AGENCY: Department of Government Operations. Division of Technology Services

SERIES: 30638
TITLE: Single Sign-On public user accounts (UtahID)
DATES: 2013-
ARRANGEMENT: Database.

DESCRIPTION: The records in this records series are collected, maintained and processed by the Department of Government Operations, Division of Technology Services (DTS) under the authority of Utah Code 63A-16-8, which requires DTS to create and administer a Single Sign-On (SSO) solution for use by governmental entities, persons and individuals to facilitate secure digital access to government services with a single centralized identity and authentication process that can be implemented by governmental entities.

SSO is an authentication method that enables users to securely authenticate with multiple applications and websites by using just one set of credentials.

When a user creates an account, they provide personal information that includes their name, username, password, and email address. The user may also choose to add an alternate email address, address, and phone number. These records include unique account identifiers, personal identifiers, sensitive information that if combined could be personally identifiable, contact information, authenticators, identification, authentication, authorization and system metadata used for the management of the account.

Accounts are required to be created and used by persons in order to access State of Utah online applications that facilitate digital government services.

Purpose and Use: The information in this record series will only be used for the purposes and uses specified in Utah Code 63A-16-8, 63A-16-214, 63A-16-205(1)(a)(i), 63A-16-205(1)(a)(iv), and other commonly purposes as necessary to fulfill the requirements of the? Code.

The data in this record series is not used for ads, marketing, sold to third parties, or authorized for use by third parties for any other purpose or use except for those identified in this record series or for security purposes.

Information in this record series may be shared with third parties in accordance with Utah Code 63G-2-206, including other governmental entities, contractors and/or private providers whose IT systems are authorized by the Division of Technology Services to utilize the UtahID single sign-on solution. Public users may be presented with authorization and consent options to allow or deny third party applications access ?to certain user information for the purposes of identification, authorization or other purposes as provided in the authorization notice.

RETENTION

Retain for 3 year(s) after final action

DISPOSITION

Destroy.

RETENTION AND DISPOSITION AUTHORIZATION

Retention and disposition for this series is proposed and has not yet been approved.

FORMAT MANAGEMENT

Computer data files: Retain in Office for 3 years after last successful login or until requested by account owner or as needed to reset and then delete.

APPRAISAL

Administrative

PRIMARY DESIGNATION

Exempt. Utah Code 63G-2-106 (2022)

SECONDARY DESIGNATION

Private. Utah Code 63G-2-302(1)(n) and (2)(d) (2023)

Protected. Utah Code 63G-2-305(12) and (51) (2023)