we file for and register our trademarks and monitor third party trademarks worldwide and we have developed a robust enforcement program to protect our brands/trademarks, domains, and copyrights to protect our intellectual property rights on various platforms including the web, borders/customs, e-commerce and social channels to protect our brands, videos, DVDs and DVD kits, clothing, and accessories which have been and continue to be counterfeited. As of December 31, 2023, we have over 3,000 registered trademarks, over 200 registered copyrights and four patents (including 18 patents pending).
To minimize intellectual property infringement and counterfeiting, our team monitors domains, websites, eCommerce sites, social channels, distributors and other third parties through a third-party platform that monitors eBay, Amazon, Mercado Libre, YouTube, Vimeo, Instagram, Gumtree, Kijiji, Mercari and other platforms and sites in the U.S. and worldwide to identify third parties who purport to sell our products including DVDs and videos. Additionally, we enter into agreements with our commercial partners, supply chain vendors, employees and consultants to control access to, and clarify ownership of, our intellectual property and proprietary information.
Government Regulation
We are subject to many varying laws and regulations in the United States, Canada, the United Kingdom (the “UK”), the European Union (the “EU”) and throughout the world, including those related to data privacy, data protection, data breach notification, content regulation, foods and dietary supplements, imports and exports, intellectual property, consumer protection, e-commerce, multi-level marketing, advertising, messaging, rights of publicity, health and safety, employment and labor, product liability, accessibility, competition, and taxation. These laws often require companies to implement specific information security controls to protect certain types of information, such as personal data, “special categories of personal data” or health data. While we strive to comply and remain compliant with each of these laws and regulations, they are constantly evolving and may be interpreted, applied, created, or amended in a manner that could require a change to our current compliance footprint, or harm our current or future business and operations. In addition, it is possible that certain governments may seek to block or limit our products and services or otherwise impose other restrictions that may affect the accessibility or usability of any or all of our products and services for an extended period of time or indefinitely.
With respect to data privacy and protection laws and regulations, in the EU, the General Data Protection Regulation, (the “GDPR”), became effective in 2018. The GDPR is intended to create a single legal framework for privacy rights that applies across all EU member states, including France, which is currently the only country in the EU in which we operate. The GDPR created more stringent operational requirements for controllers and processors of personal data, including, for example, requiring enhanced disclosures to data subjects about how personal data is processed (including information about the profiling of individuals and automated individual decision-making), limiting retention periods of personal data, requiring mandatory data breach notification, and requiring additional policies and procedures to comply with the accountability principle under the GDPR. Similarly, other jurisdictions are instituting privacy and data security laws, rules, and regulations, which could increase our risk and compliance costs. As a result of Brexit, for example, we will need to continue compliance with the UK Data Protection Act of 2018 for privacy rights across the United Kingdom, the legal requirements of which largely follow the GDPR.
We are also subject to laws, rules, and regulations regarding cross-border transfers of personal data, including laws relating to the transfer of personal data outside the European Economic Area, (“EEA”), and the UK. We rely on transfer mechanisms permitted under these laws, including the standard contract clauses and intracompany data transfer agreements, which mechanisms have been subject to regulatory and judicial scrutiny. If these existing mechanisms for transferring personal data from the EEA, the United Kingdom, or other jurisdictions are unavailable, we may be unable to transfer personal data of employees or customers in those regions to the United States.
56