{"id":62699,"date":"2026-07-09T21:25:41","date_gmt":"2026-07-10T01:25:41","guid":{"rendered":"https:\/\/overcentral.com\/en\/?p=62699"},"modified":"2026-07-09T21:25:41","modified_gmt":"2026-07-10T01:25:41","slug":"eu-parliament-chat-control-revival","status":"publish","type":"post","link":"https:\/\/overcentral.com\/en\/eu-parliament-chat-control-revival\/","title":{"rendered":"EU Parliament Revives Law Allowing Private Message Scanning"},"content":{"rendered":"<p>The European Parliament has voted to reinstate a temporary legal framework permitting online platforms to voluntarily scan private messages, including emails and direct messages, for child sexual abuse material (CSAM), effectively reviving a surveillance regime that expired in April after lawmakers previously blocked its extension. The approval came on Thursday after a motion to reject the proposal fell far short of the required absolute majority, clearing the way for the return of what critics call &#8220;Chat Control 1.0.&#8221;<\/p>\n<h2>How the Vote Unfolded and What Changed<\/h2>\n<p>The motion to reject the proposal received 314 votes in favor, 276 against, and 17 abstentions \u2014 well below the 361 votes needed for an absolute majority of all Members of the European Parliament (MEPs). This outcome allowed the legislation to proceed without a full committee review after being fast-tracked through an urgency procedure agreed upon the previous day. The restored regulation, originally enacted as Regulation (EU) 2021\/1232, grants providers of communications services legal certainty to voluntarily deploy automated detection tools on private communications that <a href=\"https:\/\/overcentral.com\/en\/signal-president-warns-ai-chatbots\/\" title=\"Signal President Warns AI Chatbots Are Not Your Friends\" data-iacss-internal=\"1\">are not<\/a> protected by end-to-end encryption.<\/p>\n<p>Several amendments intended to introduce stronger privacy safeguards also failed because they required the same absolute majority threshold. An amendment that would have limited scanning to users specifically authorized by a judicial order received 322 votes in favor and 255 against \u2014 a majority of those voting, but still short of the 361-vote bar. Another amendment addressing encrypted communications similarly failed despite majority support among voting MEPs.<\/p>\n<h2>What the Restored Framework Actually Permits<\/h2>\n<p>The revived temporary derogation from the EU&#8217;s ePrivacy Directive allows companies such as <a href=\"https:\/\/overcentral.com\/en\/meta-muse-image-model-pulls-instagram-users-into-ai-photos\/\" title=\"Meta Muse Image model pulls Instagram users into AI photos\" data-iacss-internal=\"1\">Meta<\/a>, <a href=\"https:\/\/www.google.com\/\" target=\"_blank\" rel=\"noopener noreferrer\" data-iacss-external=\"1\">Google<\/a>, <a href=\"https:\/\/www.microsoft.com\/\" target=\"_blank\" rel=\"noopener noreferrer\" data-iacss-external=\"1\">Microsoft<\/a>, and <a href=\"https:\/\/www.apple.com\/\" target=\"_blank\" rel=\"noopener noreferrer\" data-iacss-external=\"1\">Apple<\/a> to voluntarily scan private communications for CSAM, provided those services do not use end-to-end encryption. Public social media content and cloud storage were already outside the scope of this temporary measure and remain scannable under separate legal bases. End-to-end encrypted services are technically outside the mandatory scope of the rule, though privacy advocates warn that the framework could encourage voluntary client-side scanning implementations that undermine encryption guarantees.<\/p>\n<p>The temporary framework is expected to remain in effect until 2028 or until a permanent regulation is adopted, whichever comes first. It is distinct from the proposed Child Sexual Abuse Regulation (CSAR), known as &#8220;Chat Control 2.0,&#8221; which remains under negotiation and would establish a permanent, more expansive legal framework governing detection and reporting of CSAM and online grooming.<\/p>\n<h2>Privacy Advocates Condemn the Revival<\/h2>\n<p>Former Pirate Party MEP Patrick Breyer sharply criticized the outcome, arguing that the legislation advanced &#8220;against the will of the majority of voting MEPs&#8221; and calling the process undemocratic. He warned that extending the temporary regime could reduce pressure to reach agreement on a permanent child protection framework, potentially prolonging mass surveillance of private communications.<\/p>\n<p>Privacy-focused email provider Tuta called the vote &#8220;a sad day for the privacy of EU citizens&#8221; and urged users to adopt end-to-end encrypted communication services. <a href=\"https:\/\/overcentral.com\/en\/bypass-grindr-ban-vpn-reset\/\" title=\"Grindr Users Bypass Bans with VPNs and Device Resets\" data-iacss-internal=\"1\">VPN<\/a> provider Mullvad noted that despite Parliament voting down the legislation twice earlier this year, the Council and parts of Parliament managed to push it through using the urgency procedure, extending the regime for another two years.<\/p>\n<h2>What Is the Difference Between Chat Control 1.0 and Chat Control 2.0?<\/h2>\n<p>Chat Control 1.0 is the temporary measure just revived, permitting voluntary scanning of non-encrypted private communications. Chat Control 2.0, formally the Child Sexual Abuse Regulation (CSAR) proposal, is a permanent framework still under negotiation that would establish long-term obligations for providers to detect, report, and remove CSAM \u2014 including potentially scanning encrypted content. The central unresolved disagreement in the CSAR negotiations is whether detection should be limited to targeted investigations authorized by courts or continue to permit broader voluntary scanning by providers. Negotiations on the permanent regulation are expected to resume in September.<\/p>\n<h2>What Affected Users Should Do Now<\/h2>\n<p>For individuals concerned about private message scanning under the revived framework, the most effective step is to use communication services that implement end-to-end encryption by default and have a clear policy against client-side scanning. Look for messaging apps and email providers that\u516c\u5f00ly commit to zero-access encryption and have undergone independent security audits. For everyday communications, consider using a reputable end-to-end encrypted messaging service that does not have the technical capability to scan message content server-side. Enterprise users should also review their internal communication policies and ensure that any monitoring tools deployed for compliance purposes are transparently disclosed to employees. As negotiations on Chat Control 2.0 resume in the fall, staying informed about proposed changes and engaging with digital rights organizations can help users and businesses advocate for balanced outcomes that protect both children and privacy.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The European Parliament has voted to reinstate a temporary legal framework permitting online platforms to voluntarily scan private messages, including emails and direct messages, for child sexual abuse material (CSAM), effectively reviving a surveillance regime that expired in April after lawmakers previously blocked its extension. The approval came on Thursday after a motion to reject [&hellip;]<\/p>\n","protected":false},"author":7,"featured_media":84311,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/cards.overcentral.com\/cards\/en\/62699.png","fifu_image_alt":"EU Parliament Revives Law Allowing Private Message Scanning","footnotes":""},"categories":[349],"tags":[],"class_list":["post-62699","post","type-post","status-publish","format-standard","has-post-thumbnail","category-articles"],"fifu_image_url":"https:\/\/cards.overcentral.com\/cards\/en\/62699.png","fifu_image_alt":"EU Parliament Revives Law Allowing Private Message Scanning","_links":{"self":[{"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/posts\/62699","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/users\/7"}],"replies":[{"embeddable":true,"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/comments?post=62699"}],"version-history":[{"count":0,"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/posts\/62699\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/media\/84311"}],"wp:attachment":[{"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/media?parent=62699"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/categories?post=62699"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/overcentral.com\/en\/wp-json\/wp\/v2\/tags?post=62699"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}