Digital Code, Book VI: Fraudulent Access to Information Systems
Loi n° 019/AN/23/9ème L portant Code Numérique, Livre Sixième, Arts. 555 à 559
A citation is an address, not a summary. The first part names the law; what follows narrows it to the exact section, article or paragraph.
In force 12 months, effective 18 September 2025.
A computer misuse rule binding public and private bodies.
As of 7 September 2026.
What it requires
- Do not access or attempt to access an information system, or a part of one, without authorization.
- Do not remain, or attempt to remain, within an information system after having fraudulently entered it.
- Do not introduce, or attempt to introduce, data into an information system without authorization.
- Reading a public, unauthenticated page without defeating an access control or a technical measure protecting the system is not on the face of these articles an offence.
If you get it wrong
Criminal exposureYes
Criminal exposure note
Fraudulent access or continued presence in an information system draws up to three years' imprisonment and a fine of up to 10,000,000 Djiboutian francs (Articles 555 and 556), rising to up to five years and a fine of up to 25,000,000 francs where it results in the deletion or modification of data (Article 557); fraudulently introducing data or disrupting a system's operation each separately draw up to five years' imprisonment and a fine of up to 25,000,000 francs (Articles 558 and 559).
Penalty structure
Graduated by offence: fraudulent access or continued presence in a system (Arts. 555, 556) caps at 10,000,000 francs and three years' imprisonment; aggravated access or continued presence that deletes or modifies data (Art. 557), fraudulent data introduction (Art. 558), and disrupting a system's operation (Art. 559) each cap at 25,000,000 francs and five years' imprisonment.
- Rule
- Fixed only
- As of
- 7 September 2026
- Currency
- DJF
- Fixed cap
- 25,000,000
Who enforces it
Enforcement body
Public prosecution (Ministère Public), under the ordinary Djiboutian criminal-procedure framework
What this law does
Drafted with AI from the cited sources under the direction of UnGovr staff. UnGovr holds editorial responsibility for this page.
Article 555 punishes anyone who has accessed or attempted to fraudulently access all or part of an information system with a maximum of three years' imprisonment and a maximum fine of 10,000,000 Djiboutian francs, or either penalty alone. Article 556 punishes fraudulently remaining, or attempting to remain, within all or part of a system after having entered it fraudulently, with the same maximum penalties.
Article 557 raises both offences to a maximum of five years' imprisonment and a maximum fine of 25,000,000 francs where the fraudulent access or continued presence results in the deletion or modification of data held in the system. Article 558 separately punishes fraudulently introducing, or attempting to introduce, data into an information system, with a maximum of five years' imprisonment and a maximum fine of 25,000,000 francs or either penalty alone.
Article 559 punishes disrupting, altering or falsifying, or attempting to disrupt, alter or falsify, the operation of an information system on the same terms as Article 558. Each offence is drafted around unauthorised access or interference with a system rather than around the reading of a page that requires no authorisation, so a scraper confined to public, unauthenticated pages is not on the face of these articles caught by them.
When LexLint raises it
crawls_webtrains_models