12 CFR 1204.8
§ 1204.8 How are records secured?
United States · 12 CFR — Banks and Banking · Status: effective
Cite this
- Citation
- 12 CFR 1204.8, § 1204.8 How are records secured?, United States, version 1 as recorded 2026-07-09, yourstate.us, https://yourstate.us/provision/50147
- Permanent ID
ys:prov:50147@1- SHA-256
5b214e42c9554a4ca057ff1302118ec5de9c0ec441835dd1ac5f219e9d94ae1f
The hash is SHA-256 of this version's text, with every run of whitespace collapsed to a single space and the ends trimmed. The ID always leads back here, and checking it says whether the text you cited is still the current version.
Full text
(a) What controls must FHFA and FHFA-OIG have in place? FHFA and FHFA-OIG must establish administrative and physical controls to prevent unauthorized access to their systems of records, unauthorized or inadvertent disclosure of records, and physical damage to or destruction of records. The stringency of these controls corresponds to the sensitivity of the records that the controls protect. At a minimum, the administrative and physical controls must ensure that—
(1) Records are protected from public view;
(2) The area in which records are kept is supervised during business hours to prevent unauthorized persons from having access to them;
(3) Records are inaccessible to unauthorized persons outside of business hours; and
(4) Records are not disclosed to unauthorized persons or under unauthorized circumstances in either oral or written form.
(b) Is access to records restricted? Access to records is restricted to authorized employees who require access in order to perform their official duties.
Legislative history
This is a federal regulation, adopted through agency rulemaking under the Administrative Procedure Act — not enacted by a recorded vote of Congress.