Our business depends on our ability to limit and mitigate interruptions to or degradation of the security of our network. Our network and those of our third-party service providers and our customers may be vulnerable to unauthorized access, computer viruses, cyber-attacks, malware, data breaches, distributed denial of services and other security breaches. Persons who circumvent security measures could wrongfully obtain or use information from such networks or cause interruptions, delays or malfunctions in our operations. An attack on, or security breach of our network could result in theft of trade secrets, intellectual property, or other company confidential information, the interruption, degradation, or cessation of services, an inability to meet our service requirements under the Service Agreements, and potentially compromise customer data stored on or transmitted over our network. We cannot guarantee that our security measures will not be circumvented, thereby resulting in security events, network failures or interruptions that could impact our network security or availability and have a material adverse effect on our business, financial condition and operational results. A number of significant, widespread security breaches have compromised companies and governmental agencies. In some cases, these breaches originated from outside the United States. We may be required to expend significant resources to protect against the threat of security breaches or to alleviate problems, including reputational harm and litigation, caused by any breaches, and we may experience a reduction in revenues, litigation and a diminution of goodwill, caused by a compromise of our cybersecurity. In addition, our customer contracts may not adequately protect us against liability to third parties with whom our customers conduct business. We cannot assure you that any measures we implement to protect against breaches will provide security, that we will be able to react in a timely manner, or that our remediation efforts following any attacks will be successful.
We collect and store data, including our customers' personal information. In jurisdictions around the world, personal information is increasingly becoming the subject of extensive legislation and regulations to protect consumers' privacy and security, such as the EU's General Data Protection Regulation that became effective in 2018. The interpretation of privacy and data protection laws and regulations regarding the collection, storage, transmission, use and disclosure of such information in some jurisdictions is unclear and ever evolving. These laws may be interpreted and applied differently from country to country and in a manner that presents a challenge to our current data protection practices. Complying with these varying international requirements could cause us to incur additional costs or change our business practices. Our services are accessible in many foreign jurisdictions, and some of these jurisdictions may claim that we are required to comply with their laws, even where we have no local entity, employees or infrastructure. We could be forced to incur significant expenses if we were required to modify our products, services or existing security and privacy procedures in order to comply with new or expanded regulations across numerous jurisdictions. In addition, we could face liability to end users alleging that their personal information is not collected, stored, transmitted, used or disclosed appropriately or in accordance with our privacy policies or applicable laws, including claims and litigation resulting from such allegations. Any failure on our part to protect information pursuant to applicable regulations could result in a loss of user confidence, reputation and customers, which could materially impact our results of operations and cash flows.