<?xml version="1.0"?>
<?xml-stylesheet type="text/xsl" href="billres.xsl"?>
<!DOCTYPE bill PUBLIC "-//US Congress//DTDs/bill.dtd//EN" "bill.dtd">
<bill bill-stage="Reported-in-House" dms-id="H5C462145A7F446209C9DD022571B9271" public-private="public" bill-type="olc"> 
<metadata xmlns:dc="http://purl.org/dc/elements/1.1/">
<dublinCore>
<dc:title>109 HR 4943 RH: Prevention of Fraudulent Access to Phone Records Act</dc:title>
<dc:publisher>U.S. House of Representatives</dc:publisher>
<dc:date>2006-03-16</dc:date>
<dc:format>text/xml</dc:format>
<dc:language>EN</dc:language>
<dc:rights>Pursuant to Title 17 Section 105 of the United States Code, this file is not subject to copyright protection and is in the public domain.</dc:rights>
</dublinCore>
</metadata>
<form> 
<distribution-code display="yes">IB</distribution-code> 
<calendar display="yes">Union Calendar No. 217</calendar> 
<congress display="yes">109th CONGRESS</congress> <session display="yes">2d Session</session> 
<legis-num>H. R. 4943</legis-num> 
<associated-doc role="report" display="yes">[Report No. 109-398<?xm-replace_text ?>]</associated-doc> 
<current-chamber>IN THE HOUSE OF REPRESENTATIVES</current-chamber> 
<action> 
<action-date date="20060314">March 14, 2006</action-date> 
<action-desc><sponsor name-id="B000213">Mr. Barton of Texas</sponsor> (for himself, <cosponsor name-id="D000355">Mr. Dingell</cosponsor>, <cosponsor name-id="U000031">Mr. Upton</cosponsor>, <cosponsor name-id="M000133">Mr. Markey</cosponsor>, <cosponsor name-id="S000822">Mr. Stearns</cosponsor>, <cosponsor name-id="S001145">Ms. Schakowsky</cosponsor>, <cosponsor name-id="G000210">Mr. Gillmor</cosponsor>, <cosponsor name-id="G000410">Mr. Gene Green of Texas</cosponsor>, <cosponsor name-id="S000364">Mr. Shimkus</cosponsor>, <cosponsor name-id="R000573">Mr. Ross</cosponsor>, <cosponsor name-id="W000789">Mrs. Wilson of New Mexico</cosponsor>, <cosponsor name-id="B000944">Mr. Brown of Ohio</cosponsor>, <cosponsor name-id="F000440">Mr. Fossella</cosponsor>, <cosponsor name-id="B001230">Ms. Baldwin</cosponsor>, <cosponsor name-id="B001203">Mr. Buyer</cosponsor>, <cosponsor name-id="C001036">Mrs. Capps</cosponsor>, <cosponsor name-id="B001228">Mrs. Bono</cosponsor>, <cosponsor name-id="D000482">Mr. Doyle</cosponsor>, <cosponsor name-id="W000791">Mr. Walden of Oregon</cosponsor>, <cosponsor name-id="S001153">Ms. Solis</cosponsor>, <cosponsor name-id="B001248">Mr. Burgess</cosponsor>, <cosponsor name-id="R000515">Mr. Rush</cosponsor>, <cosponsor name-id="W000215">Mr. Waxman</cosponsor>, <cosponsor name-id="S001045">Mr. Stupak</cosponsor>, <cosponsor name-id="G000309">Mr. Gordon</cosponsor>, <cosponsor name-id="I000026">Mr. Inslee</cosponsor>, <cosponsor name-id="E000172">Mrs. Emerson</cosponsor>, <cosponsor name-id="L000563">Mr. Lipinski</cosponsor>, and <cosponsor name-id="W000795">Mr. Wilson of South Carolina</cosponsor>) introduced the following bill; which was referred to the <committee-name committee-id="HIF00">Committee on Energy and Commerce</committee-name></action-desc> 
</action> 
<action>
<action-date date="20060316">March 16, 2006</action-date>
<action-desc>Additional sponsor: <cosponsor name-id="S000275">Mr. Shadegg</cosponsor></action-desc>
</action>
<action> 
<action-date date="20060316">March 16, 2006</action-date> 
<action-desc>Committed to the Committee of the Whole House on the State of the Union and ordered to be printed</action-desc> 
</action> 
<legis-type>A BILL</legis-type> 
<official-title display="yes">To prohibit fraudulent access to telephone records.</official-title> 
</form> 
<legis-body id="H443CCA9273954E19B552E0E9BD4E5536" style="OLC"> 
<section id="H7A757B3C5F9F45C89C9DE8AC1E96BA35" section-type="section-one" display-inline="no-display-inline"><enum>1.</enum><header>Short title</header><text display-inline="no-display-inline">This Act may be cited as the <quote><short-title>Prevention of Fraudulent Access to Phone Records Act</short-title></quote>.</text></section> 
<title id="HF1E98DAFD34E48ED97AB5CA7F7A6E46"><enum>I</enum><header>Federal Trade Commission Provisions</header> 
