Jump to content

Regulation to Prevent and Combat Child Sexual Abuse

From Wikipedia, the free encyclopedia

Regulation proposal
European Union regulation
Text with EEA relevance
TitleProposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse
Made underArticles 114 and 294 TFEU
Preparative texts
Commission proposalCOM(2022) 209 final
EESC opinionEESC 2022/02804
EP opinionA9-0364/2023
ReportsA9-0364/2023
Pending legislation

The Regulation to Prevent and Combat Child Sexual Abuse (also known as the Child Sexual Abuse Regulation, or CSAR) is proposed European Union legislation designed to compel digital platforms to assess and mitigate risks related to the dissemination of abuse material and online grooming. The draft law also aims to enable authorities to remove or block illegal content while establishing a specialized center for regional coordination and victim assistance.[1] In public and political discourse, the initiative is widely criticized and referred to by detractors as Chat Control 2.0 or simply Chat Control.[2][3]

While the framework is strongly supported by child advocacy groups[4] and most EU member states,[5] the legislative process has been gridlocked by disagreement over the scope and legal safeguards of automated monitoring.[6][7] Although inter-institutional compromises have been achieved on a majority of the provisions,[8] there remains an ongoing deadlock regarding controversial mandatory detection orders. Civil society organizations and privacy activists contend that requiring social media companies and messaging apps to proactively scan communications would compromise the right to privacy and data protection by introducing indiscriminate surveillance.[9][10][11][16]


Background

[edit]

The European Union's historical approach to child sexual abuse was fragmented, divided between a 2011 criminal-law directive implemented unevenly by member states,[17] voluntary industry practices by digital platforms, and disconnected law enforcement and victim support initiatives. Official reviews of the 2011 directive identified significant implementation gaps,[18] prompting the Council and the Parliament to call for a more coordinated EU-wide framework in late 2019.[19]

The onset of the COVID-19 pandemic intensified these vulnerabilities by shifting schooling and social interactions online, which increased the digital exposure of children to offenders while simultaneously reducing the operational capacity of hotlines and law enforcement bodies.[20] In response, the European Commission integrated the issue into its 2020 Security Union programme,[21] and formally adopted its strategy for "a more effective fight against child sexual abuse" on 24 July 2020. This comprehensive strategy consolidated prevention, enforcement, and victim support under a single initiative, proposing temporary and permanent legislative measures to harmonize and expand voluntary platform detection mechanism practices.[22]

In October 2022, Article 18 of the Digital Services Act[23] introduced emergency reporting mandates for specific online businesses to flag imminent threats to life or safety. While these mechanisms are broadly compatible with the objectives of the CSAR, the regulation explicitly stopped short of imposing general or proactive content monitoring obligations.[24]

Industry practice

[edit]

Voluntary detection of child sexual abuse material (CSAM) by digital platforms dates back at least to the mid-1990s, when AOL manually reviewed suspected abuse material and subsequently developed automated detection processes.[25] By 2015, the Internet Watch Foundation (IWF) was distributing a database of digital fingerprints, or hashes, derived from confirmed abuse material. The database included material identified through the IWF's own investigations, reports from the public and internet companies, and the UK's Child Abuse Image Database.[26] Facebook, Google, Microsoft, Twitter and Yahoo participated in trials and implementation of the service, comparing hashes generated from newly uploaded images with those in the IWF database.[27]

The use of automated detection and reporting systems has since become widespread, but their implementation and coverage vary substantially between services. A 2022 analysis submitted in the context of the proposed regulation argued that the voluntary system of detection and reporting by companies had proven insufficient to adequately protect children.[28] The number of reports submitted to the National Center for Missing & Exploited Children (NCMEC) also varies considerably between platforms. In 2020, Facebook submitted 20.3 million reports, compared with 546,704 from Google, 144,095 from Snapchat, 96,776 from Microsoft, and 265 from Apple.[29]

The extent to which these systems can be evaluated is limited by differences in transparency and reporting practices. A 2023 survey of 50 online services found that only 20 published transparency reports on child sexual exploitation and abuse, while only 10 defined such material in sufficient detail to establish what was prohibited on their services.[30][31] A separate study likewise found substantial differences in the metrics and reporting methods used by online services, making it difficult to assess the effectiveness of their measures.[30]

