Amendment status not verified — confirm the current text below against the official source.
(1) Authentication transaction data shall be retained by the Authority for a period of 6 months, and thereafter archived for a period of five years. (2) Upon expiry of the period of five years specified in sub-regulation (1), the authentication transaction data shall be deleted except when such authentication transaction data are required to be maintained by a Court or in connection with any pending dispute.