Advertisement
Sections
Online outcry forces government to withdraw draft encryption policy
Why can't all the thinking be done before drafts are penned down for public review. A well thought, debatable report that will help avoid the whole retracting drama.

Yesterday, the government released a draft encryption policy aimed at keeping a tab on the use of technology by specifying algorithms and length of encryption keys used by 'all'. It wanted businesses, telcos and Internet companies to store all encrypted data for 90 days in plain text which should be presented before the law enforcement agencies whenever asked to. Moreover, failing to do so would mean legal action as per the laws of the country.After a huge outcry, most of us woke up to the new proposed addendum this morning wherein the government has clarified to exempt products such as social media sites including WhatsApp, Facebook and Twitter; payment gateways; e-commerce and password based transactions and more from the draft policy.Finally, the government has decided to withdraw the draft encryption policy.https://twitter.com/firstpost/status/646221371932962816https://twitter.com/firstpost/status/646222621495812096What's fascinating is how the whole process felt like déjà vu. Haven't we seen the drama unfold before. While the dust on the net neutrality sage has barely settled, we're already facing newer issues related to encryption and privacy. We never learn from our mistakes, do we? A new draft policy, public outcry, and then comes the much-needed changes.[caption id="attachment_235071" align="aligncenter" width="640"]
Exempted![/caption]The Indian government hasn't just caused anxiety and chaos among the netizens, but the initial draft completely misguided people. According to TheNextWeb, "The Indian government has made a fool of itself and caused anxiety among citizens with a woefully misguided proposal for a national encryption policy that it’s just released to the public for feedback."While we sit back and talk about Digital India, smarter cities and so on, the makers of the law seem to be clueless about some major by-products concerning these initiatives such as security, privacy and likewise. Each time the government talks about a new initiative meant to bring in some law and order pertaining to digital rights, it somehow manages to come up with implications that could affect us far worse.In this case, the Indian government is trying to ensure that its law enforcement agencies have easy access to encrypted information whenever required, but this could easily compromise security and privacy in the process.Moreover, each time the government releases a proposal for our digital lives, it's people who remind the government about the adverse implications it could have. Does the expert panel writing these reports know nothing about privacy and how it possibly works? Or is the government simply looking at a trial balloon policy to gauge reactions by people. So, next time we don't react, a draconian rule might just be governing our digital lives.The whole net neutrality saga continued for months with assurance from the government on how it supports free and equal Internet, and eventually made 'certain changes'. This seems headed on a similar path. Though the new addendum comes with changes, it still leaves us as muddled as before.Pranesh Prakash of the CIS has tweeted out how the new clarification clarifies nothing.https://twitter.com/pranesh_prakash/status/645871490408255489https://twitter.com/Just_this_time/status/645781278244012033A new Medianama report also points out loopholes in the changes announced. The report adds how any encrypted service would have to sign an agreement with the government. With the heavy mobile penetration and increasing number of encrypted mobile services that people use, it is really feasible for the government to ink an agreement with all the services that are based outside the country.https://twitter.com/nixxin/status/646153774231228416In the past, we've seen the blame game around the laws, usually the 'hurriedly' changed laws passed (after the inability to monitor encrypted messages during the Mumbai terrorist attacks) in the winter session of 2008 without any debate or discussion by bears the brunt. Earlier this year, we saw the government crack down the Section 66A of the 2008 Information Technology Act describing it "unconstitutional" and "hit at the root of liberty and freedom of expression, the two cardinal pillars of democracy."Why can't all the thinking be done before drafts are penned down for public review. A well thought out report would help avoid retractions later.
Exempted![/caption]The Indian government hasn't just caused anxiety and chaos among the netizens, but the initial draft completely misguided people. According to TheNextWeb, "The Indian government has made a fool of itself and caused anxiety among citizens with a woefully misguided proposal for a national encryption policy that it’s just released to the public for feedback."While we sit back and talk about Digital India, smarter cities and so on, the makers of the law seem to be clueless about some major by-products concerning these initiatives such as security, privacy and likewise. Each time the government talks about a new initiative meant to bring in some law and order pertaining to digital rights, it somehow manages to come up with implications that could affect us far worse.In this case, the Indian government is trying to ensure that its law enforcement agencies have easy access to encrypted information whenever required, but this could easily compromise security and privacy in the process.Moreover, each time the government releases a proposal for our digital lives, it's people who remind the government about the adverse implications it could have. Does the expert panel writing these reports know nothing about privacy and how it possibly works? Or is the government simply looking at a trial balloon policy to gauge reactions by people. So, next time we don't react, a draconian rule might just be governing our digital lives.The whole net neutrality saga continued for months with assurance from the government on how it supports free and equal Internet, and eventually made 'certain changes'. This seems headed on a similar path. Though the new addendum comes with changes, it still leaves us as muddled as before.Pranesh Prakash of the CIS has tweeted out how the new clarification clarifies nothing.https://twitter.com/pranesh_prakash/status/645871490408255489https://twitter.com/Just_this_time/status/645781278244012033A new Medianama report also points out loopholes in the changes announced. The report adds how any encrypted service would have to sign an agreement with the government. With the heavy mobile penetration and increasing number of encrypted mobile services that people use, it is really feasible for the government to ink an agreement with all the services that are based outside the country.https://twitter.com/nixxin/status/646153774231228416In the past, we've seen the blame game around the laws, usually the 'hurriedly' changed laws passed (after the inability to monitor encrypted messages during the Mumbai terrorist attacks) in the winter session of 2008 without any debate or discussion by bears the brunt. Earlier this year, we saw the government crack down the Section 66A of the 2008 Information Technology Act describing it "unconstitutional" and "hit at the root of liberty and freedom of expression, the two cardinal pillars of democracy."Why can't all the thinking be done before drafts are penned down for public review. A well thought out report would help avoid retractions later.Armed with a Bachelor of Electronics Engineering degree, it is writing where Naina finds her calling. She has got her finger on the pulse of what's new and trending in the world of technology, right from gadgets to innovations. When she isn't hammering away on her keyboard, she is busy looking for figurines to add to her growing collection of Kinder toys. It doesn't get more diverse than that.
First Published:Sep 23, 2015, 08:27:33 IST
Advertisement
Advertisement

Why AI notetakers are raising serious privacy and security concerns
AI notetakers promise effortless meeting summaries, but experts warn they could expose confidential conversations, corporate secrets and personal voiceprints. As businesses increasingly adopt AI-powered meeting assistants, questions over data storage, privacy, consent and legal risks are becoming impossible to ignore
5 min read
China's low-cost AI models are changing the global AI race. Here's why Silicon Valley is worried
As Chinese firms continue to improve performance while keeping prices low, the AI race is no longer just about building the smartest model—it is increasingly becoming a battle over who can deliver the best value
2 min read
China's Kimi K3 challenges US AI leaders with frontier-level performance at lower cost
Chinese artificial intelligence startup Moonshot AI has unveiled its latest open-weight AI model, Kimi K3, with early results suggesting it could compete with some of the world's most advanced AI systems developed by leading US companies
2 min read
How did Instagram run ads promoting child abuse in India?
India has issued a notice to Meta after an investigation alleged that Instagram displayed paid advertisements promoting child sexual abuse material. MeitY ordered Meta to remove such Instagram ads and explain within seven days how they were approved
8 min read
Why has India halted WhatsApp’s username feature before launch?
India has halted WhatsApp’s planned username feature, citing concerns about cybercrime, impersonation, and law enforcement challenges. As Meta races to address security concerns, here’s why MeitY has paused the rollout, what the feature does, and how it could influence privacy and online safety in India
3 min read
Advertisement
Advertisement