Automated detection

[edit]

Existing industry practice relies primarily on automated detection technologies. Perceptual hashing is widely used to identify previously known material, while some providers use machine learning to detect previously unknown images and videos, and machine-learning-based analysis of text to identify potential online grooming.[32]

One of the most widely used perceptual hashing systems is PhotoDNA, developed by Microsoft and Dartmouth College in 2009.[33][34] In an analysis published by Ofcom in 2024, a PhotoDNA threshold selected to provide greater resistance to image alterations produced a false-positive rate of 0.3% under the conditions of the study.[35] Published independent performance data for other commercial classifiers and systems designed to detect grooming have generally been limited. Child Rights International Network noted that claims about the accuracy of PhotoDNA and other detection tools were not supported by sufficient independent evaluation, while the European Commission's impact assessment did not provide specific false-positive rates for some of the classifiers it considered.[36][37]

The accuracy and implications of automated detection can vary depending on the prevalence of the material being sought and the characteristics of the detection system. Of 4,192 reports assessed by the Irish police in 2020, 852 were confirmed to contain child sexual abuse material and 471 were classified as false positives.[38] The figures have been cited as an illustration of the base rate fallacy in the context of large-scale detection systems.[39] However, these figures describe reports received and assessed by law enforcement and should not be interpreted as a general estimate of the accuracy of automated detection systems. In contrast, a 2025 European Commission review reported that the automated detections examined in its assessment were "overwhelmingly confirmed" as child sexual abuse material following human review.[40]

ePrivacy derogation

[edit]

The ePrivacy Directive was adopted in 2002 to regulate the processing of personal data and the protection of privacy in the electronic communications sector. The European Electronic Communications Code (EECC), adopted in 2018, included interpersonal communications services within the EU electronic communications regulatory framework. Member States were required to apply the EECC from 21 December 2020.[41]

The change in the legal framework affected the use of technologies by providers of number-independent interpersonal communications services to detect child sexual abuse material (CSAM) and the solicitation of children in private communications. In September 2020, the European Commission proposed a temporary derogation from certain provisions of the ePrivacy Directive to permit such technologies to continue to be used under specified conditions.[42] The legal uncertainty surrounding the change was associated with a reduction in reports of suspected child sexual abuse material from services operating in the European Union to the National Center for Missing & Exploited Children (NCMEC); the Internet Watch Foundation reported a 58% decrease over an 18-week period in late 2020 and early 2021.[43]

Regulation (EU) 2021/1232 established the temporary derogation in July 2021. It allowed providers of number-independent interpersonal communications services to voluntarily use specified technologies to detect, report and remove online child sexual abuse material and to detect and report the solicitation of children, subject to conditions and safeguards.[44] The regulation entered into force on 2 August 2021 and, following an extension in 2024, remained applicable until 3 April 2026.[45] The derogation was sometimes referred to as "Chat Control 1.0", particularly by organisations opposing the voluntary detection measures.[43]

During 2023, Meta reported that its services had actioned approximately 3.6 million pieces of CSAM detected using its media-matching technology in message threads involving an EU user. Users appealed approximately 7% of these actions, and 4.6% of the appealed items were restored after review.[46]

In March 2026, the European Parliament rejected a proposal to extend the application of Regulation (EU) 2021/1232. On 26 March, Parliament voted by 228 votes to 311, with 92 abstentions, against the proposed extension.[47] Parliament had supported a shorter extension, until August 2027, with a narrower scope, while the Commission proposal would have extended the derogation until 3 April 2028.[48] No agreement was reached with the Council, and Regulation (EU) 2021/1232 consequently ceased to apply on 3 April 2026.[49]

A new temporary derogation was subsequently adopted as Regulation (EU) 2026/1881. Adopted by the European Parliament and the Council on 24 July 2026, it again permits providers of number-independent interpersonal communications services to voluntarily use specified technologies to detect, report and remove online child sexual abuse material and to detect and report the solicitation of children, subject to conditions and safeguards.[50] The regulation was published in the Official Journal of the European Union on 28 July 2026 and is currently in force.[51] It applies until 3 April 2028.[52]

