💥Join UPSC 2027,2028 Mentorship (August Batch) + XFactor Notes & Microthemes PDF

Subject: Digital Media and Security Threats

  • March to July, Govt sent one blocking order to social media firms every minute

    Why in the News

    Nearly 1.95 lakh state backed content blocking orders were sent to Instagram, Facebook and YouTube between March and July 2026, an average of one every 68 seconds, against a daily average of six in the preceding year. Most were routed through the Sahyog portal of the Ministry of Home Affairs and issued under Section 79(3)(b) of the Information Technology Act, 2000, the safe harbour condition, rather than the dedicated blocking power in Section 69A. The surge, combined with automated execution by the platform, converts a conditional legal duty into unconditional compliance.

    What is the Sahyog portal?

    1. What it is: A platform built by the Ministry of Home Affairs through which central and State agencies send content blocking notices to online intermediaries.
    2. Who uses it: Various central and State law enforcement and government agencies issue notices, and all three major social media companies have joined the portal.
    3. Legal hook: Notices are issued under Section 79(3)(b) of the Information Technology Act, 2000, the provision that conditions an intermediary’s legal immunity.
    4. What it replaced: It centralises what were previously scattered notices from individual police units and departments into a single automated channel.
    5. Scale of use: Between October 2024 and October 2025 the portal carried 2,312 blocking orders to 19 online platforms, a daily average of six.
    6. What one order covers: A single blocking order can cover hundreds of individual pieces of content or accounts, so the order count understates the volume removed.

    What is safe harbour under Section 79 of the Information Technology Act, 2000?

    1. The immunity: Section 79 protects an intermediary from liability for content that its users post, provided it does not initiate, select or modify that content.
    2. The condition: Section 79(3)(b) withdraws that immunity if the intermediary fails to remove unlawful material after receiving actual knowledge or a government notification.

    What is Section 69A of the Information Technology Act, 2000?

    1. The power: It allows the Union government to direct the blocking of public access to information in the interest of sovereignty, defence, security of the State, friendly relations, public order or the prevention of a cognisable offence.
    2. The safeguards: Blocking under it follows the Information Technology (Procedure and Safeguards for Blocking for Access of Information by Public) Rules, 2009, which require a committee review and reasons in writing.

    What is actual knowledge in intermediary liability?

    1. The test: Actual knowledge is the point at which an intermediary is informed of specific unlawful content and becomes obliged to act on it.
    2. Where it comes from: The Supreme Court in Shreya Singhal v. Union of India (2015) read down Section 79(3)(b) so that actual knowledge means a court order or a government notification, not a private complaint.

    What is an Application Programming Interface?

    1. What it is: A defined interface that allows one software system to send instructions directly to another without a person operating either end.
    2. Its use here: Meta has integrated its interface with the Sahyog portal, so a flagged item uploaded to the portal is removed from its platforms automatically.

    What does the scale of the blocking orders show?

    1. Total volume: Nearly 1.95 lakh blocking orders in five months, about 1,275 a day, or one every 68 seconds.
    2. Instagram: Around 1,00,000 orders, just over half of the total, and the platform on which the student protests were most visible.
    3. Facebook: Around 80,000 orders.
    4. YouTube: Nearly 15,000 orders.
    5. Concentration: Meta owned platforms received roughly nine out of every ten orders issued to the three companies.
    6. The baseline: The comparable figure for October 2024 to October 2025 was 2,312 orders across 19 platforms, a daily average of six.
    7. Official record: The Ministry of Home Affairs annual report for 2024 and 2025 recorded a little over 1.11 lakh pieces of suspicious online content blocked until March 2025 under Section 79(3)(b).
    8. Comparative removals: Meta reported removing over 23 million pieces of content in Indonesia between July and December 2025 against about 41,000 in India, which had already doubled from 28,000 in the first half of that year.
    9. User base: India has over 600 million social media users, with an estimated 10 million to 100 million posts a day.

    What changed in February 2026?

