Requirement 0131 (Part Five: Personnel, section 17.2 Access to Resources; applies to All entities; dated 31 October 2024; retained from Release 2025): Access to security classified information or resources is only given to entity personnel with a need-to-know that information. Access is limited to personnel who need the information for their duties.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.