<section id="H40CAEA12C59043D8ABB738D75E56EEB4"><enum>101.</enum><header>Fraudulent access to customer telephone records</header> 
<subsection id="H5206F344B4F64464B548AC79A9AC0915"><enum>(a)</enum><header>Prohibition on obtaining customer information by false pretenses</header><text display-inline="yes-display-inline">It shall be unlawful for any person to obtain or attempt to obtain, or cause to be disclosed or attempt to cause to be disclosed to any person, customer proprietary network information relating to any other person by—</text> 
<paragraph id="H6FCD6971534D4888BDCA81F962E6CB7C"><enum>(1)</enum><text>making a false, fictitious, or fraudulent statement or representation to an officer, employee, or agent of a telecommunications carrier; or</text></paragraph> 
<paragraph id="HD770ECC30259434AB600BC2CC34B9CE9"><enum>(2)</enum><text display-inline="yes-display-inline">providing any document or other information to an officer, employee, or agent of a telecommunications carrier that the person knows or should know to be forged, counterfeit, lost, stolen, or fraudulently obtained, or to contain a false, fictitious, or fraudulent statement or representation.</text></paragraph></subsection> 
<subsection id="H18AB3A052B664E008685F88C5667841" commented="no"><enum>(b)</enum><header>Prohibition on solicitation of a person to obtain customer information under false pretenses</header><text display-inline="yes-display-inline">It shall be unlawful to request a person to obtain from a telecommunications carrier customer proprietary network information relating to any third person, if the person making such a request knew or should have known that the person to whom such a request is made will obtain or attempt to obtain such information in the manner described in subsection (a).</text></subsection> 
<subsection id="HE3118814FD6D4502BC969DEBA5E8F9DC"><enum>(c)</enum><header>Prohibition on sale or other disclosure of customer information obtained under false pretenses</header><text display-inline="yes-display-inline">It shall be unlawful for any person to sell or otherwise disclose to any person customer proprietary network information relating to any other person if the person selling or disclosing obtained such information in the manner described in subsection (a).</text></subsection></section> 
<section id="HECCBA500D94842E2B55507094E1C68A8" commented="no"><enum>102.</enum><header>Exemption</header><text display-inline="no-display-inline">No provision of section 101 shall be construed so as to prevent any action by a law enforcement agency, or any officer, employee, or agent of such agency, from obtaining or attempting to obtain customer proprietary network information from a telecommunications carrier in connection with the performance of the official duties of the agency, in accordance with other applicable laws.</text></section> 
<section id="H843BAAA4381A472EB86E4F4027587632"><enum>103.</enum><header>Enforcement by the Federal Trade Commission</header><text display-inline="no-display-inline">A violation of section 101 shall be treated as a violation of a rule defining an unfair or deceptive act or practice prescribed under section 18(a)(1)(B) of the Federal Trade Commission Act (<external-xref legal-doc="usc" parsable-cite="usc/15/57a">15 U.S.C. 57a(a)(1)(B)</external-xref>). The Federal Trade Commission shall enforce this title in the same manner, by the same means, and with the same jurisdiction as though all applicable terms and provisions of the Federal Trade Commission Act were incorporated into and made a part of this title.</text></section> 
<section id="HC107B033802A4DFBBAE6413E3620EA73"><enum>104.</enum><header>Definitions</header><text display-inline="no-display-inline">As used in this title—</text> 
<paragraph id="HC96814E258544EAB926BC49528CCDBD8"><enum>(1)</enum><text>the term <term>customer proprietary network information</term> has the meaning given such term in section 222(j)(1) of the Communications Act of 1934 (<external-xref legal-doc="usc" parsable-cite="usc/47/222">47 U.S.C. 222(j)(1)</external-xref>) (as redesignated by section 203 of this Act);</text></paragraph> 