    1. The amendment: The Ministry of Electronics and Information Technology notified amendments to the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021.
    2. The new deadline: Content must now be removed within two to three hours, against the earlier window of 24 to 36 hours.
    3. Added conditions: The amended rule requires that an order come from an officer of a prescribed rank and state its reasons.
    4. The compliance effect: A window of two to three hours makes case by case human review commercially impossible at Indian volumes.
    5. The platform response: Meta integrated its interface with the Sahyog portal so removal happens machine to machine, without separate human review.
    6. What was removed: Automation eliminates the room for the company to review or contest a directive before complying with it.

    Why does the shift from Section 69A to Section 79(3)(b) matter?

    1. Different purpose: Section 69A is a dedicated blocking power. Section 79(3)(b) is a condition attached to an immunity, not a power to censor.
    2. Different safeguards: Section 69A orders pass through a review committee under the 2009 Rules and carry recorded reasons. Section 79(3)(b) notices carry no equivalent statutory committee.
    3. Different issuing authority: Section 69A is exercised by the Union government. Section 79(3)(b) notices come from a wide range of central and State agencies through the portal.
    4. Different subject matter: Section 69A is largely confined to national security and public order. The portal route is used for a far wider category of content.
    5. The legal consequence: The intermediary that refuses a Section 79(3)(b) notice does not face a penalty. It loses immunity for all user content, which is a far larger risk.
    6. What that produces: The threat of losing safe harbour makes refusal irrational, so the conditional structure operates as a command.

    What content was targeted?

    1. The protest period: The five month window covered the student protests against examination paper leaks at Jantar Mantar in Delhi, which began in early June and were called off on 25 July after the resignation of the Union Education Minister.
    2. Official acknowledgement: A senior government official stated that a considerable share of the orders were issued as the protests gathered momentum, particularly on Instagram.
    3. Protest content: Users reported the removal of posts supporting the student protests.
    4. Policy criticism: Posts criticising the government’s ethanol fuel blending policy were among those blocked.
    5. Electoral content: Content relating to the West Bengal Assembly elections was also removed.
    6. Synthetic media: Deepfakes formed a further category among the removals.
    7. Political speech: The national convenor of a national political party stated that some of his Instagram posts were blocked in India.

    Where does automated compliance turn against the legal design?

    1. The doctrinal problem: Actual knowledge requires that someone at the company know of the content and assess the order. An interface that executes takedowns automatically has no knowledge at all.
    2. No verification of authority: Nobody at the company checks whether the order comes from an officer of the prescribed rank or states the reasons the amended rule requires.
    3. Conditional becomes unconditional: Machine to machine execution converts a conditional legal duty into unconditional compliance, which is the substance of the objection raised by the Internet Freedom Foundation.
    4. The state interest on the other side: Coordinated disinformation, deepfakes and incitement travel faster than any human review cycle, which is the case for a short deadline.
    5. The unequal risk: The cost of over removal falls on the user, who has no notice and no appeal. The cost of under removal falls on the company as loss of immunity for all content.
    6. Notice denied: Meta informs users which State authority sent a request in most markets, but not in India, citing legal obligations and regulatory considerations.
    7. No proportionality check: One order can cover hundreds of accounts, so a single instruction can remove speech at a scale no court has examined.

    Challenges to the content blocking regime

    1. Absence of a review committee: Orders under Section 79(3)(b) carry none of the committee scrutiny that Section 69A orders pass through. e.g. the 2009 Blocking Rules committee has no counterpart for portal notices.
    2. Secrecy of orders: Blocking directions are treated as confidential, so neither the user nor the public sees the reasoning. e.g. Rule 16 of the 2009 Blocking Rules requires confidentiality of complaints and actions taken.
    3. No pre decisional hearing for the user: The person whose speech is removed is not heard before removal and often not informed after it. e.g. account holders learning of removal only from the platform’s generic notification.
    4. Chilling effect on lawful speech: Platforms over comply to protect immunity, which removes lawful criticism along with unlawful content. e.g. removal of posts criticising the ethanol blending policy during the same five month window.
    5. Federal multiplication of issuers: A wide set of central and State agencies can issue notices, so there is no single accountable authority. e.g. the portal carried orders to 19 platforms from multiple agencies in the previous year.
    6. Litigation uncertainty: Platforms that challenge the portal route face the loss of immunity while the case runs. e.g. X Corporation’s challenge to the Sahyog portal before the Karnataka High Court, dismissed in 2025.
    7. Encryption and traceability conflict: The traceability requirement in the 2021 Rules cannot be met without weakening end to end encryption. e.g. the pending challenge by WhatsApp to Rule 4(2) of the 2021 Rules.
    8. Capacity asymmetry: Smaller Indian intermediaries cannot build automated compliance systems and face the same deadlines. e.g. the two to three hour removal window applies to every significant social media intermediary.

