Authentication and authorisation in the Union Registry
Article 64
1. The central administrator shall ensure that national administrators and each authorised representative are assigned credentials to authenticate them for the purposes of accessing the Union Registry. 2. An authorised representative shall only have access to accounts in the Union Registry for which he is authorised and shall only be able to request the initiation of processes for which he is authorised pursuant to Article 21. That access or request shall take place through a secure area of the website of the Union Registry. 3. In addition to the credentials referred to in paragraph 1, an authorised representative shall use secondary authentication to access the Union Registry, having regard to the types of secondary authentication mechanisms set out in the data exchange and technical specifications provided for in Article 75. 4. The administrator of an account may assume that a user who was successfully authenticated by the Union Registry is the authorised representative registered under the provided authentication credentials, unless the authorised representative informs the administrator of the account that the security of his credentials has been compromised and requests a replacement of his credentials. 5. The authorised representative shall take all necessary measures to prevent the loss, theft or compromise of its credentials. The authorised representative shall immediately report to the national administrator the loss, theft or compromise of its credentials.