Md. Code Regs. 31.16.08.16

Current through Register Vol. 51, No. 24, December 2, 2024
Section 31.16.08.16 - Other Exceptions to Notice and Opt Out Requirements for Disclosure of Nonpublic Personal Financial Information
A. The requirements for initial notice to consumers in Regulation .05A(2) of this chapter, the opt out in Regulations .08 and .11 of this chapter, and service providers and joint marketing in Regulation .14 of this chapter do not apply when a licensee discloses nonpublic personal financial information:
(1) With the consent or at the direction of the consumer, if the consumer has not revoked the consent or direction;
(2) To protect the confidentiality or security of a licensee's records pertaining to the consumer, service, product, or transaction;
(3) To protect against or prevent actual or potential fraud or unauthorized transactions;
(4) For required institutional risk control or for resolving consumer disputes or inquiries;
(5) To persons holding a legal or beneficial interest relating to the consumer;
(6) To persons acting in a fiduciary or representative capacity on behalf of the consumer;
(7) To provide information to:
(a) Insurance rate advisory organizations;
(b) Guaranty funds or agencies that are rating a licensee;
(c) Persons that are assessing the licensee's compliance with industry standards; and
(d) The licensee's attorneys, accountants, and auditors;
(8) To the extent specifically permitted or required under other provisions of law and in accordance with the federal Right to Financial Privacy Act of 1978 (12 U.S.C. § 3401 et seq.), to law enforcement agencies (including the Federal Reserve Board, Office of the Comptroller of the Currency, Federal Deposit Insurance Corporation, Office of Thrift Supervision, National Credit Union Administration, the Securities and Exchange Commission, the Secretary of the Treasury, with respect to 31 U.S.C. Chapter 53, Subchapter II (Records and Reports on Monetary Instruments and Transactions) and 12 U.S.C. Chapter 21 (Financial Recordkeeping), a state insurance authority, and the Federal Trade Commission), self-regulatory organizations, or for an investigation on a matter related to public safety;
(9) To a consumer reporting agency in accordance with the federal Fair Credit Reporting Act, 15 U.S.C. § 1681 et seq.;
(10) From a consumer report reported by a consumer reporting agency;
(11) In connection with a proposed or actual sale, merger, transfer, or exchange of all or a portion of a business or operating unit if the disclosure of nonpublic personal financial information concerns solely consumers of the business or unit;
(12) To comply with federal, state, or local laws, rules, and other applicable legal requirements;
(13) To comply with a properly authorized civil, criminal, or regulatory investigation, or subpoena or summons by federal, state, or local authorities;
(14) To respond to judicial process or government regulatory authorities having jurisdiction over a licensee for examination, compliance, or other purposes as authorized by law; or
(15) For purposes related to the replacement of a group benefit plan, a group health plan, a group welfare plan, or a workers' compensation plan.
B. A consumer may revoke consent by subsequently exercising the right to opt out of future disclosures of nonpublic personal information as permitted under Regulation .08F of this chapter.
C. The Commissioner may exempt a licensee from any of the notice requirements of this chapter if:
(1) The licensee is in liquidation or receivership; and
(2) The notice requirements could:
(a) Negatively impact the ability of the liquidator or receiver to pay claims; and
(b) Impose a financial burden on the licensee in liquidation or receivership.

Md. Code Regs. 31.16.08.16