(xxvi) "rules" means rules made under this Act;
(xxvii) "seize" with respect to an information system or data includes taking possession of
such system or data or making and retaining a copy of the data;
(xxviii) "service provider" includes a person who,—
(a) acts as a service provider in relation to sending, receiving, storing, processing or
distribution of any electronic communication or the provision of other services in
relation to electronic communication through an information system;
(b) owns, possesses, operates, manages or controls a public switched network or
provides telecommunication services; or
(c) processes or stores data on behalf of such electronic communication service or users
of such service;
(xxix) "subscriber information" means any information held in any form by a service provider
relating to a subscriber other than traffic data;
(xxx) "traffic data" includes data relating to a communication indicating its origin, destination,
route, time, size, duration or type of service;
(xxxi) "unauthorized access" means access to an information system or data which is not
available for access by general public, without authorization or in violation of the terms
and conditions of the authorization;
(xxxii) “unauthorized interception” shall mean in relation to an information system or data,
any interception without authorization; and
(xxxiii) "unsolicited information" means the information which is sent for commercial and
marketing purposes against explicit rejection of the recipient and does not include
marketing authorized under the law.
(2) Unless the context provides otherwise, any other expression used in this Act or rules made
thereunder but not defined in this Act, shall have the same meanings assigned to the expressions in
the Pakistan Penal Code, 1860 (Act XLV of 1860), the Code of Criminal Procedure, 1898 (Act V of
1898) and the QanooneShahadat, 1984 (P.O.No.X of 1984), as the case may be.
Page 6 of 25