<paragraph id="H0181FD231E0C4A578ED13300117381D3"><enum>(2)</enum><text display-inline="yes-display-inline">the term <term>telecommunications carrier</term>—</text> 
<subparagraph id="H615708EC09194877B5426B09AA447476"><enum>(A)</enum><text>has the meaning given such term in section 3(44) of the Communications Act of 1934 (<external-xref legal-doc="usc" parsable-cite="usc/47/153">47 U.S.C. 153(44)</external-xref>); and</text></subparagraph> 
<subparagraph id="HEAB82383C36E47B0A1278E5D63ED19CF"><enum>(B)</enum><text display-inline="yes-display-inline">includes any provider of real-time Internet protocol-enabled voice communications; and</text></subparagraph></paragraph> 
<paragraph id="HEC2052312990414F00186000CB41D57C"><enum>(3)</enum><text display-inline="yes-display-inline">the term <term>real-time Internet protocol-enabled voice communications</term> means any service that is treated by the Federal Communications Commission as a telecommunications service provided by a telecommunications carrier for purposes of section 222 of the Communications Act of 1934 (<external-xref legal-doc="usc" parsable-cite="usc/47/222">47 U.S.C. 222</external-xref>) under regulations promulgated pursuant to subsection (h) of such section.</text></paragraph></section></title> 
<title id="H4BEDBBDE309241EA887EC1894E211DB"><enum>II</enum><header>Federal Communications Commission Provisions</header> 
<section id="HC3D91D52F4494A94BF8D954D8E3D54A4"><enum>201.</enum><header>Findings</header><text display-inline="no-display-inline">The Congress finds the following:</text> 
<paragraph id="H2A0AED8BEE884F7489566530C8215CCD"><enum>(1)</enum><text display-inline="yes-display-inline">As our Nation’s communications networks become more ubiquitous and increasingly sophisticated, more individuals and industries will be using such networks in greater amounts to communicate and conduct commercial transactions.</text></paragraph> 
<paragraph id="HEBE66987785F4B66007F1BD2AADB53D7"><enum>(2)</enum><text>The ease of gathering and compiling sensitive personal information as a result of such communications is becoming more efficient and commonplace due to advances in digital technology and the widespread use of the Internet.</text></paragraph> 
<paragraph id="H3E3A299BC06E494B99626C81865E00D5"><enum>(3)</enum><text>Ensuring the privacy of sensitive individual telephone calling records, both wireline and wireless, is of utmost importance. The information gathered and retained by communications providers can convey details about intimate aspects of an individual’s life, including who they call, when they call, the duration of such calls, the frequency of their communications, information about their purchases, informational inquiries, political or religious interests, or other affiliations.</text></paragraph> 
<paragraph id="H6D1E23A569C14EA98512937039CD617D"><enum>(4)</enum><text>Disclosure of personal telephone records can also lead to harassment, intimidation, physical harm, and identity theft.</text></paragraph> 
<paragraph id="H4877315BC77D47C4A479F788D2A4E4A8"><enum>(5)</enum><text>The government has a compelling interest in protecting sensitive personal information contained in customer telephone records and ensuring that commercial interests adequately protect such records in order to preserve individual freedom, safeguard personal privacy, and ensure trust in electronic commerce.</text></paragraph> 
<paragraph id="H143DA86141CB494AA27BA501F6E000D1"><enum>(6)</enum><text>Because customers have a proprietary interest in their sensitive personal information, customers should have some control over the use and disclosure of telephone calling records.</text></paragraph> 
<paragraph id="H9AB02E12250047F2AFF39F104BF2DE82"><enum>(7)</enum><text>A telecommunications carrier may use aggregated data it has obtained from its customer databases to improve services, solicit new business, or market additional services to its customers.</text></paragraph> 
