yourstate.us
1 CFR 304.29

§ 304.29 Security of systems of records.

United States · 1 CFR — General Provisions · Status: effective

Get this as JSONEmbed this
Cite this
Citation
1 CFR 304.29, § 304.29 Security of systems of records, United States, version 1 as recorded 2026-07-09, yourstate.us, https://yourstate.us/provision/276
Permanent ID
ys:prov:276@1
SHA-256
acd3ff8caa702b49635348eccd11d3e3cd5b80056a243769d1e4a1882773a13a

The hash is SHA-256 of this version's text, with every run of whitespace collapsed to a single space and the ends trimmed. The ID always leads back here, and checking it says whether the text you cited is still the current version.

Full text

(a) Administrative and physical controls. The agency will have administrative and physical controls to prevent unauthorized access to its systems of records, to prevent unauthorized disclosure of records, and to prevent physical damage to or destruction of records. The stringency of these controls corresponds to the sensitivity of the records that the controls protect. At a minimum, these controls are designed to ensure that: (1) Records are protected from public view; (2) The area in which records are kept is supervised during business hours in order to prevent unauthorized persons from having access to them; (3) Records are inaccessible to unauthorized persons outside of business hours; and (4) Records are not disclosed to unauthorized persons or under unauthorized circumstances in oral, written or any other form. (b) Restrictive procedures. The agency will implement practices and procedures that restrict access to records to only those individuals within the agency who must have access to those records in order to perform their duties and that prevent inadvertent disclosure of records.

Legislative history

This is a federal regulation, adopted through agency rulemaking under the Administrative Procedure Act — not enacted by a recorded vote of Congress.