    Conclusion

    The volume of blocking orders has risen from six a day to about 1,275 a day, and the legal route has moved from a dedicated blocking power with statutory safeguards to a safe harbour condition that carries none. Automation completes the shift, because a system that removes content without any person reading the order cannot satisfy the actual knowledge standard the Supreme Court built the provision around. The amended rules are in force and the orders continue. The unresolved question is whether Section 79(3)(b) can lawfully function as a general censorship channel when the Constitution requires every restriction on speech to be traced to a specific ground and a recorded reason.

    “[2024, GS3, 15 marks] Social media and encrypting messaging services pose a serious security challenge. What measures have been adopted at various levels to address the security implications of social media? Also suggest any other remedies to address the problem.”

  • Government summons Meta as Parliament flags limits of intermediary immunity

    Why in the News

    A parliamentary panel warned a large social media company that its legal immunity could be withdrawn after a content takedown and content safety failures. The tension is between platform safe harbour and the state’s demand for accountability.

    What is intermediary immunity under Section 79 of the IT Act, 2000?

    1. Definition of intermediary: An intermediary is any person or entity that receives, stores, or transmits an electronic record on behalf of another person, or provides any service with respect to that record. It includes, Internet and telecom providers, Web-hosting and cloud service providers, Search engines, Online marketplaces and e-commerce websites, Social media and messaging platforms, Online payment and auction sites and Cyber cafes.
    2. Safe harbour: Section 79 of the Information Technology Act, 2000 shields an intermediary from liability for third party content it hosts.
    3. Conditions: This protection applies only if their function is limited to providing access to communication, and they do not initiate, select, or modify the content, and they comply with due diligence requirements (such as removing unlawful content upon receiving actual knowledge or a court order).
    4. Intermediary test: The immunity depends on the platform qualifying as an intermediary rather than a content publisher.

    What triggered the summons?

    1. Video takedown: The platform briefly removed a video of the Prime Minister and later apologised.
    2. Harmful content: The government flagged child sexual abuse material and deepfake content on its platforms.
    3. Panel ultimatum: The Standing Committee on Information Technology sought testimony from the platform’s global head.

    Why is the immunity in question?

    1. Compliance failures: Officials argue the platform did not act on directives and grievances.
    2. Definition dispute: Officials contended it may not fall within the intermediary definition.
    3. Withdrawal threat: Loss of Section 79 cover would expose it to liability for user content.

    Conclusion

    The episode tests how far platform immunity survives repeated compliance failures. The next milestone is the platform’s response to the committee’s summons.

    Back2Basics

    Standing Committee on Communications and Information Technology

    It is a department-related parliamentary committee in India tasked with overseeing specific ministries, examining legislation, reviewing budget demands, and ensuring executive accountability. It was renamed from the Standing Committee on Information Technology in November 2021.

    Structure and Composition

    1. Total Members: 31 members (21 from Lok Sabha nominated by the Speaker and 10 from Rajya Sabha nominated by the Chairperson).
    2. Leadership: The Chairperson is appointed by the Lok Sabha Speaker.
    3. Tenure: The term of office for members does not exceed one year.
    4. Ministers: Sitting ministers are barred from holding membership on this committee

    Ministries under its Jurisdiction

    1. Ministry of Communications (including the Department of Telecommunications and Department of Posts)
    2. Ministry of Electronics and Information Technology (MeitY)
    3. Ministry of Information and Broadcasting (MIB)

    Core Functions

    1. Scrutinizing the annual Demands for Grants of the designated ministries.
    2. Examining Bills referred to it by the Lok Sabha Speaker or Rajya Sabha Chairperson.
    3. Considering national policy documents, performance reports, and long-term trends related to digital infrastructure, telecommunications, media regulations, and cyber security.