<paragraph id="H557FA47A38B041459126A8A5A32C3DC7"><enum>(8)</enum><text>A telecommunications carrier may communicate to all consumers in order to broadly solicit new business, and may also target specific communications to its own existing customers, without use or disclosure of detailed customer calling records and thus without the threat of compromising customer privacy.</text></paragraph> 
<paragraph id="H893F658B480B4F3C91FF72EE046F57E4"><enum>(9)</enum><text>The risk of compromising customer privacy is raised and increased whenever additional entities or persons are permitted use of, or access to, or receive disclosure of, customer calling records beyond the carrier with which the customer has an established business relationship.</text></paragraph> 
<paragraph id="HC2A6FC6E64D54E448E51BBDAF7501214"><enum>(10)</enum><text>A telecommunications carrier which obtains or possesses a customer’s calling records has a duty to safeguard the confidentiality of such customer's personal information. Detailed customer calling records describing the customer’s use of telecommunications services should not be publicly available or offered for commercial sale.</text></paragraph></section> 
<section id="HC02F003F0ED34F9BAF78C291BA9DD03"><enum>202.</enum><header>Expanded protection for detailed customer records</header> 
<subsection id="HB53C7126091049EC8D8F92694755C2A9"><enum>(a)</enum><header>Confidentiality of Customer Information</header><text display-inline="yes-display-inline">Paragraph (1) of section 222(c) of the Communications Act of 1934 (<external-xref legal-doc="usc" parsable-cite="usc/47/222">47 U.S.C. 222(c)(1)</external-xref>) is amended to read as follows:</text> 
<quoted-block style="OLC" id="H2A8627019B8443C497BD2687582B3CB3" display-inline="no-display-inline"> 
<paragraph id="H40E3E55D12E54724A120DFAF8D56AEF2"><enum>(1)</enum><header>Privacy requirements for telecommunications carriers</header> 
<subparagraph id="HBF95A2D2B11A4342BC87B344D1459454"><enum>(A)</enum><header>In general</header><text display-inline="yes-display-inline">Except as required by law or as permitted under the following provisions of this paragraph, a telecommunications carrier that receives or obtains individually identifiable customer proprietary network information (including detailed customer telephone records) by virtue of its provision of a telecommunications service shall only use, disclose, or permit access to such information or records in the provision by such carrier of—</text> 
<clause id="H12EBC603E6854F07A775FA1181089169"><enum>(i)</enum><text>the telecommunications service from which such information is derived; or</text></clause> 
<clause id="HE5D1E460C2B84ED0B99CE720A64C58B5"><enum>(ii)</enum><text>services necessary to, or used in, the provision of such telecommunications service, including the publishing of directories.</text></clause></subparagraph> 
<subparagraph id="H347FF5C231FC4B8097850074E2A8919D"><enum>(B)</enum><header>Requirements for disclosure of detailed information</header><text display-inline="yes-display-inline">A telecommunications carrier may only use detailed customer telephone records through, or disclose such records to, or permit access to such records by, a joint venture partner, independent contractor, or any other third party (other than an affiliate) if the customer has given express prior authorization for that use, disclosure, or access, and that authorization has not been withdrawn.</text></subparagraph> 
<subparagraph id="H4600E15365574D5E9623BB82EC67E91"><enum>(C)</enum><header>Requirements for affiliate use of both general and detailed information</header><text display-inline="yes-display-inline">A telecommunications carrier may not, except with the approval of a customer, use individually identifiable customer proprietary network information (including detailed customer telephone records) through, or disclose such information or records to, or permit access to such information or records by, an affiliate of such carrier in the provision by such affiliate of the services described in clause (i) or (ii) of <internal-xref idref="HBF95A2D2B11A4342BC87B344D1459454" legis-path="(1)(A)">subparagraph (A)</internal-xref>.</text></subparagraph> 
