Built to help voters verify how officials vote using official public records — non-partisan, no spin, no jargon.
H.R. 1258 · 119th Congress

Improving Contractor Cybersecurity Act

In committee

See what this could mean for your district

Save your district in Account to view district-specific context for this bill.

Bill details

Introduced: 2/12/2025
Current status: In committee
Introduced by: Ted Lieu (D · CA-36)
Bill ID: 119hr1258
Latest official action: Referred to the House Committee on Oversight and Government Reform.

Bill overview

A neutral overview based on official congressional sources.

Introduced in House

Improving Contractor Cybersecurity Act This bill prohibits an executive agency from entering into a contract for information technology unless the contractor maintains a vulnerability disclosure policy (VDP) and program. The contractor must report to the Cybersecurity and Infrastructure Security Agency (CISA) of the Department of Homeland Security, within seven days after the VDP is published and on an ongoing basis as vulnerability reports are received, information regarding • any valid or credible report of a not previously known public vulnerability on a system that uses commercial software or services that affect, or are likely to affect, other parties in government or industry once a patch or viable mitigation is available; and • any other situation where the contractor determines it would be helpful or necessary to involve CISA. CISA must submit vulnerabilities to the MITRE Common Vulnerabilities and Exposures database and the National Institute of Standards and Technology National Vulnerability Database.

Source: BILLSUM · Summary date: 2/12/2025

Related votes

Roll calls that reference this bill in official data.

0 roll calls
No related roll calls found yet for this bill.

Primary sources

Official links to verify details. No interpretation.

About this data

Non-partisan by design
OurCongress presents public records without political endorsement, interpretation, or advocacy.
Official sources
Data is sourced from official government records, including Congress.gov, GovInfo, the Clerk of the House, and the U.S. Senate.
AI-generated text
Some explanatory sections may be generated from official summaries and metadata to improve readability. They are not official government language and should be verified against primary sources.
Last updated: 3/19/2026Source: BILLSUMBill: 119hr1258Learn more →