{"catalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","kind":"record","record":{"attributes":{"category":"technical","domain":"Access Control & Identity Management","type":"preventive"},"canonicalUrl":"https://controlsmap.com/?v=1&node=uc%3AUC-ACCESS-13","description":"An approved system-use notification is displayed before logon, stating monitoring, usage terms, and privacy expectations, and requiring acknowledgment where mandated. Upon successful logon, the system displays the date and time of the user's last logon, and failed attempts where supported, so users can detect unauthorized use of their accounts.","details":{"control_category":"technical","control_type":"preventive","domain":"Access Control & Identity Management","guidance":[],"members":[{"control_id":"AC-8","coverage":"full","framework":"nist-800-53","relationship":"superset_of"},{"control_id":"AC-9","coverage":"full","framework":"nist-800-53","relationship":"superset_of"}],"statement":"An approved system-use notification is displayed before logon, stating monitoring, usage terms, and privacy expectations, and requiring acknowledgment where mandated. Upon successful logon, the system displays the date and time of the user's last logon, and failed attempts where supported, so users can detect unauthorized use of their accounts.","title":"Notify users of system terms and previous logon activity","unified_id":"UC-ACCESS-13"},"id":"uc:UC-ACCESS-13","mapUrl":"https://controlsmap.com/?v=1&node=uc%3AUC-ACCESS-13","sourceIds":["nist-800-53"],"sourceUrl":null,"title":"UC-ACCESS-13 — Notify users of system terms and previous logon activity","type":"unified"},"relationships":[{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:16f7ac21edb56841a23f5338179ac780061e437f339c5ecd2b4e11d448770ba9","properties":{},"sourceDetailPath":"/data/v1/records/wf-c31-c58b2f38.json","sourceId":"wf:C31","targetDetailPath":"/data/v1/records/uc-uc-access-13-2ccf2dfa.json","targetId":"uc:UC-ACCESS-13","type":"operates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:4f236e65530118e2a272b9728c4b0848391cade0aa4d08cd8c92744fb7e9be33","properties":{"control_id":"AC-8","coverage":"full","delta":null,"framework":"nist-800-53","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"Rev. 5"},"sourceDetailPath":"/data/v1/records/uc-uc-access-13-2ccf2dfa.json","sourceId":"uc:UC-ACCESS-13","targetDetailPath":"/data/v1/records/ctrl-nist-800-53-ac-8-b786a4c5.json","targetId":"ctrl:nist-800-53:AC-8","type":"maps_to"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:63a433f0ea0cb45b0a6a2c9a414d48c64ccc7e708cbb10db6b255333f65c2ad7","properties":{},"sourceDetailPath":"/data/v1/records/wf-c9-75fb1752.json","sourceId":"wf:C9","targetDetailPath":"/data/v1/records/uc-uc-access-13-2ccf2dfa.json","targetId":"uc:UC-ACCESS-13","type":"tests"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:6566d7e2cf3e7bfc466f59790cf1cd58e3ae42460114f63f582b6933e56a53f4","properties":{"rationale":"Last-logon and failed-attempt display is a soft detective aid: it helps users notice unauthorized account use after the fact but depends on user vigilance and does not itself prevent or reduce unauthorized use.","strength":"related"},"sourceDetailPath":"/data/v1/records/uc-uc-access-13-2ccf2dfa.json","sourceId":"uc:UC-ACCESS-13","targetDetailPath":"/data/v1/records/risk-access-unauthorized-use-equipment-d2082944.json","targetId":"risk:access-unauthorized-use-equipment","type":"mitigates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:dae749399b7c0cfec64384be47d52d899acff1d1b98d3e6bee2d6c8208082046","properties":{"control_id":"AC-9","coverage":"full","delta":null,"framework":"nist-800-53","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"Rev. 5"},"sourceDetailPath":"/data/v1/records/uc-uc-access-13-2ccf2dfa.json","sourceId":"uc:UC-ACCESS-13","targetDetailPath":"/data/v1/records/ctrl-nist-800-53-ac-9-35e9d587.json","targetId":"ctrl:nist-800-53:AC-9","type":"maps_to"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:e4154853364b51c8bc8f32aa2c60f4204387aa60d9e50b26003091aebe11e234","properties":{"rationale":"Last-logon notification helps users spot stolen-credential account takeover early.","strength":"related"},"sourceDetailPath":"/data/v1/records/uc-uc-access-13-2ccf2dfa.json","sourceId":"uc:UC-ACCESS-13","targetDetailPath":"/data/v1/records/risk-fraud-external-c3ce412f.json","targetId":"risk:fraud-external","type":"mitigates"}],"schemaVersion":1}
