A new code of practice has outlined the obligations of Internet access service providers (IASP) to its customers which include, among others, protection of personal information and e-mails.

The Communications and Multimedia Consumer Forum (CFM) announced today that a 90-day period for public consultation from Jan 20 to Apr 19 would enable individuals and groups to give their feedback o­n the IASP code in writing.

CFM deputy chairperson K Chelvakumar said the final draft would be submitted to the Malaysian Communications and Multimedia Commission (MCMC) within three to six months after the consultation period ends.

"The code is o­nly binding o­n CFM members who joined the group o­n a voluntary basis," he said at a workshop in Kuala Lumpur.

The workshop was the fourth in an o­ngoing series of roadshows nationwide calling for the public to give their views o­n the IASP code.

CFM chairperson Dr Kiranjit Kaur said the body currently has 43 organisational members including the major IASPs Telekom Malaysia Bhd, Maxis Communications Bhd, Time dotCom Bhd and Digi Telecommunications Sdn Bhd.

ISAPs obligations

The 11-point IASP code , the second since the General Consumer Code which is now reviewed by the MCMC, provides guidelines o­n the IASPs' obligations to their customers.

One of the guidelines stated that IASPs would take reasonable steps to "notify subscribers of their policy o­n privacy upfront" and to "respect the privacy of customers' communications and treat e-mail as private content whether in transit or in storage".

The code added that IASPs should not get involved in performing surveillance and monitoring exchanges and activities o­n the Internet.

"IASP shall not track or cooperate with other parties in tracking information o­n an individual basis in seeking behavioral patterns of customers such as websites and homepages visited o­n the World Wide Web unless otherwise consented by the customer or allowed under the General Consumer Code."

However, Chelvakumar said the authorities would still have power to obtain such personal information from IASPs as provided under the Criminal Procedure Code for investigation purposes.

"The code runs parallel with existing laws, including the criminal laws," he said.

The code added that IASPs should not block traffic from other parts of the Internet unless "required by law or any government, regulatory or enforcement bodies, or in circumstances where it cannot be avoided".

Other guidelines include that o­nly those 18 and above could apply for Internet access accounts with some form of identification that could ascertain their age while those who are underaged must have the consent of their guardian.

Acknowledge complaints

The code also stated that IASPs would:

Acknowledge complaints from customers via e-mail within 24 hours and set up a help-line during office hours for customers to address their complaints.

Deal with complaints from customers regarding unsolicited mail originating within the IASP's network that promotes Internet sites containing or directing users to offensive material.

Comply with the quality of service standards determined by the authority and provide at least an e-mail account, access to the World Wide Web and authentication of password for access.

Ensure that all traffic is treated equally and no discrimination in traffic routing.

Implement security measures o­n their network and ensure availability of connection of its remote access server port.

Not send unsolicited commercial e-mail without prior business relationship or customer's consent.

Take reasonable steps to provide customers with information regarding spamming.

CFM was set up in February 2001 under the Communications and Multimedia Act 1998. The body is aimed mainly at developing codes to help the industry practise self-regulation.

Feedbacks o­n the IASP code can be sent to CFM through email or fax (03-78082088).