(30) Define sensitive personal information as per IT Act?


Answer: Rule 2(i) defines personal information as “information that relates to a natural person which either directly or indirectly, in combination with other information available or likely to be available with a body corporate, is capable of identifying such person.”
Rule 3 defines sensitive personal information as:

  •  Passwords
  • Financial information
  • Physical/physiological/mental health condition
  • Sexual orientation 
  •   Medical records and history; and 
  •   Biometric information