(1) To contribute to the security, stability and resilience of the Domain Name System, Top Level Domain Name Registries and domain name registry service providers must collect and maintain accurate and complete domain name registration data in their own database, with the diligence required.
(2) The database must contain the particulars necessary to identify and contact the holders of the domain names and the points of contact administering the domain names within the framework of the TLD. Those particulars must comprise: 1. the domain name; 2. the date of registration; 3. the domain holder's name, e-mail address and telephone number; 4. the contact e-mail address and telephone number of the point of contact administering the domain name, where these differ from those of the domain holder.
(3) Top Level Domain Name Registries and domain name registry service providers must maintain requirements and procedures, including verification procedures, ensuring that the database contains accurate and complete particulars. They must make these requirements and procedures publicly accessible by 6 March 2026.
(4) Top Level Domain Name Registries and domain name registry service providers must make the non-personal domain name registration data publicly accessible without delay after registration of a domain name.
(5) The BSI may review compliance with the requirements.
Home› Cybersecurity & IT Security› BSIG-EN
Part 4 · Domain Name Registration Data Databases › Section 49
Obligation to maintain a database
←→ also move between sections