PoliticalRepoPoliticalRepo

United States · Bill · S

S. 115 (109th)

Notification of Risk to Personal Data Act

referredUnited States· United States Congress· EN

Introduced

24 January 2005

Last action

24 January 2005 · Introduced

Status

Read twice and referred to the Committee on the Judiciary. (text of measure as introduced: CR S288-289)

Sponsors

Sen. Feinstein, Dianne [D-CA]

Subjects

Discovery layer

Source updated

10 August 2026

Summary

Notification of Risk to Personal Data Act - Requires any agency or person that owns or licenses electronic data containing personal information, following the discovery of a breach of security of the system containing such data, to notify any U.S. resident whose personal information was, or is reasonably believed to have been, acquired by an unauthorized person. Requires any agency or person who possesses but does not own or license such data, to notify the information owner or licensee about such an unauthorized acquisition. Allows delay of notification in connection with authorized law enforcement purposes. Provides authorized methods of notification and alternative notification procedures. Provides: (1) civil penalties and rights and remedies in connections with violations; and (2) for enforcement by State attorneys general.

This text is taken from the official record. PoliticalRepo does not editorialize.

Timeline

  1. 24 January 2005

    Introduced

    Read twice and referred to the Committee on the Judiciary. (text of measure as introduced: CR S288-289)

    Source: IntroReferral

  2. 24 January 2005

    Introduced

    Sponsor introductory remarks on measure. (CR S287-288)

    Source: IntroReferral

  3. 24 January 2005

    Introduced

    Introduced in Senate

    Source: IntroReferral

Votes

No vote records are attached yet.

Versions

Documents

3 official files

Introduced in Senate (text)

View fileDownload file

Sponsors

Related records

Sources

PoliticalRepo is an index and interpretation layer, not the authoritative legal source.