current legislation.

    For this, we ask that you contact us using the following channels:

    Data Protection Officer:

    · LUANA MÉRIDA DOS SANTOS CARIUS – dpo@neki.com.br

    · SILVANA PENKAL SANTOS (Substitute DPO) – dpo@neki.com.br

    NEKI will receive, investigate and respond, within a reasonable timeframe, to any request or complaint about how we process your Personal Data, including complaints about disrespect to your rights under current privacy and Personal Data protection laws.

    5. FINAL PROVISIONS

    Just like ethics, security must be understood as a fundamental part of NEKI's internal culture, that is, any security incident is understood as a deliberate action by an individual against ethics and good customs governed and advocated by the organization.

    Compliance Policy

    Compliance

    Given the particularity of operating in a collaborative network, the search for ethics and good conduct is fundamental and its maintenance is extremely necessary to ensure that the organization has the confidence of its partners, employees, suppliers, as well as public authorities and society in general. We have developed this material called the Compliance Policy that includes the Code of Ethics and Conduct, Anti-bribery and Anti-corruption Policy.

    1.1. Purpose

    The purpose of formalizing conduct and ethics standards and defining which actions are intolerant within NEKI, by its members, third parties and other related parties, is to meet and ensure that our operations are in compliance with important standards issued in recent years that have an impact on the governance of civil society organizations. The objective of this policy is to consolidate the principles and good practices carried out by NEKI and take an important step in implementing internal procedures that guarantee compliance with transparency and good resource management, with a focus on preventing irregularities, and identifying and solving problems preventively. It is expected that this policy will be a useful and effective instrument, observed by all those who relate directly or indirectly with NEKI.

    1.2. Communication Channels

    The NEKI Official Complaint Channel is established as the official communication channel for complaints, complaints and questions about the topics covered in this document, which can be accessed through the website, Convenia and link: https://bit.ly/canaloficialdenuncianeki The channel is open to all NEKI employees and stakeholders, so they can anonymously report conduct or behavior that is not in accordance with the Compliance Policy.

    2. Code of Ethics

    2.1. Introduction

    In the technology area, new tools are presented to the market at all times. Our mission is to bring optimized results to our clients, with the ambition of being a reference in the market in excellence and innovation for the development of Software, Web and mission-critical solutions. For greater understanding, the entire document uses the trade name of the company CARIUS INFORMÁTICA LTDA.

    2.2. Our commitments and Values

    With this code of ethics, NEKI commits to a set of guidelines that guide the behavior of all managers, employees and service providers. These principles of action and behavior are based on our values, focused on customer service, quality in the services offered, agility and results. It commits to respecting these principles and motivating all partners to practice them. By presenting a behavior of commitment and example, we reinforce our position of trust.

    COMMITMENT TO ATTENTION

    It directs us to improve our internal training, so that we can engage our entire team to offer the best support to our clients and partners with agile and fast actions.

    COMMITMENT TO QUALITY

    It consists of delivering value with innovative processes and methodologies, supported by tools. Our ambition is to be recognized and recommended nationally and internationally due to our products and services.

    COMMITMENT TO AGILITY

    It leads us to seek continuous improvement of our products and processes, in order to simplify solutions and reduce efforts so that we can deliver to our clients the best experience they have ever had in service.

    COMMITMENT TO RESULTS

    It involves dedication and dynamism. Our team engages to satisfy our clients' expectations, presenting solutions that are appropriate to their needs.

    2.3. Objectives

    Formalize a reference for personal and professional conduct for all NEKI employees, in order to become a standard for the company's internal relationship with its stakeholders: partners, employees, clients, competitors, suppliers, service providers, unions, society and government;

    Ensure that care for efficiency, competitiveness and profitability includes ethical behavior;

    Reduce the subjectivity of personal interpretations about ethical principles.

    Our objectives direct us to practice ethical principles which apply to all NEKI managers, employees and service providers.

    2.4. Our ethical principles

    With our clients: NEKI considers that its success in offering quality products and services is, in addition to a market differential, one of its strengths. Always attentive to needs and expectations, we maintain a posture of honesty, integrity, courtesy, respect, loyalty, efficiency, transparency and impartiality. Acting within the Law, the client's policies and standards, complying with contracts, agreements and accords signed with third parties.

    With our employees: We believe in the integrity, responsibility and initiative capacity of our employees. We favor the development of skills, as well as the well-being of all, without prejudice of any nature.

