The Office of the Information and Privacy Commissioner for BC said August 25 that its Emerging Information and Privacy Technologies team will assess the validity of the security risks behind the removal and consider how public bodies can preserve transparency under a worsening threat environment. That is a narrower and more useful mandate than the political framing around the change: the office is not declaring the province’s security concerns false, nor ordering the directory restored. It is asking whether eliminating the public directory was proportionate and what a workable replacement should contain.
The B.C. Ministry of Citizens’ Services removed public access on August 18, citing employee privacy, escalating cybersecurity risks and advice from law enforcement, including the RCMP. Global News reported that the former site allowed anyone to search provincial employees by name, department, work email address and phone number. The ministry said it faces hundreds of cyberattacks each day and that AI tools have made it quicker to harvest public information and build convincing targeted messages.
That rationale is technically credible. A searchable staff directory can function as a ready-made open-source intelligence dataset for attackers: it connects names, job titles, reporting structures, phone numbers and government email addresses in one place. That reduces the work required to identify likely targets for spear-phishing, impersonation, credential theft and harassment. A finance worker who receives a message apparently sent by a named executive, for example, has more reason to trust it when the attacker can accurately mirror the executive’s role, department and contact details.
But the shutdown also exposes a gap between reducing public discoverability and reducing the underlying security risk.
The directory was removed before its replacement existed
The central problem is operational, not philosophical. The public BC Government Directory did more than expose individual contact information. It also showed organizational units and gave citizens, journalists, businesses and vendors a practical way to identify which part of government handled a subject.
As first reported by Business in Vancouver and republished by Castanet, an internal bulletin said that public users would lose employee information, organizational details, search functions and browsing capability, while internal users retained access. The same report said the public would be redirected to the existing service-finder page. That page can lead residents to forms and broad service channels, but it is not an equivalent replacement for a searchable organizational directory.
The Ministry of Citizens’ Services has said an updated public page is coming “soon,” with senior executive contacts for every ministry as well as ministry, service and media contacts. It has not published a delivery date, a technical design, a list of positions that will be included, or a public explanation of how users will identify the right branch when an issue does not fit a generic service category.
That absence is the immediate transparency failure. A government can reasonably decide that publishing every employee’s direct details is unsafe. It cannot credibly describe an undisclosed future directory as a replacement for a tool it has already removed.
The cybersecurity case is real, but the evidence remains undisclosed
Commissioner Michael Harvey has explicitly acknowledged that the threat environment is deteriorating and that public servants are increasingly targeted using publicly available information. His office’s position is not that cybersecurity should yield automatically to public access. It is that a complete removal without a functional alternative creates a serious transparency issue.
The provincial government has not publicly described a specific breach, phishing campaign or doxxing incident that triggered the August 18 change. It has also not released the RCMP advice it cited, even in redacted form, or stated whether the decision followed a formal threat assessment. The government may have sound reasons not to publish sensitive operational details, but it has provided little information that would let the public assess why a wholesale removal was necessary rather than a graduated response.
That distinction matters for IT administrators because a directory’s existence is only one part of the phishing problem. Attackers can still collect names and roles from public salary disclosures, procurement documents, regulatory decisions, professional profiles, conference agendas, social media, government reports and breached data. Organizations also often use predictable email-address formats, meaning that removing a directory does not necessarily prevent an attacker from guessing addresses.
The directory shutdown may therefore slow bulk collection and reduce the accuracy of some campaigns. It does not replace the controls that determine whether a targeted email succeeds: strong authentication, protected executive accounts, safe handling of externally originated messages, employee reporting channels, rapid account containment and resilient approval processes for money movement or sensitive records.
A government that frames the change as cybersecurity should be prepared to explain how it fits into that broader control set. So far, the public record describes the directory’s removal, not the layered safeguards around it.
A middle path is already visible in the province’s own plan
The province’s promised executive-contact page points toward the likely compromise: preserve a public map of government while removing the direct contact details of staff who do not need to be publicly reachable.
That model could include ministry and branch structures, named deputy ministers and assistant deputy ministers, functional mailboxes, public phone queues, media contacts and clearly defined escalation routes. It could also identify program owners without publishing a personal phone number or direct email address for every analyst, clerk or frontline worker. For people with documented safety concerns, a process to suppress listings or use non-personal contact channels would be more defensible than assuming every job carries the same exposure.
This is not a theoretical issue. Rob Shaw’s reporting noted that the province had already been reducing exposure in recent years by replacing some direct email addresses with generic accounts and removing phone numbers in certain listings. That suggests B.C. had been moving toward a more selective model before cutting off public search and organizational browsing altogether.
Other public bodies have made different choices. The City of Vancouver closed its staff directory in 2024 after citing increased staff harassment, according to Business in Vancouver’s reporting. At the same time, other Canadian governments continue to publish varying levels of staff and organizational contact information. The relevant comparison is not whether another jurisdiction leaves every employee searchable; it is whether B.C. can maintain an intelligible, current public-facing map of decision-making without handing attackers a frictionless employee dataset.
OIPC’s review should examine the architecture, not just the justification
The commissioner’s review has value precisely because it can move the discussion away from the false choice between an entirely open directory and a blank public page. The question is whether the province can demonstrate that the risk reduction from taking the system offline outweighs the loss of access—and whether it considered less disruptive designs first.
Harvey’s office has said it will publicly report its findings and offer advice or recommendations to ministries and other public bodies. That report should establish what information was exposed before August 18, what categories of threat were identified, whether affected employees had existing opt-out protections, and what public-access requirements a replacement directory should meet.
It should also make one practical distinction clear: employee safety and government accountability are not competing abstractions. A public directory that exposes rank-and-file staff to targeting is a poor security design. A government contact system that makes it difficult to find responsible offices, senior officials or program owners is a poor transparency design.
For B.C. residents and organizations that deal with provincial ministries, the near-term consequence is straightforward: the old directory’s search and browse functions are gone, while the promised substitute is not yet available. The OIPC’s eventual findings will matter, but the province does not need to wait for them to publish a usable organizational directory built around accountable offices, protected staff and clearly routed public contact.