    PYQ Relevance

    [UPSC 2024] Social media and encrypting messaging services pose a serious security challenge. What measures have been adopted at various levels to address the security implications of social media? Also suggest any other remedies to address the problem.

    Linkage: The PYQ examines the regulatory and legal measures to address the security and accountability challenges posed by social media platforms. The article highlights the limits of intermediary immunity under Section 79 and the need for greater platform accountability for harmful content.

  • Social media and encrypting messaging services pose a serious security challenge. What measures have been adopted at various levels to address the security implications of social media? Also suggest any other remedies to address the problem.

    India has second-largest social media market with 491 million active users. However, in 2025, these platforms are central to “Grey Zone Warfare” as their architecture creates a “security paradox”

    Challenges Posed by Social Media & Encrypted Messaging

    Social Media Challenges

    Algorithmic Echo Chambers creating polarized “digital silos”. (India Hate Lab report)

    Cognitive Warfare- Eg- “Bot-farms” to build anti-India narratives

    Cyber Stalking and Harassment – Eg- Women targeted through doxxing and revenge porn.

    Online Radicalisation – Eg- ISIS recruitment through social media.

    Encrypted Messaging Challenges

    Traceability Paradox- End-to-end encryption prevents law enforcement from identifying the “first originator”

    Operational Backbone for Terror- Eg- ISIS and LeT using Telegram or Signal

    Serve as the front-end for darknet markets dealing in narcotics and illegal firearms.

    Shadow Financial Hubs- Eg- use of “self-destructing” messages for “Digital Arrest” extortions

    Measures Adopted at Various Levels

    Legal and Regulatory Framework

    IT Rules, 2021 – mandate Traceability, requiring significant social media intermediaries to identify the “first originator” on court orders.

    DPDP Act- Requires data breach notifications to the Data Protection Board within 72 hours.

    Bharatiya Nyaya Sanhita Section 353 penalizes the spread of misinformation causing public fear.

    Institutional and Operational Measures

    I4C acts as the national nodal point for identifying and removing unlawful content.

    CyberDome Project (Kerala) to monitor the Darknet and social media for criminal patterns.

    “Operation Blackface” of Maharashtra Police Cyber Department for crack down on Child Sexual Abuse Material (CSAM)

    Global and Social Initiatives

    India actively participates in the UN Convention against Cybercrime (2024) and the Christchurch Call to eliminate extremist content.

    Initiatives like Cyber Swachhta Kendra and the 1930 Helpline promote “Digital Hygiene.”

    Suggested Remedies to Address the Problem

    Metadata Analysis over Decryption- By analyzing “who talks to whom, when, and from where” (metadata), to identify criminal clusters.

    Mandating social media platforms to undergo independent audits of their “Recommendation Engines.”

    Implementing mandatory Digital Watermarking for all AI-generated content (deepfakes).

    Establishing an independent, statutory Digital Ombudsman to provide a “Single-Window” grievance redressal mechanism for citizens

    Mandatory SIM-Binding for messaging apps to prevent the use of international virtual numbers in local scams like “Digital Arrests.”

    Integrating “Cognitive Defense” and digital civics into school and college curricula.

    Formalizing a real-time data-sharing bridge between the I4C and tech giants to instantly “freeze” fraudulent financial flows during the Golden Hour.

    Community Fact-Checking Models- Empowering certified organizations with “Priority Reporting” status on platforms to flag virally dangerous misinformationce.

    Push for a Global Cyber-Extradition Framework to ensure that criminals operating from “Safe Haven” countries can be prosecuted.

    Sovereign Messaging Alternatives- Eg- apps like Sandes for government communication.

    Adopting global best practices

    “Duty of Care” Principle (UK)- Shifting burden of safety from the user to the platform.

    EU’s Digital Services Act for Algorithmic Transparency

    Estonia’s e-residency program using Blockchain

    For “Safe and Trusted Cyberspace” there is need for a “Whole-of-Nation” approach

    Border Management and Security Forces