    With our competitors: We adopt fair competition practices and combat piracy, tax evasion, fraud and corruption.

    With society and the environment: We prioritize issues of health, safety, environmental preservation and sustainable development standards in the regions where we operate, as well as support for social actions of public interest.

    With our suppliers: We do not accept forced, compulsory, child labor or any other form of exploitation that attacks human dignity, seeking reputable suppliers in their process of supplying goods and services.

    2.5. Work practices

    Maintain confidentiality regarding information and activities related to work, except with express authorization to the contrary given by the Board.

    Ensure the veracity of information disseminated internally or externally by the company.

    Do not use the power inherent to the position or function in obtaining personal favors or services from subordinates.

    Do not participate in transactions and activities that may compromise your professional integrity or discredit your public image, as well as the company's image.

    Exercise your professional activities with competence and diligence, seeking technical improvement and permanent updating, and should encourage everyone involved to adopt such conduct.

    Do not accept any task that you are not qualified to fulfill in the way that best serves the company's interests.

    Do not take positions or make statements that may harm the interests, technical competence or reputation of your co-workers or the company.

    Do not accept from suppliers, clients, partners and competitors any type of financial assistance, gratuity, commission, donation or advantages for yourself, your family or anyone else.

    Preserve NEKI's and its clients' Assets with regard to facilities, equipment, materials, technological, strategic information and operational facilities.

    Do not use company resources (materials, work time, equipment, etc.) to serve particular interests.

    Use electronic mail and the Internet for work-related matters, always taking care of Information security and not disseminating messages that contain illegal, pornographic, racist and religious, political and fake news content.

    2.6. Use of image

    All NEKI employees, when starting their activities at the company and signing the "agreement" term, assign and transfer to the company rights to edit and/or reproduce their image, voice, testimonials, etc., and authorize the fixation in any type of media now existing or that may be created, on the company's website and any product or event linked to NEKI, in an educational or commercial capacity, for the dissemination of activities or services, for commercial, educational and promotional purposes, unlimited times, in closed and open circuits, in Brazil and abroad. This authorization is granted free of charge, non-onerous, irrevocable and irrevocable, and heirs and successors may not argue any right regarding the authorized work(s). The use of the assigned image right is done respecting all the policies presented here, as well as Human Rights and the guidelines required by LGPD. The grantor is protected from any exposure that harms their image or associates them with any ideology prohibited by law.

    2.6.1. Responsible use of social networks

    Employees must use social networks responsibly and respectfully, avoiding publications that could harm the company's image or that of their co-workers. Opinions expressed must be clearly identified as personal and not representative of the company, unless expressly authorized. All posts must respect the confidentiality of information from work developed, never exposing images of computer screens or any other electronic device used as a work instrument that contains confidential information and protecting the image, name and any other information linked to NEKI clients, third parties and service providers.

    2.7. Code of conduct for technological resources

    Technological resources provided by the company, such as computers, systems and equipment, must be used exclusively for professional purposes and in accordance with established internal policies. Access to confidential or sensitive information must be restricted only to authorized employees. Employees must adopt adequate security and data protection measures when using the company's technological resources, avoiding sharing passwords or confidential information with unauthorized third parties. The use of the company's technological resources for the dissemination of illegal, offensive, discriminatory, pornographic content or any other activity that violates current legislation is prohibited.

    2.7.1. Confidentiality of information

    Considering that to carry out the work, the employee will have access to information from NEKI clients and their businesses, the employee accepts that all information revealed, communicated and/or accessed must be maintained in total and unrestricted confidentiality, and cannot disclose, explore or make them accessible to third parties outside this relationship;

    The employee, during the execution of work, commits and is obliged to:

    Use Confidential Information exclusively for work development, inside or outside NEKI facilities;

    Maintain Confidential Information in absolute secrecy and secrecy, as well as not use or exploit such information for the benefit of themselves or third parties, for any purpose;

    Maintain the most absolute secrecy about any data, materials, details, information, documents, technical and commercial specifications of NEKI or third-party products, which they may become aware of or have access to, or which may be entrusted to them, whether related or not to their work at the company;

    Limit the disclosure of Confidential Information received, related to the services in which they are working, to people within their organization who, in the development of their functions, need to know the Confidential Information, it being agreed that such people will be properly instructed to protect and maintain the confidentiality of the information received;

    Not produce copies, or back-up, by any means or form, nor allow third parties to copy or use any of the documents provided to them or documents that have come to their knowledge by virtue of the position they hold in the company, in addition to those essential for the development of their work, considering that all are confidential information.

