Law / Norway

Penal Code, Unauthorised Access to a Computer System

Straffeloven (Penal Code), LOV-2005-05-20-28, kapittel 21 (Vern av informasjon og informasjonsutveksling), § 204

A citation is an address, not a summary. The first part names the law; what follows narrows it to the exact section, article or paragraph.

In force.

A computer misuse rule binding public and private bodies.

As of 12 September 2026.

What it requires

  • Do not gain access to a computer system or part of it by breaching a protection measure or by another unauthorised method.
  • Reading a public, unauthenticated page without defeating any access control has not itself been held to fall within this section.

If you get it wrong

Criminal exposureYes

Private right of actionNo

Criminal exposure note

A fine or imprisonment of up to two years, on conviction (§ 204).

What this law does

Drafted with AI from the cited sources under the direction of UnGovr staff. UnGovr holds editorial responsibility for this page.

Section 204 punishes, with a fine or imprisonment of up to two years, a person who gains access to a computer system or part of it by breaching a protection measure or by another unauthorised method. The provision sits in Chapter 21 (Protection of Information and the Exchange of Information), added to the Penal Code by the Act of 19 June 2009 No. 74.

Because the offence's trigger is breaching a protection measure, a scraper reading a public, unauthenticated page without defeating any access control falls outside a plain reading of the provision.

When LexLint raises it

  • crawls_web
  • trains_models

Read the law

Norwegian-language consolidated text of the Penal Code (straffeloven), WIPO Lex

Back to the example  ·  Lint your app