Off the (Supply) Chain: Director of National Intelligence Issues First Exclusion and Removal Order Under the Federal Acquisition Supply Chain Security Act
Client Alert | 5 min read | 09.22.25
On September 18, 2025, the Director of National Intelligence (DNI) issued the first order under the authority conferred by the Federal Acquisition Supply Chain Security Act (FASCSA), requiring exclusion and removal of products and services by an identified source.[1]
This first order comes almost two years after the FAR Council issued the FAR clauses that dictate contractor compliance with FASCSA exclusion or removal orders. (Read more about the contractor obligations here.)
FASCSA established the Federal Acquisition Security Council (FASC), which is an inter-agency body created to assess supply-chain risk and make removal and exclusion recommendations to three order-issuing agencies: DNI, with respect to the Intelligence Community (IC) agencies, the Department of Homeland Security (DHS), with respect to civilian agencies, and the Department of Defense (DOD), with respect to defense agencies. This specific order, issued by the DNI, is applicable to the IC agencies[2] and contracts involving sensitive compartmented information (SCI) systems. It has two parts. First, Acronis, its parent Acronis AG, and its affiliate companies (collectively, Acronis), are excluded from IC procurement actions. Second, the order designates as “covered articles” all Acronis products or services and requires contractors to remove all such Acronis “covered articles” from information systems “applicable to” the IC and SCI systems.
To carry out a FASCSA order, impacted contractors must undertake a reasonable inquiry into their supply chains to identify any provision or use of the “covered articles” in the performance of an applicable contract, pursuant to FAR 52.204-30. If a contractor identifies covered articles, then FAR 52.204-30 requires the contractor to notify the contracting officer within three business days and update that report with mitigation actions within ten business days.
With the FASCSA gates now open, contractors should continue to monitor both for additional FASCSA orders and impacts to their supply chains.
[1] FASCSA orders can be located by navigating to SAM.gov at https://sam.gov/supplychainorders and downloading the FASCA supply chain orders list. This excerpt is the FASCSA supply chain order list as of September 19, 2025.
[2] On September 18, 2025, the GSA blog also stated all MSA contracts were being revised to remove Acronis products. Details of this effort have not yet been provided. Crowell will continue to monitor these changes.
Contacts
Insights
Client Alert | 2 min read | 09.22.25
Department of Education Discontinues Discretionary Grant Funding for Minority-Serving Institutions
The Department of Education (DOE) announced on September 10, 2025, that it will end discretionary funding to several Minority-Serving Institution (MSI) grant programs that, it stated, “discriminate by conferring government benefits exclusively to institutions that meet racial or ethnic quotas.”[1] The agency stated that it would “us[e] its statutory authority to reprogram discretionary funds to programs that do not present such concerns.”[2] This announcement follows a July 2025 decision by the Department of Justice to no longer defend the constitutionality of a provision of the Higher Education Act of 1965 (HEA) that authorizes grant funding to Hispanic-Serving institutions, after determining that such programs “violate the equal-protection component of the Fifth Amendment’s Due Process Clause.”[3]
Client Alert | 9 min read | 09.22.25
From Deepfakes to Sanctions Violations: The Rise of North Korean Remote IT Worker Schemes
Client Alert | 4 min read | 09.22.25
The Future of Special Contracts in Belgium: a new Book 7 for the Belgian Civil Code
Client Alert | 3 min read | 09.19.25