Provisions

[edit]

In furtherance of its 2020 strategy for a more effective fight against child sexual abuse, the European Commission proposed a regulation in May 2022 to lay down rules for preventing and combating child sexual abuse online.[53] The proposal would establish obligations for online service providers to assess and mitigate the risk that their services could be misused for the dissemination of child sexual abuse material (CSAM) or the solicitation of children. It would also establish procedures for the detection, reporting and removal of CSAM, provide measures to assist victims in removing material depicting them, and establish an EU Centre on Child Sexual Abuse.[54]

Under the Commission proposal, providers would be required to carry out risk assessments covering the possibility that their services could be misused for the dissemination of CSAM or the solicitation of children. Providers would then be required to take proportionate measures to mitigate identified risks, including measures relating to the design and operation of their services, reporting mechanisms and user safety.[55]

The Commission proposal also provides for detection orders, which could require a provider to detect known or new CSAM or the solicitation of children under specified conditions. Detection orders would be issued by judicial or independent administrative authorities and would be subject to requirements concerning necessity, proportionality and safeguards. The proposal also provides for measures to prevent general monitoring and for the protection of users' fundamental rights.[56]

The Commission proposal would establish an EU Centre on Child Sexual Abuse to support the implementation of the regulation. The Centre would receive and process reports from providers, maintain databases of indicators relating to known CSAM, support national authorities and providers, and assist with the identification and removal of material depicting victims.[57]

The European Parliament adopted its negotiating position in November 2023. Parliament's position retained risk assessment and mitigation obligations but proposed narrower conditions for detection orders. Detection orders would be used as a measure of last resort, would be targeted to specific users or groups of users reasonably suspected of being connected with child sexual abuse, and would be subject to judicial authorisation and other safeguards. Parliament's position also excluded communications protected by end-to-end encryption from detection orders.[58]

The Council adopted its negotiating position in November 2025. Its position retained mandatory risk assessments and mitigation measures for online service providers, with national authorities able to require additional mitigation measures where necessary. It also established different risk categories for online services and retained the possibility of voluntary detection, reporting and removal of CSAM by providers. The Council position provided for an EU Centre on Child Sexual Abuse and powers for national authorities to order the removal of illegal content, block access to it or, in the case of search engines, delist search results.[59]

The Council's position removed the Commission proposal's mandatory detection orders and instead focused on risk assessment, risk mitigation and voluntary detection by providers.[60] Interinstitutional negotiations between the Council and Parliament began after the Council adopted its position. Council documents record several technical and political trilogues during 2026, but the legislative procedure remains ongoing.[61]

As of October 2026, the permanent regulation has therefore not yet been adopted. The Council and Parliament continue to negotiate the final text, including the scope and conditions of detection measures, while the temporary framework governing voluntary detection is dealt with separately under Regulation (EU) 2026/1881.[62][63]

Definitions, scope and territorial application

[edit]

The proposal defines known and unknown abuse material, and grooming, definitions later used to determine risks providers must assess and to which its prevention, reporting and enforcement provisions apply.[64][65] The Council position added risk categories to the assessment framework, with stronger obligations for high-risk services.[66]

Providers of hosting, interpersonal communication, app stores and ISPs anywhere directing service toward the EU are covered,[67] Parliament's position explicitly brought online games into scope.[68]

Non-EU providers must maintain a point of contact within the EU for authorities and the proposed Centre to communicate with,[69] and to support cross-border enforcement.[70]

EU Centre for the Protection of Children from Child Sexual Abuse

[edit]

The EU currently relies on NCMEC, which has experienced backlogs lasting weeks,[71] to triage reports of suspected abuse occurring in Europe.[72] The proposal establishes a regional Centre to:

