From ccb876eb41e68760cac1217f329d68d491cde636 Mon Sep 17 00:00:00 2001 From: Sam Johnston Date: Fri, 25 Apr 2008 20:10:00 +0000 Subject: [PATCH] norway updates git-svn-id: http://svn.cacert.org/CAcert/Policies@803 14b1bab8-4ef6-0310-b690-991c95c89dfd --- .../OrganisationAssuranceSubPolicyNorway.html | 281 +++++++++--------- 1 file changed, 139 insertions(+), 142 deletions(-) diff --git a/OrganisationAssurancePolicy/OrganisationAssuranceSubPolicyNorway.html b/OrganisationAssurancePolicy/OrganisationAssuranceSubPolicyNorway.html index 3db44ef..708fe19 100644 --- a/OrganisationAssurancePolicy/OrganisationAssuranceSubPolicyNorway.html +++ b/OrganisationAssurancePolicy/OrganisationAssuranceSubPolicyNorway.html @@ -1,146 +1,143 @@ + "http://www.w3.org/TR/xhtml11/DTD/xhtml11.dtd"> - - - - - - - - - - - CACert Organisation Assurance Program sub-policy for -<!-- COUNTRY --> -Norway - - - -

Organisation Assurance - sub-policy for - -Norwegian -organisations -

-

- - CAcert Work In Progress
-
- Author: Dag Hovland
- Creation date: WIP 2008-04-25 V0.1
- Status: WIP 2008-04-25
- Next status: DRAFT 2008
- - -

-

0. Preliminaries

-This sub-policy describes how Organisation Assurers ("OAs") conduct assurances on - -Norwegian -organisations. -It fits within the overall web-of-trust or assurance process and the Organisation Assurance Policy (OAP) of CAcert. - -

1. Purpose

-This is a subsidiary policy to the OAP. -
    -
  1. This sub-policy is applicable for the assurance of organisations in the - -Norway - only.
  2. -
  3. This sub-policy is an implementation of the OAP.
  4. -
  5. In the below, where the Assurance Officer (AO) is referred to, this includes his local delegate.
  6. -
- -

2. Organisation Assurers

- -

2.1 Requirements for the Organisation Assurer

-In addition to the requirements defined in the OAP, an OA must meet the following requirements for assuring - -Norwegian -organisations: -
    -
  1. Knowledge on common legal forms of organisations in the - -Norway - .
  2. -
  3. Must pass an additional test on local knowledge even if he is already an OA.
  4. -
  5. Should help the AO to define local requirements.
  6. -
- -

3. Process

- -

3.1 Organisations

-Acceptable organisations under this sub-policy must be: -
    -
  1. Organisations created under the rules of the jurisdiction in the - -Norway - .
  2. -
  3. Organisations must not be revoked or pending by a competent authority with direct oversight over the organisation. -
  4. -
- -

3.2 Identifiers

-The organization number (organisasjonsnummeret) is a unique 9 digit -identifying number assigned by the official register authority -" - -Brønnøysundregisteret -" -when a body becomes registered as a legal entity. - -

3.2 Documents

-The organisation has to provide documents to prove the essential standard of Organisation Assurance as defined in the policy:
-
    -
  1. The primary mechanism to prove existence is to get an official - "Register Transcript with Signature" - ( - -Enhetsregisteret - ) - in the official trade office "Register Authority" - ( - -Brønnøysundregistrene - , - -www.brreg.no - ). -
    - The organisation is asked to carry these direct costs. -
    - The Extract should state registrated official administrative details of the organisation. -
  2. -
  3. Where not available, an official document will be required from the company, subject to such checks as defined by the AO.
  4. -
  5. If copies of official Extracts from the official register are provided, they must be officially certified
  6. -
  7. The Extract should not be older than 4 weeks.
  8. -
- -

3.3 COAP

-In addition to the checks defined in the policy, the COAP form for - -Norwegian -organisations requires:
-
    -
  1. The OA must keep all provided documentation and will maintain digital readability if documents are provided in digital format for - -7 - years.
  2. -
  3. Signatures from organisation officials must meet the following requirements
    -
      -
    1. as legally specified for the type of organisation
    2. -
    3. as specified in the register transcript (extract) from - -Brønnøysundregistrene - .
    4. -
    5. as delegated within the organisation (proof of delegation needed)
    6. -
    -
  4. -
-

- Valid XHTML 1.1 -

- + + + CACert Organisation Assurance Program sub-policy for Norway (NO) + + + +

+ CAcert Organisation Assurance Program sub-policy for Norway (NO) +

+

+ CAcert Policy Status
+ Author: Dag Hovland
+ Creation date: 2008-04-25
+ Status: WIP 2008-04-25
+ Next status: DRAFT 2008
+ +

+

+ 0. Preliminaries +

+

+ This CAcert sub-policy extends the Organisation Assurance Policy ("OAP") by specifying how the CAcert Organisation Assurance Program ("COAP") is to be conducted by the assigned Organisation Assurer ("OA") under the supervision of the Assurance Officer ("AO") for entities within the defined scope. +

+

+ 1. Scope +

+

+ This sub-policy is applicable to:
+

+
    +
  1. Norwegian legal entities:
    +
      +
    1. Companies +
    2. +
    +
  2. +
+

+ 2. Requirements +

+

+ This section describes any scope specific requirements that are not otherwise defined in the OAP. +

+

+ 2.1 Organisation +

+
    + +
  1. Applicants MUST be a valid legal entity but MAY have an arbitrary number of registered trading names. +
  2. +
+

+ 2.2 Records +

+
    + +
  1. Historic documents MAY be accepted where it can be proven that material changes have not been made (eg via absence of subsequent submissions in official document listings). +
  2. +
+

+ 2.3 Application Form +

+
    +
  1. The licensing authority MUST be specified as 'Brønnøysundregistrene, Norway' for Companies. +
  2. +
  3. Organisation number Organisasjonsnummeret MUST be specified where applicable. +
  4. +
+

+ 3. Registration +

+

+ 3.1 Registries +

+
    +
  1. Brønnøysundregistrene [http://www.brreg.no]
    +
      +
    1. Nøkkelopplysninger fra Enhetsregisteret [http://w2.brreg.no/enhet/sok/]
      +
    2. +
    +
  2. +
+

+ 3.2 Identifiers +

+
    +
  1. The organization number Organisasjonsnummeret is a unique 9 digit identifying number assigned by Brønnøysundregisteret. +
  2. +
+

+ 3.3 Documents +

+
    +
  1. Register Transcript Enhetsregisteret +
  2. +
+

+ 4. Processes +

+

+ 4.1 Assurance +

+
    +
  1. Each person listed in an application MUST be individually assured and referenced by a confirmed email. +
  2. + +
  3. Company applications MUST be made by an individual who is duly authorised to sign on behalf of the company: +
      +
    1. Officeholder applicants (eg Daglig leder/adm.direktør) MUST be verified in a "Enhetsregisteret" (obtained from CH by the OA where fees are reclaimable from the applicant). +
    2. +
    3. Any other applicant MUST prove that they are duly authorised to sign on behalf of the entity (for example via delegation and/or under company rules) to the satisfaction of the OA, for approval by the OAO. +
    4. +
    +
  4. +
+

+ Valid XHTML 1.1 +

+ -