<subparagraph id="H9358B3A24B9440CBB400CA1D948358E"><enum>(D)</enum><header>Requirements for partner and contractor use of general information</header><text display-inline="yes-display-inline">A telecommunications carrier may not, except with the approval of the customer, use individually identifiable customer proprietary network information (other than detailed customer telephone records) through, or disclose such information to, or permit access to such information by, a joint venture partner or independent contractor in the provision by such partner or contractor of the services described in clause (i) or (ii) of <internal-xref idref="HBF95A2D2B11A4342BC87B344D1459454" legis-path="(1)(A)">subparagraph (A).</internal-xref></text></subparagraph> 
<subparagraph id="HFB9877251F2E4ED2830522179F8705FC"><enum>(E)</enum><header>Access to wireless telephone numbers</header><text display-inline="yes-display-inline">A telecommunications carrier may not, except with prior express authorization from the customer, disclose the wireless telephone number of any customer or permit access to the wireless telephone number of any customer.</text></subparagraph></paragraph><after-quoted-block>.</after-quoted-block></quoted-block></subsection> 
<subsection id="H7B9954419B624EB09D8346BCA165D1DA"><enum>(b)</enum><header>Disclosure of detailed information on request by customer</header><text>Section 222(c)(2) of such Act is amended by inserting <quote>(including a detailed customer telephone record)</quote> after <quote>customer proprietary network information</quote>.</text></subsection> 
<subsection id="H5081BAB812DA49FBA7F50804D26C3B8E"><enum>(c)</enum><header>Aggregate data</header><text>Section 222(c)(3) of such Act is amended by adding at the end the following new sentence: <quote>Aggregation of data that is conducted by a third party may be treated for purposes of this subsection as aggregation by the carrier if such aggregation is conducted in a secure manner under the control or supervision of the carrier.</quote>. </text></subsection> 
<subsection id="HF57C527F719840DBA878E1B1ED1F51D"><enum>(d)</enum><header>Prohibition of sale of general or detailed information</header><text>Section 222(c) of such Act is further amended by adding at the end the following new paragraph:</text> 
<quoted-block style="OLC" id="H80060B79E9CF4F6DB4B8CA46DF555A7" display-inline="no-display-inline"> 
<paragraph id="HDB9DC952602A4DB3A8983F233FD6D7B2"><enum>(4)</enum><header>Prohibition of sale of general or detailed information</header><text display-inline="yes-display-inline">Except for the purposes for which use, disclosure, or access is permitted under subsection (d), it shall be unlawful for any person to sell, rent, lease, or otherwise make available for remuneration or other consideration the customer proprietary network information (including the detailed customer telephone records) of any customer.</text></paragraph><after-quoted-block>.</after-quoted-block></quoted-block></subsection> 
<subsection id="H45151955F8F441559F843919F2C7BB3C"><enum>(e)</enum><header>Exceptions to limitations on disclosures of detailed information</header><text display-inline="yes-display-inline">Section 222(d) of such Act is amended—</text> 
<paragraph id="H0B276AA6DBB648E3A1E2B26083478230"><enum>(1)</enum><text>by striking <quote>its agents</quote> and inserting <quote>its joint venture partners, contractors, or agents</quote>; and </text></paragraph> 
<paragraph id="H2966FB6B696E4243AB9E00FA565551B1"><enum>(2)</enum><text display-inline="yes-display-inline">in paragraph (1), by inserting after <quote>telecommunications services</quote> the following: <quote>, or provide customer service with respect to telecommunications services to which the customer subscribes</quote>. </text></paragraph></subsection></section> 