  • receive, via a secure reporting system,[73] reports to be assessed directly within the EU,[74]
  • reject false positives without need for a material investigation,[75] and notify the originating platform enabling it to improve its detection methods.[76]
  • route legitimate reports to Europol and any authorities with likely jurisdiction,[77][78]
  • maintain databases of known and suspected abuse indicators,[79]
  • making detection technologies available to providers for free,[80]
  • serve as a knowledge hub,[81]
  • support victim assistance,
  • help law-enforcement authorities act on reports,[82][83]
  • issue an annual transparency report on its own performance.[84]

As of June 2026 most provisions concerning the Centre are agreed, except for its authority to conduct its own searches.[85]

Risk assessments, mitigations and reporting

[edit]

The draft legislation would harmonize industry practice by requiring providers to assess the risk that their services could be misused for abuse, adopt reasonable mitigations,[86] and report their assessments and mitigation measures to the Centre every 3 months.[87]

Incident reporting

[edit]

The legislation requires hosting and interpersonal communications providers report potential abuse incidents arising from their own detection,[88] or from any detection order it has received[89] to the Centre immediately.[90] Reporting mandates sufficient information about an incident to be useful to authorities,[91] and information of sufficient quality.[92]

Incident data retention

[edit]

The proposal limits how abuse incident data can be used and retained by platforms:[93]

  • to improve their detection systems,[94] except where it requires retaining personal data, [95]
  • when blocking or terminating service to an account associated with abuse, related complaints and legal processes,[96]
  • only for as long as strictly necessary, and for no more than 12 months,[97] unless requested by a court,[98]
  • and accessed only for the purposes for which it was originally retained.[99]

Enforcement measures

[edit]

Detection orders

[edit]

A court can issue a detection order against a service where its own efforts have failed to mitigate abuse.[100]

Removal orders

[edit]

A court can also issue a removal order, requiring a hosting provider or communication service to remove content within 24 hours.[101]

Blocking orders

[edit]

A blocking order enabled a court to require an ISP prevent access to material that cannot otherwise be removed.[102]

Delisting orders

[edit]

Search engines can be required to stop surfacing abuse material through a delisting order.[103]

Redress, notice and restoration

[edit]

Court orders under the legislation can be challenged by the platform itself or by the users it affects.[104]

Penalties and jurisdiction

[edit]

The legislation introduces enforcement penalties against services:

  • non-compliance fines up to 6% of worldwide annual income,[105]
  • fines up to 1% of worldwide annual income for failing to provide, or providing incorrect information,[106]
  • periodic fines up to 5% of average daily worldwide turnover for continued non-compliance.[107]

Fines must be calibrated to the seriousness and intentionality of the breach, and the size and financial health of the relevant service.[108]

Age verification

[edit]

The proposed legislation requires app stores to stop children installing apps with a significant risk of grooming.[109]

Private message services are also required to use age verification if their assessment identified a significant risk of grooming.[110]

Victim rights and assistance

[edit]

Victims are granted new rights under the proposal to know about incidents involving themselves, to receive support from the Centre, and support to remove abuse material involving them.[111]

User reporting

[edit]

Providers are required to operate a user-friendly mechanism to flag potential abuse material on their services.[112]

