Section 28 of Aadhaar Act 2016

Section 28 of Aadhaar Act 2016 – Security and confidentiality of information


Section 28(1) of Aadhaar Act 2016

The Authority shall ensure the security of identity information and authentication records of individuals.


Section 28(2) of Aadhaar Act 2016

Subject to the provisions of this Act, the Authority shall ensure confidentiality of identity information and authentication records of individuals.


Section 28(3) of Aadhaar Act 2016

The Authority shall take all necessary measures to ensure that the information in the possession or control of the Authority, including information stored in the Central Identities Data Repository, is secured and protected against access, use or disclosure not permitted under this Act or regulations made thereunder, and against accidental or intentional destruction, loss or damage.


Section 28(4) of Aadhaar Act 2016

Without prejudice to sub-sections (1) and (2), the Authority shall—

(a) adopt and implement appropriate technical and organisational security measures;

(b) ensure that the agencies, consultants, advisors or other persons appointed or engaged for performing any function of the Authority under this Act, have in place appropriate technical and organisational security measures for the information; and

(c) ensure that the agreements or arrangements entered into with such agencies, consultants, advisors or other persons, impose obligations equivalent to those imposed on the Authority under this Act, and require such agencies, consultants, advisors and other persons to act only on instructions from the Authority.


Section 28(5) of Aadhaar Act 2016

Notwithstanding anything contained in any other law for the time being in force, and save as otherwise provided in this Act, the Authority or any of its officers or other employees or any agency that maintains the Central Identities Data Repository shall not, whether during his service or thereafter, reveal any information stored in the Central Identities Data Repository or authentication record to anyone:

Provided that an Aadhaar number holder may request the Authority to provide access to his identity information excluding his core biometric information in such manner as may be specified by regulations.


Leave a Comment

Your email address will not be published. Required fields are marked *

Let's Chat