unified
UC-ACCESS-14 — Authorize public content and external information sharing
Actions permitted without identification or authentication are explicitly defined, documented, and limited to designated public functions. Information shared with external parties requires owner authorization consistent with classification and sharing agreements. Only trained, designated individuals may post content to publicly accessible systems, with pre-publication review and periodic checks to ensure no nonpublic information is exposed.
Record JSON · Open in map · Data retrieval guide
Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.
Attributes
- domain
- Access Control & Identity Management
- type
- preventive
- category
- administrative
Details
- unified_id
- UC-ACCESS-14
- title
- Authorize public content and external information sharing
- statement
- Actions permitted without identification or authentication are explicitly defined, documented, and limited to designated public functions. Information shared with external parties requires owner authorization consistent with classification and sharing agreements. Only trained, designated individuals may post content to publicly accessible systems, with pre-publication review and periodic checks to ensure no nonpublic information is exposed.
- domain
- Access Control & Identity Management
- control_type
- preventive
- control_category
- administrative
- members
- framework
- nist-800-53
- control_id
- AC-14
- coverage
- full
- relationship
- superset_of
- framework
- nist-800-53
- control_id
- AC-21
- coverage
- full
- relationship
- superset_of
- framework
- nist-800-53
- control_id
- AC-22
- coverage
- full
- relationship
- superset_of
- framework
- aiuc-1
- control_id
- B003
- coverage
- partial
- delta
- controlled public release of model, system-prompt, and architecture details so technical over-disclosure does not aid adversaries
- relationship
- intersects_with
- guidance
Source
No record-specific source URL is provided.
Connections
- UC-ACCESS-14 — Authorize public content and external information sharing maps_to AC-14 — Permitted Actions Without Identification or Authentication
- framework
- nist-800-53
- control_id
- AC-14
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- Regulatory Exam & External Audit Management oversees UC-ACCESS-14 — Authorize public content and external information sharing
- UC-ACCESS-14 — Authorize public content and external information sharing mitigates Phishing, spear-phishing and social engineering
- strength
- related
- rationale
- Pre-publication review preventing exposure of nonpublic information reduces reconnaissance data available for spear-phishing.
- UC-ACCESS-14 — Authorize public content and external information sharing mitigates AI endpoint abuse, scraping and model extraction
- strength
- related
- rationale
- Pre-publication review of technical details keeps system-prompt and architecture information from aiding extraction attempts.
- UC-ACCESS-14 — Authorize public content and external information sharing maps_to B003 — Manage public release of technical details
- framework
- aiuc-1
- control_id
- B003
- coverage
- partial
- delta
- controlled public release of model, system-prompt, and architecture details so technical over-disclosure does not aid adversaries
- relationship
- intersects_with
- source_version
- July 15, 2026 release (quarterly update cadence)
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-ACCESS-14 — Authorize public content and external information sharing maps_to AC-21 — Information Sharing
- framework
- nist-800-53
- control_id
- AC-21
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-ACCESS-14 — Authorize public content and external information sharing maps_to AC-22 — Publicly Accessible Content
- framework
- nist-800-53
- control_id
- AC-22
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-ACCESS-14 — Authorize public content and external information sharing mitigates Unauthorized use of equipment and unauthorized access escalation
- strength
- primary
- rationale
- Explicitly defining and limiting actions permitted without authentication to designated public functions prevents anonymous unauthorized use of system functions.
- Security Control Assessment & POA&M Remediation tests UC-ACCESS-14 — Authorize public content and external information sharing
- Public Content & External Sharing Authorization operates UC-ACCESS-14 — Authorize public content and external information sharing