<section id="H95245A187D6B4727AA0079131350564C"><enum>203.</enum><header>Prevention by telecommunications carriers of fraudulent access to phone records</header><text display-inline="no-display-inline">Section 222 of the Communications Act of 1934 (<external-xref legal-doc="usc" parsable-cite="usc/47/222">47 U.S.C. 222</external-xref>) is further amended—</text> 
<paragraph id="H449C7A95F2FA41A4A052D46CD7A786D7"><enum>(1)</enum><text>by redesignating subsection (h) as subsection (j);</text></paragraph> 
<paragraph id="HBC279217FC464E2BB68DBDE93102406D"><enum>(2)</enum><text>by inserting after subsection (g) the following new subsections:</text> 
<quoted-block style="OLC" id="H35E0A88AEEC94FBDAD53F712211E6CEE" display-inline="no-display-inline"> 
<subsection id="H558758A0C9B64A2D9BB1A08327A83668"><enum>(h)</enum><header>Prevention of fraudulent access to phone records</header> 
<paragraph id="H1AAEFE31DEAE42D795377D4D95BCFFF"><enum>(1)</enum><header>Regulations</header><text display-inline="yes-display-inline">Within 180 days after the date of enactment of the <short-title>Prevention of Fraudulent Access to Phone Records Act</short-title>, the Commission shall prescribe regulations adopting more stringent security standards for customer proprietary network information (including detailed customer telephone records) to detect and prevent violations of this section. The Commission—</text> 
<subparagraph id="HF159A9D62E8E4A4E92A024002DAEE0AD"><enum>(A)</enum><text>shall prescribe regulations—</text> 
<clause id="HBB403D4FCB7D46138872DDA11CFD190"><enum>(i)</enum><text display-inline="yes-display-inline">to require timely notice (written or electronic) to each customer upon breach of the regulations under this section with respect to customer proprietary network information relating to that customer;</text></clause> 
<clause id="HDBB66F9DFC264D2B93DA484E22F094AB"><enum>(ii)</enum><text>to require timely notice to the Commission upon breach of the regulations under this section with respect to customer proprietary network information relating to any customer;</text></clause> 
<clause id="HA4CD338FA43E40079E3205D1A8034119"><enum>(iii)</enum><text display-inline="yes-display-inline">to require periodic audits by the Commission of telecommunication carriers and their agents to determine compliance with this section;</text></clause> 
<clause id="HA5918D14CEB94B5490A8601B15BA5200" display-inline="no-display-inline"><enum>(iv)</enum><text>to require telecommunications carriers and their agents to maintain records—</text> 
<subclause id="H3A456C518CC14966B761A1B400DBF92C"><enum>(I)</enum><text>of each time customer proprietary network information is requested or accessed by, or disclosed to, a person purporting to be the customer or to be acting at the request or direction of the customer; and</text></subclause> 
<subclause id="HE05BFF7C9A9145FEB99DEBD1E4104800"><enum>(II)</enum><text>if such access or disclosure was granted to such a person, of how the person’s identity or authority was verified;</text></subclause></clause> 
<clause id="HB536B177A5714423A1A7078866E6FBE2"><enum>(v)</enum><text display-inline="yes-display-inline">to require telecommunications carriers to establish a security policy that includes appropriate standards relating to administrative, technical, and physical safeguards to ensure the security and confidentiality of customer proprietary network information;</text></clause> 
<clause id="H9962827F82D14BD88052FF914600C31C"><enum>(vi)</enum><text display-inline="yes-display-inline">to prohibit any telecommunications carrier from obtaining or attempting to obtain, or causing to be disclosed or attempting to cause to be disclosed to that carrier or its agent or employee, customer proprietary network information relating to any customer of another carrier—</text> 
<subclause id="HEFCF8D291D784DD0AEBBD866B504408B"><enum>(I)</enum><text>by using a false, fictitious, or fraudulent statement or representation to an officer, employee, or agent of another telecommunications carrier; or</text></subclause> 
