(xxvii) Neither the Company nor any of its Subsidiaries, nor, to the knowledge of the Company, any director, officer, agent, employee or other person associated with or acting on behalf of the Company or any of its Subsidiaries, has (i) used any corporate funds for any unlawful contribution, gift, entertainment or other unlawful expense relating to political activity; (ii) made any direct or indirect unlawful payment to any foreign or domestic government official or employee from corporate funds, (iii) violated or is in violation of any provision of the Foreign Corrupt Practices Act of 1977, or (iv) made any bribe, unlawful rebate, payoff, influence payment, kickback or other unlawful payment;
(xxviii) There is and has been no failure on the part of the Company or any of the Company’s directors or officers, in their capacities as such, to comply with any provision of the Sarbanes-Oxley Act of 2002 and the rules and regulations promulgated in connection therewith, including Section 402 related to loans and Sections 302 and 906 related to certifications;
(xxix) There are no persons with registration rights or other similar rights to have securities registered pursuant to the Registration Statement or otherwise registered by the Company under the Securities Act, except as described in the Registration Statement and the Prospectus, including in relation to the A&R RRA (as defined therein);
(xxx) The Company is not an “investment company”, as such term is defined in the Investment Company Act of 1940, as amended (the “Investment Company Act”);
(xxxi) The Company and its Subsidiaries’ information technology assets and equipment, computers, systems, networks, hardware, software, websites, applications, and databases (collectively, “IT Systems”) are adequate for, and operate and perform in all material respects as required in connection with the operation of the business of the Company as currently conducted, free and clear of all material bugs, errors, defects, Trojan horses, time bombs, malware and other corruptants. The Company and its subsidiaries have implemented and maintained commercially reasonable physical, technical and administrative controls, policies, procedures, and safeguards to maintain and protect their material confidential information and the integrity, continuous operation, redundancy and security of all IT Systems and data, including all “Personal Data” (defined below) and all sensitive, confidential or regulated data (“Confidential Data”) used in connection with their businesses. “Personal Data” means (i) a natural person’s name, street address, telephone number, e-mail address, photograph, social security number or tax identification number, driver’s license number, passport number, credit card number, bank information, or customer or account number; (ii) any information which would qualify as “personally identifying information” under the Federal Trade Commission Act, as amended; (iii) “personal data” as defined by GDPR; (iv) any information which would qualify as “protected health information” under the Health Insurance Portability and Accountability Act of 1996, as amended by the Health Information Technology for Economic and Clinical Health Act (collectively, “HIPAA”); (v) any “personal information” as defined by the California Consumer Privacy Act (“CCPA”); and (vi) any other piece of information that allows the identification of such natural person, or his or her family, or permits the collection or analysis of any data related to an identified person’s health or sexual orientation. There have been no breaches, violations, outages or unauthorized uses of or accesses to same, except for those that
10