Regulator

CERT-In — data-protection enforcement record

2 recorded actions in the KensaraAI India enforcement dataset.

2
Recorded actions
—
Recorded penalties
2
Authorities involved
2022–2024
Period covered

Timeline

  1. ◐ Press reported
    Sensitive health-data breach
    CERT-In / IRDAI · Investigation

    A reported breach exposed policyholder health and personal data of Star Health customers, prompting CERT-In and IRDAI scrutiny and litigation over the alleged leak.

  2. ◐ Press reported
    6-hour breach reporting mandate
    CERT-In · Penalty / imprisonment (framework)

    CERT-In issued directions requiring cyber-incident reporting within 6 hours and 180-day log retention, effective 28 June 2022 — India's first strictly enforced breach-notification regime.

Related entities

← All enforcement actions