<subclause id="HA779A5F8D77449BD86570056856C8800"><enum>(II)</enum><text>by making a false, fictitious, or fraudulent statement or representation to a customer of another telecommunications carrier; and</text></subclause></clause> 
<clause id="H6797D9283F4D4142A6B3B0EA2E3ED77F" commented="no"><enum>(vii)</enum><text display-inline="yes-display-inline">only for the purposes of this section, to treat as a telecommunications service provided by a telecommunications carrier any real-time Internet protocol-enabled voice communications offered by any person to the public, or such classes of users as to be effectively available to the public, that allows a user to originate traffic to, or terminate traffic from, the public switched telephone network; and</text></clause></subparagraph> 
<subparagraph id="HEA8597D3D3DA49DA97F6CD3DC8739152"><enum>(B)</enum><text>shall consider prescribing regulations—</text> 
<clause id="H9F0F92F4D4E34912AF90B7B45EAEAE00"><enum>(i)</enum><text>to require telecommunications carriers to institute customer-specific identifiers in order to access customer proprietary network information; </text></clause> 
<clause id="H5A5ABB86F74D451AA44FFCA4D82FE100"><enum>(ii)</enum><text display-inline="yes-display-inline">to require encryption of customer proprietary network information data or other safeguards to better secure such data; and</text></clause> 
<clause id="H2B57ED2414FF4974A0F64DA3DA4B0BE"><enum>(iii)</enum><text display-inline="yes-display-inline">to require deletion of customer proprietary network information data after a reasonable period of time if such data is no longer necessary for the purpose for which it was collected or for the purpose of an exception contained in section (d), and there are no pending requests for access to such information.</text></clause></subparagraph></paragraph> 
<paragraph id="H4D57714686214BB280D3E600E8E7963C"><enum>(2)</enum><header>Reports</header> 
<subparagraph id="H69207941DCF146F8005096CA81AEAAE1"><enum>(A)</enum><header>Assessment and recommendations</header><text display-inline="yes-display-inline">Within 12 months after the date on which the Commission’s regulations under <internal-xref idref="H1AAEFE31DEAE42D795377D4D95BCFFF" legis-path="(h)(1)">paragraph (1)</internal-xref> are prescribed, and again not later than 3 years later, the Commission shall submit to the Committee on Energy and Commerce of the House of Representatives and the Committee on Commerce, Science, and Transportation of the Senate a report containing—</text> 
<clause id="H000866C202384624BCCCA3B4CF4F3CCC"><enum>(i)</enum><text>an assessment of the efficacy and adequacy of the regulations and remedies provided in accordance with this subsection in protecting customer proprietary network information;</text></clause> 
<clause id="H1504D431DB074EA39351AAF4C70633F"><enum>(ii)</enum><text display-inline="yes-display-inline">an assessment of the efficacy and adequacy of telecommunications carriers' safeguards to secure such data, security plans, and notification procedures; and</text></clause> 
<clause id="H13F763E56CD84812A2DE64CB20000EC"><enum>(iii)</enum><text display-inline="yes-display-inline">any recommendations for additional legislative or regulatory action to address threats to the privacy of customer information.</text></clause></subparagraph> 
<subparagraph id="HB5079655DA514349B908E3F7671E308F"><enum>(B)</enum><header>Annual Report</header><text>The Federal Communications Commission shall submit to Congress an annual report containing—</text> 
<clause id="H8CA20CF03A084888BAB68470A15E7FC6"><enum>(i)</enum><text>the number and disposition of all enforcement actions taken pursuant to this subsection; and</text></clause> 
<clause id="H6C7E5B85D4FD4ECFB3001F6723987F81"><enum>(ii)</enum><text display-inline="yes-display-inline">the number and type of notifications received under <internal-xref idref="HDBB66F9DFC264D2B93DA484E22F094AB" legis-path="(h)(1)(A)(ii)">paragraph (1)(A)(ii)</internal-xref> and the methodology, including the basis for the selection of carriers to be audited, and the results of each audit conducted under <internal-xref idref="HA4CD338FA43E40079E3205D1A8034119" legis-path="(h)(1)(A)(iii)">paragraph (1)(A)(iii)</internal-xref>.</text></clause></subparagraph></paragraph> 
