Chapter III Network Operation Security

Article 24

Permalink

Translation Notice

This is an unofficial English translation prepared for general informational purposes only. It does not constitute legal advice. In case of any discrepancy, the official Chinese text published by the competent authority shall prevail.

本文为非官方英文翻译,仅供一般信息参考,不构成法律意见。如与主管机关发布的中文正式文本不一致,以中文正式文本为准。

Chinese Original

第二十四条 网络产品、服务应当符合相关国家标准的强制性要求。网络产品、服务的提供者不得设置恶意程序;发现其网络产品、服务存在安全缺陷、漏洞等风险时,应当立即采取补救措施,按照规定及时告知用户并向有关主管部门报告。 网络产品、服务的提供者应当为其产品、服务持续提供安全维护;在规定或者当事人约定的期限内,不得终止提供安全维护。 网络产品、服务具有收集用户信息功能的,其提供者应当向用户明示并取得同意;涉及用户个人信息的,还应当遵守本法和有关法律、行政法规关于个人信息保护的规定。

Translation Status

Site reference translation is in editorial review for this article. The Chinese original above is the controlling official text; do not treat this status note as a translation.

Plain English Note

Site explanation only. Not part of the translation.

Article 24 is part of the CSL network operation security rules and should be read with MLPS and network operator compliance requirements.

  • personal information

Related rules: Network Data Security Regulation

Related standards: GB/T 22239; GB/T 25070

Source reference: CSL Article 24. Source authority: Cyberspace Administration of China publication; source text from the Standing Committee of the National People's Congress. Effective version: 2026-01-01 amended effective version. Amendment status: amended by 2025-10-28 amendment decision; current official text uses article-number gaps. Last verified: 2026-05-20. Last updated: 2026-05-20. Official source.

Source Reference

Official source

Last updated: 2026-05-20. Last verified: 2026-05-20. Independent reference only. Chinese text shall prevail.