2. Issue, deliver and store digital certificates in
accordance with the license issued therefor by the
Commission and the procedures specified in the
Regulations.
3. Use reliable means to issue, deliver and store
certificates, and take necessary measures to
protect said certificates from forgery, fraud and
damage, in accordance with the Regulations and
the license.
4. Create a database for certificates issued and store
said data and any modifications thereon,
including suspended and revoked certificates,
and grant continuous electronic access to such
data.
5. Maintain, along with his staff, the confidentiality
of information obtained in the course of business,
excluding information that certificate holders
permit – in written or electronic form- to be
published or disclosed, or as provided for by law.
6. Obtain applicant's personal information, directly
or indirectly, with the applicant's written consent.
7. Issue certificates containing data specified in the
Regulations in accordance with systems' security
and protection requirements and the digital
certification rules set by the Center.
8. Deliver, whenever his activities are ceased, all
information and documentation in his possession
to the Commission, to be disposed of in
accordance with provisions and standards
provided for in the Regulations.
Article (19):
A certification service provider may not ceased licensed
activities, assign licenses issued to him or merge with