SB0225 amends the Illinois State Records Act and Local Records Act to address how public records are handled when they are encrypted or stored in systems with automatic retention or deletion timers. The bill requires that if an agency creates a record in encrypted form, the encryption key must remain available for the entire retention period set by the State or Local Records Commission. It also requires agencies using digital storage systems with retention timers to set those timers so records are preserved for the full required retention period, including any time needed for the disposal process.
The bill further directs agencies to follow existing records-destruction and disposal rules when handling encrypted records or records subject to retention timers. It creates a new Class 4 felony for a person who, without lawful authority and with intent to defraud, encrypts a public record or sets a retention timer so the record is not retained for the full required period. In effect, the bill is aimed at preventing public records from becoming inaccessible or being deleted too early because of encryption or automated digital retention settings.
Impact
SB0225 would add new sections to both the State Records Act and the Local Records Act, creating explicit requirements for public agencies that use encryption or digital retention tools. It would affect state and local agencies, records officers, and any person who handles public records in systems capable of automatic deletion or retention controls. The bill also adds a criminal penalty provision, making certain intentional misuse of encryption or retention timers a Class 4 felony when done to defraud.
Sentiment
Based on the bill text and the absence of recorded committee testimony or votes, the available context suggests the bill is framed as a records-management and transparency measure rather than a controversial policy change. Its stated purpose is to preserve access to public records and prevent premature deletion or concealment. There is no documented opposition or support in the provided materials, so the overall sentiment cannot be measured from debate history, but the bill appears to be presented in a straightforward, administrative, and anti-fraud posture.
Contention
The main point of potential contention is the new criminal penalty for misuse of encryption or retention timers. That provision could raise concerns about how intent to defraud would be proven and whether the felony penalty could reach conduct involving technical errors or poor records-management practices, though the bill limits liability to actions taken without lawful authority and with fraudulent intent. Another possible issue is the operational burden on agencies and vendors that use encrypted storage or automated deletion features, since they would need to ensure retention settings and key management comply with records-retention schedules. No specific opposing or supporting viewpoints are included in the provided legislative history.