Legislative timeline

[edit]
  • 11 May 2022 – The European Commission presented its draft legislation.[113]
  • 28 July 2022 – The European Data Protection Supervisor and Data Protection Board issued a joint opinion stating the proposal "could become the basis for de facto generalized and indiscriminate scanning of the content of virtually all types of electronic communications", which could hinder sharing legal content due to the chilling effect.[114][115]
  • 21 December 2022 – The Economic and Social Committee issued an opinion supporting the proposal's objective, but warned detection measures were disproportionate, risked widespread monitoring of private communications and could weaken privacy and end-to-end encryption.[116][117]
  • 23 March 2023 – The Swedish Presidency of the Council circulated a new compromise text, 7595/23,[118] substantially reworking the May 2022 proposal and earlier Council drafts.[119]
  • 13 April 2023 – The Parliamentary Research Service published an impact assessment commissioned by the LIBE Committee.[120] It found no available technology could reliably detect abuse material without substantial error rates, and warned teenagers could "feel uncomfortable when consensually shared images could be classified as abuse material".[121]
  • 26 April 2023 – The Council Legal Service issued an opinion concluding detection orders risked amounting to general and indiscriminate scanning that could seriously interfere with the rights to privacy and protection of personal data under Articles 7 and 8 of the Charter of Fundamental Rights.[122] Drawing on Court of Justice of the European Union jurisprudence, it found a serious risk that the proposed regime would compromise the essence of those rights.[123]
  • 12 October 2023 – The German government proposed splitting the draft regulation into broadly supported provisions and controversial provisions concerning mandatory detection. It proposed addressing detection measures in a separate regulation and extending the temporary derogation while negotiations continued.[124]
  • 14 November 2023 – The LIBE Committee adopted a position limiting detection orders to time-limited, judicially authorized measures of last resort targeting individuals or groups rather than entire services, while excluding end-to-end encryption from their scope.[125]
  • 13 February 2024 – The European Court of Human Rights ruled in an unrelated case that requiring degraded end-to-end encryption "cannot be regarded as necessary in a democratic society". The ruling underlined parliament's decision to protect encrypted communications.[126]
  • 28 May 2024 – The Belgian Presidency circulated a text proposing "upload moderation" and seeking a majority by limiting scanning to images, videos, and URLs and requiring consent before transmission. Users who refused would lose the ability to share files. Critics argued that scanning before encryption still amounted to client-side scanning.[127]
  • 20 June 2024 – The Belgian Presidency abandoned the vote because the proposal lacked the required qualified majority.[128][129][130]
  • 12 December 2024 – The Hungarian Presidency's efforts also failed. Hungary continued work on variants of the Belgian approach, but member states remained divided over mandatory detection, encryption, proportionality, and the reliability of scanning technologies.[131]
  • 5 June 2025 – The Polish Presidency explored another compromise centred on risk mitigation and a narrower detection system, but again failed to assemble a majority. A June 2025 Council progress document recorded continued disagreement over detection obligations and encrypted services.[132]
  • 1 July 2025 – Denmark assumed the presidency, stating in its programme they would "give the work on the Child Sexual Abuse (CSA) Regulation and Directive high priority".[133]
  • 8 October 2025 – The German government confirmed it would not support the Danish proposal, preventing it from reaching the required majority.[134][135]
  • 30 October 2025 – The Danish Presidency removes mandatory detection orders, circulating a revised text 14092/25[136] abandoning the obligation to conduct mandatory scanning. It retained voluntary detection, strengthened risk-assessment and mitigation duties, and preserved the proposed EU Centre.[137][138]
  • 19 November 2025 – Committee of Permanent Representatives endorse the Danish compromise as the basis for final Council approval.[139]
  • 26 November 2025 – European Council adopted its negotiating position. It does not require providers to detect abuse proactively, emphasized compulsory risk assessments and mitigation while making the temporary voluntary-scanning regime permanent.[140]
  • 9 December 2025 – Parliament, Council and Commission begin trilogues.
  • 29 June 2026 – Parliament's negotiating team release a statement indicating negotiations had "managed to reach compromises on almost the entire Regulation", allowing "us to focus on finding balanced solutions on the remaining aspects of the Regulation, in particular on detection, as early as possible".[141]
  • 23 July 2026 – European Council gave final approval to the reinstatement of the derogation.[142]

Trilogue negotiations

[edit]

Trilogue meetings began after the Council adopted its negotiating position in November 2025.[143] By April 2026, negotiators had reached consensus on risk assessment, mitigation measures and reporting, while detection measures remained the focus of debate.[144]

As of July 2026, the principal dispute concerned whether detection by platforms should remain voluntary, or could also be required through targeted detection orders as a measure of last resort.[144][145] Open questions included which users or groups could be targeted, how they would be identified and the basis for selection.[146] Negotiation also continues on whether detection should cover known material, previously unknown material and the grooming of children.[147] Reporting has indicated agreement that end-to-end encrypted communications should be excluded from detection technologies.[148]

Support

[edit]

The proposed regulation has been supported by child advocacy groups including the Internet Watch Foundation and members of the ECLAG coalition.[4][149] In the European Parliament, the European People's Party has been a strong supporter of the proposal.[2]

