Subject: International coalition of organisations and experts, including members of the Global Encryption Coalition, call on the Department of Telecommunications to withdraw the Draft Indian Telecommunication Bill and protect encryption, privacy and security.
Sir,
The undersigned organisations and experts, including members of the Global Encryption Coalition, urge you to enable open and secure communications in India. As we are committed to a free, open, and secure internet, and strong cybersecurity that strengthens privacy and freedom of expression, we respectfully call on you to withdraw the Draft Indian Telecommunication Bill, 2022 (“Bill”) in light of its threat to end-to-end encryption (“E2EE”), and the human rights, individual security and economic growth it serves to protect. A revised draft must be prepared in consultation with stakeholders and experts, that does not undermine E2EE, and instead incorporates provisions to protect and strengthen this privacy and security enhancing tool.
The broad definitions of “telecommunication” and “telecommunication services” in the Bill include over-the-top (OTT) services. As a result, any communication, such as video or audio calls, or messages, over a host of OTT platforms such as WhatsApp, Zoom, Signal, and Facetime would fall within the Bill’s purview. A number of these platforms offer E2EE for calls and messages to enable strong privacy and security, which the Bill puts at risk.
Clause 24(2) in the Bill authorises the government to direct interception, detention, or disclosure of messages on broad grounds. The provision grants sweeping surveillance powers to the government, lacking safeguards that must be embedded in communications surveillance frameworks. It fails to carve out an exemption for E2EE services, and could easily be misused to break the security offered by E2EE services.
The defining feature of E2EE is that no party other than the sender/caller and the intended recipient/s can access the content of the communication, not even the service provider itself. In other words, such service providers have no technical capability to intercept, detain or disclose communications content. This ensures privacy, security and authenticity of information.
CDT-led Coalition Calls for Transparency for White House AI Framework
CDT and Americans for Responsible Innovation led a broad, bipartisan coalition of over two dozen civil society groups in calling on the White House to release its Framework for review of frontier AI models.
CDT Amicus Brief Calls on Fourth Circuit to Rein In Geofence Warrants
Earlier this year the Supreme Court ruled in Chatrie v United States that the Fourth Amendment protected all cell phone location information, which CDT lauded as a landmark decision, but sent the case back down to the Fourth Circuit to assess the propriety of the geofence warrant at issue.
CDT and Partners Post Floor Alert Opposing CA SB 1013 Automated License Plate Readers Bill
The best way to ensure that Automated License Plate Readers are not abused is to limit the retention of stored data and to keep loopholes to lawful process closed. CA SB 1013 is a step in the wrong direction, and we urge the California legislature to reject this approach.
British Public Oppose Secret Surveillance Powers and Want Strong Protections for Encrypted Communications
CDT released nationally representative polling data revealing that a the British public are broadly concerned about the security, privacy, and free speech consequences of allowing law enforcement to access encrypted communications.