Criminal Code Section 230, Unauthorized Access to a Computer System
Zakon c. 40/2009 Sb., trestni zakonik, Sec. 230
A citation is an address, not a summary. The first part names the law; what follows narrows it to the exact section, article or paragraph.
In force.
A computer misuse rule binding public and private bodies.
As of 6 September 2026.
What it requires
- Do not overcome a security measure to gain access to a computer system or part of it in Czechia, and do not use, delete, alter, forge, insert or transmit data, or otherwise interfere with a computer system's software or hardware, without authorization.
If you get it wrong
Criminal exposureYes
Criminal exposure note
Trestni zakonik Sec. 230(1): up to two years' imprisonment, a ban on activity, or forfeiture of property for overcoming a security measure to gain unauthorized access to a computer system or part of it. Sec. 230(2): up to three years for unauthorized use, deletion, destruction, damage, alteration, suppression or degradation of data, forging or altering data to pass as genuine, or unauthorized insertion or transmission of data or interference with a computer system's software, hardware or other technical equipment. Sec. 230(3): six months to four years where the Sec. 230(1) or (2) act is committed with intent to cause damage or another harm, to obtain an unauthorized benefit, or to restrict a computer system's functionality. Sec. 230(4): one to five years for an organized-group offence, significant damage, an attack on a computer system whose disruption would seriously affect the functioning of the state, public health, safety, the economy or the population's basic needs, a significant benefit, or serious disruption to a business. Sec. 230(5): three to eight years for large-scale damage or a large-scale benefit.
What it reaches
Obligation class
Access restriction
What this law does
Drafted with AI from the cited sources under the direction of UnGovr staff. UnGovr holds editorial responsibility for this page.
Whoever overcomes a security measure and thereby gains unauthorized access to a computer system or part of it faces up to two years' imprisonment, a ban on activity, or forfeiture of property; authorization under Czech criminal law therefore turns on whether a technical security measure was circumvented, not merely on whether a website's terms of use were violated.
A separate paragraph reaches unauthorized use, deletion, alteration, forgery, insertion or transmission of data, or another interference with a computer system's software or hardware, carrying up to three years.
The penalty rises to six months to four years where the act is committed with intent to cause damage or gain an unauthorized benefit, or to restrict a computer system's functionality; to one to five years where committed by an organized group, causes significant damage, targets a computer system whose disruption would seriously affect the state, public health, safety, the economy, or the population's basic needs, secures a significant benefit, or seriously disrupts a business; and to three to eight years for large-scale damage or a large-scale benefit.
When LexLint raises it
crawls_web