Rectification of mistake remains limited to self-evident record errors, preventing merits review through miscellaneous applications and preserving fin...
Tender creditworthiness conditions may extend to de facto Promoter Directors, with post-participation challenges generally barred absent arbitrariness...
Corporate representation in PMLA summons proceedings permitted through an authorised signatory, subject to directors' continuing cooperation and atten...
Helicopter charter classification requires effective control analysis, while territorial performance, reasoned credit orders and wilful suppression de...
Specified fund definition expands PAN exemption eligibility for registered alternative investment funds and qualifying International Financial Service...
Tax exemption for specified legal-services authority income applies retrospectively, subject to non-commercial activity, unchanged income sources, and...
ICEGATE, ECCS and the ACES-GST portal, together with their databases and dependencies, are treated as protected systems, so access is limited to persons authorised in writing. The order requires exclusive personal control of user IDs, passwords and second factors; prohibits writing, storing or transmitting credentials insecurely; bans sharing of passwords and OTPs with anyone, including support staff or vendors; and requires immediate reporting of any request or suspected compromise. Passwords must be changed every ninety days and on disclosure risk, transfer or return from leave, while workstations must not remain logged in unattended. Breach may attract action under the Information Technology Act, BNS, Customs Act and service conduct rules.
ICEGATE, ECCS and the ACES-GST portal, together with their databases and dependencies, are treated as protected systems, so access is limited to persons authorised in writing. The order requires exclusive personal control of user IDs, passwords and second factors; prohibits writing, storing or transmitting credentials insecurely; bans sharing of passwords and OTPs with anyone, including support staff or vendors; and requires immediate reporting of any request or suspected compromise. Passwords must be changed every ninety days and on disclosure risk, transfer or return from leave, while workstations must not remain logged in unattended. Breach may attract action under the Information Technology Act, BNS, Customs Act and service conduct rules.
Note: It is a system-generated summary and is for quick reference only.