    Employees must adopt adequate security and data protection measures when using the company's technological resources, avoiding sharing passwords or confidential information with unauthorized third parties. The use of the company's technological resources for the dissemination of illegal, offensive, discriminatory, pornographic content or any other activity that violates current legislation is prohibited.

    2.7.1.1. Transfer of intellectual property upon receipt of confidential information

    The employee agrees that NEKI, or its clients as appropriate, is and will continue to be the exclusive owner of its confidential information and all patents, copyrights, trade secrets, trademarks and other intellectual property rights. No license or transfer of any of these rights to the employee is granted or implied under the terms of this commitment;

    This commitment, or any disclosure of information made in accordance with its terms and conditions, with the exception of the express provisions contained in this policy, does not confer, under any title, any type of license or any other right of any nature for the use of Confidential Information, patent, trademark, trade name, copyright or other type of intellectual property of the employee.

    2.8. Conflict of interests

    "Conflicts of interest" can arise when an individual or their close relatives, friends or professional contacts can influence or exploit their own professional position inappropriately, with the aim of personal or professional benefits. All NEKI employees must avoid situations in which their personal interests conflict, or may conflict, with NEKI's interests. If an employee encounters a situation where there is or appears to be a conflict of interest, they must disclose the conflict of interest to their leader. The leader will evaluate the situation and determine the measures to be taken, after consulting the Compliance Committee. The leader will decide whether the employee should be part of the decision-making process or not.

    2.9. Communication channels

    The employee or any third party interested in NEKI must immediately communicate to the company's Compliance Committee through the NEKI Official Complaint Channel, available on the website, Convenia or through the link https://bit.ly/canaloficialdenuncianeki, any conflict of interest of which they become aware or situations contrary to ethical principles, or that are irregular or doubtful, with confidentiality guaranteed regarding the source of information.

    2.10. Conclusion

    This code of ethics reflects the commitment of the company CARIUS INFORMÁTICA LTDA/NEKI to act ethically, transparently and responsibly in all its activities. All employees commit, through digital signature of the Agreement of Consent with NEKI Policies, to adhere to these principles and contribute to the development of a work environment that is integral, respectful and that promotes the highest standards of professional conduct.

    3. Anti-bribery and Anti-corruption Policy

    3.1. Introduction

    NEKI has a zero tolerance attitude towards bribery and corruption. Even the suggestion of corruption can damage the organization's reputation and affect its ability to do business, as well as the reputation of its employees. Therefore, the organization is committed to doing business ethically, even if this means not obtaining new business, not using the services of specific business partners or incurring delays in carrying out our existing business. We expect everyone to maintain commitment to this guideline and report any evidence of inappropriate conduct.

    Queries, suspicions or suggestions should be directed to the NEKI Official Complaint Channel presented in items 1.2 and 2.8 of this document.

    3.2. Purpose

    The Anti-bribery and Anti-corruption Policy explains our responsibility to comply with anti-bribery and anti-corruption laws worldwide and ensure that any third parties we hire to act on our behalf do the same.

    It aims to establish guidelines and parameters that guide the application, dissemination and improvement of NEKI's Compliance. That is, to provide for a set of activities, procedures and monitoring oriented to reduce the risk of occurrence of bribery events in the organization.

    3.3. Application

    This Policy applies to NEKI employees, suppliers, business partners, representatives, service providers and/or class entities/associations that act on behalf of or for the benefit of the organization. Everyone must respect the guidelines defined in this document.

    3.4. Legal framework

    This NEKI Policy uses the following laws and guidelines as reference:

    ABNT NBR ISO 37001:2017 - Anti-bribery Management Systems. ABNT NBR ISO 37301:2021 - Compliance Management System. Anti-corruption Law or Clean Company Law, law no. 12.846/2013

    According to most legislation, bribery, whether in the public or private sector, is prohibited and constitutes a crime, although the rules for interaction with government officials are usually more severe.

    This policy cannot cover all situations or provide information about all laws that may be applied, nor does it intend to be a complete statement of anti-bribery legislation in any jurisdiction.

