8.5 Incidents of this nature must be given wide publicity through both the UIDAI and the investigating agency as the scope/nature of the breach cannot be adequately assessed without all concerned parties being put to notice. This would enable the general public to assess whether they were also victims and to take remedial action if necessary. 8.6 It is submitted that a revised list of Requesting Entities (AUA and KUA) excluding the telecom operators should be forthwith uploaded on the UIDAI website. Further, in this context, it is submitted that the number of violations made by any of the Requesting Entities and the status of adjudication of the said violation by UIDAI should be reflected in the said lists available on the website of UIDAI. 8.7 Awareness programmes must be instituted to ensure that the public at large are made aware of the nature of the sensitive nature of data being provided, the potential for misuse and how to protect itself from the same. In this context, it is pertinent to note that Section 3(2) read with Regulation 9 of the Aadhaar (Enrolment and Update) Regulations, 2016, and Section 8(3) of the Aadhaar Act read with Regulation 5 of the Aadhaar (Authentication) Regulations, 2016, mandate that information must be provided to the individual at the time of enrolment and authentication. This information must be read to include awareness on the potential misuses of the data, and how to guard oneself from the same. The information must be