Skip to main content

Cyber Law and Regulation of Cyber Space

Code: TBD · Credits: 4 · Hours: 60 · Type: ELECTIVE

This elective grounds the technical practitioner in the legal framework that surrounds their work — both Nepal's domestic law and the international regimes they intersect with. Covers data protection, cybercrime, electronic transactions, evidence rules, and cross-border enforcement.

Key topics

  • Nepal: Electronic Transactions Act 2063, Privacy Act 2075, Penal Code 2074 cyber chapter, Constitutional Article 28.
  • Comparative analysis: GDPR (EU), CCPA/CPRA (California), DPDP Act 2023 (India).
  • Cybercrime treaties: Budapest Convention, AU Malabo Convention, UN Cybercrime Treaty draft.
  • Electronic evidence: Evidence Act 2031 in Nepal, chain of custody, expert testimony.
  • Cross-border data flow, MLAT process, EU adequacy / SCCs.
  • Intellectual property in software: copyright, patents (where applicable in Nepal), trade secret.
  • Regulator landscape: NRB IT directives, NTA, Cyber Bureau under Nepal Police.

Learning outcomes

By the end of this subject, a student should be able to:

  • Map a real-world incident to the applicable Nepali statute and identify reporting obligations.
  • Draft a privacy policy compliant with Privacy Act 2075 and GDPR essentials.
  • Explain the admissibility tests for electronic evidence in a Nepali court.
  • Advise on cross-border data transfer requirements for a Nepali fintech.

Further reading

  • Government of Nepal: Electronic Transactions Act 2063, Privacy Act 2075, Penal Code 2074.
  • Council of Europe, Convention on Cybercrime (Budapest).
  • EU Regulation 2016/679 (GDPR) full text.
  • Smedinghoff, Information Security Law.

Chapter notes

Detailed chapter-by-chapter notes for this subject are still being written. The topic outline above mirrors the published syllabus. If you'd like to help draft a chapter, see the contributing guide.

· min read