Online bond platforms may offer overseas-regulated products and tax-specific bonds subject to disclosures, compliance safeguards and revised complianc...
Corporate guarantee valuation permits actual ascertainable commission while barring retroactive application and extended-period penalties for bona fid...
Proper-officer jurisdiction under UPGST penalty provisions upheld; participation on merits prevents bypassing the statutory appellate remedy through w...
Transitioned CENVAT credit may validly satisfy mandatory pre-deposit requirements for legacy service tax appeals through Electronic Credit Ledger debi...
Building-plan sanction charges require statutory authority; unauthorised fees and GST were quashed, while labour cess must follow prescribed collectio...
Pure-agent exclusion fails where hotel booking facilitators receive third-party services themselves, making entire customer consideration taxable as r...
ICEGATE, ECCS and the ACES-GST portal, together with their databases and dependencies, are treated as protected systems, so access is limited to persons authorised in writing. The order requires exclusive personal control of user IDs, passwords and second factors; prohibits writing, storing or transmitting credentials insecurely; bans sharing of passwords and OTPs with anyone, including support staff or vendors; and requires immediate reporting of any request or suspected compromise. Passwords must be changed every ninety days and on disclosure risk, transfer or return from leave, while workstations must not remain logged in unattended. Breach may attract action under the Information Technology Act, BNS, Customs Act and service conduct rules.
ICEGATE, ECCS and the ACES-GST portal, together with their databases and dependencies, are treated as protected systems, so access is limited to persons authorised in writing. The order requires exclusive personal control of user IDs, passwords and second factors; prohibits writing, storing or transmitting credentials insecurely; bans sharing of passwords and OTPs with anyone, including support staff or vendors; and requires immediate reporting of any request or suspected compromise. Passwords must be changed every ninety days and on disclosure risk, transfer or return from leave, while workstations must not remain logged in unattended. Breach may attract action under the Information Technology Act, BNS, Customs Act and service conduct rules.
Note: It is a system-generated summary and is for quick reference only.