United States · Bill · S
S. 239 (110th)
Notification of Risk to Personal Data Act of 2007
Introduced
10 January 2007
Last action
31 May 2007 · Reported
Status
Placed on Senate Legislative Calendar under General Orders. Calendar No. 180.
Sponsors
Sen. Feinstein, Dianne [D-CA]
Subjects
Discovery layer
Source updated
10 August 2026
Summary
Notification of Risk to Personal Data Act of 2007 - Requires any federal agency or business entity engaged in interstate commerce that uses, accesses, transmits, stores, disposes of, or collects sensitive, personally identifiable information, following the discovery of a security breach, to notify (as specified): (1) any U.S. resident whose information may have been accessed or acquired; and (2) the owner or licensee of any such information the agency or business does not own or license. Exempts: (1) agencies from notification requirements for national security and law enforcement purposes and for security breaches that do not have a significant risk of resulting in harm, provided specified certification or notice is given to the U.S. Secret Service; and (2) business entities from notification requirements if the entity utilizes a security program that blocks unauthorized financial transactions and provides notice of a breach to affected individuals. Requires notifications regarding security breaches under specified circumstances to the Secret Service, the Federal Bureau of Investigation, the United States Postal Inspection Service, and state attorneys general. Sets forth enforcement provisions. Authorizes appropriations for costs incurred by the Secret Service to investigate and conduct risk assessments of security breaches.
This text is taken from the official record. PoliticalRepo does not editorialize.
Timeline
10 January 2007
Introduced
Read twice and referred to the Committee on the Judiciary. (text of measure as introduced: CR S379-381)
Source: IntroReferral
10 January 2007
Introduced
Sponsor introductory remarks on measure. (CR S378-379)
Source: IntroReferral
10 January 2007
Introduced
Introduced in Senate
Source: IntroReferral
3 May 2007
Reported
Committee on the Judiciary. Ordered to be reported with an amendment in the nature of a substitute favorably.
Source: Committee
31 May 2007
Calendars
Placed on Senate Legislative Calendar under General Orders. Calendar No. 180.
Source: Calendars
31 May 2007
Reported
Committee on the Judiciary. Reported by Senator Leahy under authority of the order of the Senate of 05/25/2007 with an amendment in the nature of a substitute. Without written report.
Source: Committee
31 May 2007
Reported
Committee on the Judiciary. Reported by Senator Leahy under authority of the order of the Senate of 05/25/2007 with an amendment in the nature of a substitute. Without written report.
Source: Committee
Votes
No vote records are attached yet.
Versions
- Reported to Senate · 31 May 2007 · Official file
- Introduced in Senate · 10 January 2007 · Official file
Documents
6 official files
Reported to Senate (text)
Reported to Senate · EN · 31 May 2007
Reported to Senate (PDF)
Reported to Senate · EN · 31 May 2007
Reported to Senate with amendment(s)
summary · EN · 31 May 2007
Introduced in Senate (text)
Introduced in Senate · EN · 10 January 2007
Introduced in Senate (PDF)
Introduced in Senate · EN · 10 January 2007
Introduced in Senate
summary · EN · 10 January 2007
Sponsors
- Sen. Feinstein, Dianne [D-CA] · D · Sponsor
- · ssju00 · Standing
Related records
No cross-record relationships stored yet.
Sources
PoliticalRepo is an index and interpretation layer, not the authoritative legal source.
- Official source: https://www.congress.gov/bill/110th-congress/senate-bill/239
- Open data entity: https://api.congress.gov/v3/bill/110/s/239
- us · 110-s-239 · source updated 10 August 2026