Aadhaar Authentication Data Not To Be Kept Beyond 6 Months, Bring Out Robust Data Protection Regime: SC Directs UIDAI/GOI
Live LawAlthough the Supreme Court has upheld the Aadhaar programme and many provisions of the Aadhaar Act, the reading of the judgment delivered by Justice AK Sikri would show that all is not well with the Aadhaar.The court, in order to address the apprehensions expressed in the petitions challenging the Aadhaar Act, has issued the following directives to UIDAI and Central Government:. Although the Supreme Court has upheld the Aadhaar programme and many provisions of the Aadhaar Act, the reading of the judgment delivered by Justice AK Sikri would show that all is not well with the Aadhaar. The court, in order to address the apprehensions expressed in the petitions challenging the Aadhaar Act, has issued the following directives to UIDAI and Central Government: Authentication records are not to be kept beyond a period of six months, as stipulated in Regulation 27 of the Authentication Regulations. They had also expressed apprehensions about Regulation 26 of the Authentication Regulations requires the UIDAI to store “authentication transaction data” consisting of: authentication request data received including PID block; authentication response data sent; metadata related to the transaction; and any authentication server side configurations as necessary.