    It is fundamentally the responsibility of any person within NEKI to assess what is permitted and what is not within the scope of their activities, using available resources. NEKI makes itself available to guide its employees and third parties interested in the company where they can find relevant information.

    3.4.1. What is bribery?

    Bribery is: offering, promising or giving (active), or requesting, demanding, agreeing to receive or receiving (passive) anything of value with the aim of obtaining a specific advantage in return or to induce improper behavior.

    "Anything of value" includes: money, cash equivalents (for example, gift vouchers) or loans; payments for travel, accommodation or entertainment; favors, including job or internship offers; gifts (for example: perfume, jewelry, use of club titles, a cruise and other advantages); charitable donations; offer of better or beneficial terms for NEKI products or services; Political contributions or facilitated payments.

    Examples of bribery in the private sector include: paying or giving something of value to a purchasing agent so that he chooses NEKI products and not the competition; providing anything of value to an executive or director of a business partner so that the partner does business with NEKI; paying an equipment supplier employee with the aim of obtaining preferential treatment when supplies are in short supply; or promising the use of a vacation home to an employee's family of another company with the intention of inducing the employee to offer a contract to NEKI that would otherwise go to the competition.

    3.5. Gifts, meals and entertainment

    3.5.1. Guidelines

    Employees cannot offer gifts, meals or entertainment to third parties, as well as accept gifts, meals or entertainment from third parties, except in cases permitted in this policy. This policy describes when gifts, meals or entertainment can be offered or accepted without prior approval, when they can be offered or accepted only after approval and when they cannot be offered or accepted in any way. All gifts, meals or entertainment that are received in accordance with this policy must be registered in the form available at the link: https://bit.ly/itensrecebidos

    Gifts, meals or entertainment can never be offered or accepted if: they are illegal within applicable laws; they are not permitted within the applicable policy or code of conduct in the organization that is offering or receiving; they are offered with the intention of obtaining or maintaining business in return or to obtain any type of commercial advantage; the gift, meal or entertainment can be interpreted as intention to affect the outcome of a commercial transaction; it consists of money or can be converted into money.

    Employees cannot ask for gifts, meals or entertainment from third parties.

    3.5.2. Gifts

    Gifts can only be offered or accepted freely, as a courtesy or sign of respect, when the nature of the gift is appropriate to the relationship and follows local customs and general business practices. All gifts must be registered at the link above even following the characteristics described above.

    3.5.2.1. Offering and accepting gifts

    Within this policy, employees can offer and accept a gift without prior authorization if the gift is in accordance with the principles established in items 3.5.1 and 3.5.2 and: if the gift is corporate, with the "NEKI" brand, of nominal value (for example, pens, notebooks);

    OR

    the value of the single gift (or set of gifts) does not exceed the value of R$50.00 (fifty reais); the intended recipient has not received more than two gifts in the last 12 months from NEKI; the gift is offered on an occasion when it is common to offer gifts according to local business practices; the gift is offered on behalf of NEKI and not on behalf of the employee. Regardless of the case above, the employee must register the gift received at the link referred to in item 3.5.1.

    3.5.3. Meals and entertainment

    Meals and entertainment can be offered or accepted as part of business meetings, for the promotion of NEKI products or services in general or for the discussion of a specific project, opportunity or contract. The same principles set out in item 3.5.1 and those set out in item 3.5.2.1 apply to meals and entertainment by analogy, disregarding the need to register any meals and entertainment received when the rules mentioned above are followed and do not exceed the value of R$400.00 (four hundred reais).

    If the volume of meals received exceeds 4 per month, registration is required at the link referred to in item 3.5.1.

    If the employee has offered or received entertainment in the last 10 months, it is necessary to register at the link referred to in item 3.5.1

    4. Penalties

    The employee who violates the rules and neglects the guidelines contained in the Code of Ethics and Conduct, Anti-bribery Policy and Compliance Policy, or in any provision imposed by the company, will be subject to the following penalties:

    1. Verbal warning;

    2. Written warning;

    3. Dismissal for just cause;

    4. Report to competent authorities;

    NEKI is not obligated to follow the order in which the penalties were previously stated. The penalties will be applied according to the severity of the fault committed, according to the evaluation of the legal department and NEKI's Compliance Committee.

    Version 1.0 - October 2023

    Our Policies - Privacy and Terms of Use | NEKI | NEKI - Software Engineering | Innovative Systems Development