<paragraph id="H39411C783EE14EB88BB9F6A05B304E57"><enum>(3)</enum><header>Dual regulation prohibited</header><text display-inline="yes-display-inline">Any person that is treated as a telecommunications carrier providing a telecommunications service with respect to the offering of real-time Internet protocol-enabled voice communications by the regulations prescribed under <internal-xref idref="H6797D9283F4D4142A6B3B0EA2E3ED77F" legis-path="(h)(1)(A)(vii)">paragraph (1)(A)(vii)</internal-xref> shall not be subject to the provisions of section 631 with respect to the offering of such communications.</text></paragraph></subsection> 
<subsection id="HA04EB8C52FE245899FEE315DACF08784" display-inline="no-display-inline"><enum>(i)</enum><header>Forfeiture penalties</header> 
<paragraph id="H5325380C51D6459094C790DD00745B06"><enum>(1)</enum><header>Increased penalties</header><text>In any case in which the violator is determined by the Commission under section 503(b)(1) to have violated this section or the regulations thereunder, section 503(b)(2)(B) shall be applied—</text> 
<subparagraph id="H61022853823B4F878CCA19E4561F4877"><enum>(A)</enum><text>by substituting <quote>$300,000</quote> for <quote>$100,000</quote>; and</text></subparagraph> 
<subparagraph id="H3EE14A13EB8F4AC19565DD85BC1BD51"><enum>(B)</enum><text>by substituting <quote>$3,000,000</quote> for <quote>$1,000,000</quote>.</text></subparagraph></paragraph> 
<paragraph id="H0CA39D4A99D24535B97CBF57AA761412" display-inline="no-display-inline"><enum>(2)</enum><header>No first warnings</header><text>Paragraph (5) of section 503(b) shall not apply to the determination of forfeiture liability under such section with respect to a violation of this section or the regulations thereunder by any telecommunications carrier or any agent of such a carrier.</text></paragraph></subsection><after-quoted-block>; and</after-quoted-block></quoted-block></paragraph> 
<paragraph id="H9DAF53697E6946E2A4CC60A9144BED8F"><enum>(3)</enum><text>in subsection (g), by striking <quote>subsection (i)(3)(A)</quote> and inserting <quote>subsection (j)(3)(A)</quote>. </text></paragraph></section> 
<section id="H02E6AF96913D4153B9473E47A700151D"><enum>204.</enum><header>Definitions</header><text display-inline="no-display-inline">Subsection (j) of section 222 of the Communications Act of 1934 (<external-xref legal-doc="usc" parsable-cite="usc/47/222">47 U.S.C. 222(j)</external-xref>), as redesignated by section 203(1) of this Act, is amended by adding at the end the following new paragraphs:</text> 
<quoted-block style="OLC" id="HA13E27187653499B9DC16CE4911BA6F" display-inline="no-display-inline"> 
<paragraph id="HF9879F5459624955A7E6545196A973FA"><enum>(8)</enum><header>Detailed customer telephone record</header><text display-inline="yes-display-inline">The term <term>detailed customer telephone record</term> means customer proprietary network information that contains the specific and detailed destinations, locations, duration, time, and date of telecommunications to or from a customer, as typically contained in the bills for such service. Such term does not mean aggregate data or subscriber list information.</text></paragraph> 
<paragraph id="H0AEC6209332C4AA48DE876DE4D230459"><enum>(9)</enum><header>Wireless telephone number</header><text>The term <term>wireless telephone number</term> means the telephone number of a subscriber to a commercial mobile service.</text></paragraph><after-quoted-block>.</after-quoted-block></quoted-block></section></title> 
</legis-body> 
<endorsement display="yes"> 
<action-date date="20060316">March 16, 2006</action-date> 
<action-desc>Committed to the Committee of the Whole House on the State of the Union and ordered to be printed</action-desc></endorsement> 
</bill> 


