PoliticalRepoPoliticalRepo

United States · Bill · S

S. 1408 (109th)

Identity Theft Protection Act

openUnited States· United States Congress· EN

Introduced

14 July 2005

Last action

8 December 2005 · Reported

Status

Placed on Senate Legislative Calendar under General Orders. Calendar No. 320.

Sponsors

Sen. Smith, Gordon H. [R-OR], Rep. Nelson, Bill [D-FL-11], Sen. Stevens, Ted [R-AK], Sen. Inouye, Daniel K. [D-HI], Sen. McCain, John [R-AZ], Sen. Pryor, Mark L. [D-AR], Sen. Clinton, Hillary Rodham [D-NY], Lisa Murkowski

Subjects

Discovery layer

Source updated

7 April 2025

Summary

Identity Theft Protection Act - Requires: (1) a covered entity (i.e., any commercial entity or charitable, educational, or nonprofit organization that acquires, maintains, or utilizes sensitive personal information) to take reasonable steps to protect against security breaches and to prevent unauthorized access to sensitive personal information that the entity sells, maintains, collects, or transfers; and (2) the Federal Trade Commission (FTC) to promulgate regulations to implement that requirement. Requires a covered entity, upon discovering a breach of security, to: (1) report the breach to the FTC or other appropriate federal regulator and notify all consumer reporting agencies specified in the Fair Credit Reporting Act if it determines that the breach affects the sensitive personal information of 1,000 or more individuals; and (2) notify individuals if it determines that the breach has resulted in, or poses a reasonable risk of, theft of their identity. Authorizes a consumer to place a security freeze on his or her credit report by making a request to a consumer credit reporting agency in writing or by telephone, subject to specified requirements. Directs that any violation of this Act be treated as an unfair or deceptive act or practice proscribed under a rule issued pursuant to the Federal Trade Commission Act. Sets civil penalties for violations. Places specified limits on the use of, and access to, social security numbers. Directs the Chairman of the FTC to establish an Information Security Working Group to develop best practices to protect sensitive personal information.

This text is taken from the official record. PoliticalRepo does not editorialize.

Timeline

  1. 14 July 2005

    Introduced

    Read twice and referred to the Committee on Commerce, Science, and Transportation. (text of measure as introduced: CR S8323-8325)

    Source: IntroReferral

  2. 14 July 2005

    Introduced

    Sponsor introductory remarks on measure. (CR S8322-8323)

    Source: IntroReferral

  3. 14 July 2005

    Introduced

    Introduced in Senate

    Source: IntroReferral

  4. 28 July 2005

    Reported

    Committee on Commerce, Science, and Transportation. Ordered to be reported with an amendment in the nature of a substitute favorably.

    Source: Committee

  5. 8 December 2005

    Calendars

    Placed on Senate Legislative Calendar under General Orders. Calendar No. 320.

    Source: Calendars

  6. 8 December 2005

    Reported

    Committee on Commerce, Science, and Transportation. Reported by Senator Stevens under authority of the order of the Senate of 11/18/2005 with an amendment in the nature of a substitute. With written report No. 109-203.

    Source: Committee

  7. 8 December 2005

    Reported

    Committee on Commerce, Science, and Transportation. Reported by Senator Stevens under authority of the order of the Senate of 11/18/2005 with an amendment in the nature of a substitute. With written report No. 109-203.

    Source: Committee

Votes

No vote records are attached yet.

Versions

Documents

6 official files

Reported to Senate (text)

View fileDownload file

Sponsors

Related records

No cross-record relationships stored yet.

Sources

PoliticalRepo is an index and interpretation layer, not the authoritative legal source.