Penal Code, Unauthorised Access to a Computer System
A citation is an address, not a summary. The first part names the law; what follows narrows it to the exact section, article or paragraph.
In force.
A computer misuse rule binding public and private bodies.
As of 12 September 2026.
What it requires
- Do not gain access to a computer system or part of it by breaching a protection measure or by another unauthorised method.
- Reading a public, unauthenticated page without defeating any access control has not itself been held to fall within this section.
If you get it wrong
Criminal exposureYes
Private right of actionNo
Criminal exposure note
A fine or imprisonment of up to two years, on conviction (§ 204).
What this law does
Drafted with AI from the cited sources under the direction of UnGovr staff. UnGovr holds editorial responsibility for this page.
Section 204 punishes, with a fine or imprisonment of up to two years, a person who gains access to a computer system or part of it by breaching a protection measure or by another unauthorised method. The provision sits in Chapter 21 (Protection of Information and the Exchange of Information), added to the Penal Code by the Act of 19 June 2009 No. 74.
Because the offence's trigger is breaching a protection measure, a scraper reading a public, unauthenticated page without defeating any access control falls outside a plain reading of the provision.
When LexLint raises it
crawls_webtrains_models
Read the law
Norwegian-language consolidated text of the Penal Code (straffeloven), WIPO Lex