Criticism

[edit]
2021 infographic opposing the ePrivacy derogation

Opponents of the original Commission proposal often highlight its mandatory detection provisions could impose surveillance of digital private communications, and as such refer to it as Chat Control.[12][150][13] Some civil society organisations and activists have argued it was incompatible with fundamental rights, infringing on the right to privacy.[151][152] Opposition has come from many sides of the political spectrum including from left-wing, liberal and right-wing politicians.[6]

In April 2023, Parliament confirmed they had received messages calling to vote against the Commission's proposal.[153]

EU Commissioner Ylva Johansson has been criticised regarding how the proposal was drafted and promoted. A transnational investigation by European media outlets revealed involvement of foreign technology and law enforcement lobbyists in its preparation.[154] This was also highlighted by digital rights organisations, which Johansson rejected to meet on three occasions.[155] Johansson was also criticised for the use of micro-targeting techniques to promote its controversial draft proposal, which violated the EU's data protection and privacy rules.[156]

Some claims criticizing the proposals, such as that governments would be able to read the messages of individuals at will, have been characterized as false or misleading.[157][158]

Public opinion

[edit]

A poll released in April 2026 by the Central European Digital Media Observatory found that 58% of respondents across 9 EU states believed the proposal would improve online safety, though only 22% of respondents reported being aware of it. 28% of respondents believed the proposal would threaten freedom of speech.[159]

See also

[edit]

References

[edit]

Citations

[edit]
  1. ↑ Chee, Foo Yun (26 November 2025). "EU states back away from forcing Big Tech to detect and remove child pornography". Reuters. Retrieved 15 July 2026.
  2. 1 2 Leal, Adnan (18 July 2026). "Why the EU's so-called Chat Control law has privacy experts up in arms". euronews. Retrieved 19 July 2026.
  3. ↑ "A beginner's guide to EU rules on scanning private communications: Part 2". EDRi. Retrieved 12 July 2026. The Commission's plans have been coined "Chat Control" by Patrick Breyer, a human rights lawyer and MEP, because they seek to automatically scan the chats, messages and web-based emails of every person in the EU (including young people)
  4. 1 2 "Letter from ECLAG to MPs" (PDF). Archived (PDF) from the original on 11 April 2024. Retrieved 12 July 2023.
  5. ↑ "Fight Chat Control - Member State Positions". fightchatcontrol.eu. Retrieved 11 July 2026.
  6. 1 2 "Chat Control 1.0 passed the European Parliament — through the back door". euronews. 10 July 2026. Retrieved 12 July 2026.
  7. ↑ Clark, Sam (10 October 2025). "Why Europe is freaking out about 'chat control'". POLITICO. Retrieved 12 July 2026.
  8. ↑ "Statement by the EP negotiating team on combatting child sexual abuse online | News | European Parliament". www.europarl.europa.eu. 29 June 2026. Retrieved 15 July 2026.
  9. ↑ "Press corner". European Commission - European Commission. Archived from the original on 27 April 2021. Retrieved 12 July 2023.
  10. ↑ "EU plans new law to combat child abuse – DW – 01/09/2022". dw.com. Archived from the original on 4 February 2023. Retrieved 4 February 2023.
  11. ↑ Birchard, Rosie; Braunschweig, Beatrice von (14 October 2025). "EU delays 'chat control' law over privacy concerns". dw.com. Retrieved 12 July 2026. Under the latest proposal penned by current EU chair Denmark, tech firms deemed high risk could be ordered to scan all links, images and videos — though not texts — shared on their platforms, to report instances of suspected child sexual abuse material to law enforcement ... Most controversially, the rules would also apply to content shared on messengers such as WhatsApp, which use encryption — a technical promise that your message won't be seen by anyone other than the person it's intended for.
  12. 1 2
  13. 1 2 Mullin, Joe (19 October 2022). "EU Lawmakers Must Reject This Proposal To Scan Private Chats". Electronic Frontier Foundation. Archived from the original on 15 March 2023. Retrieved 10 March 2023.
  14. ↑ "Defend encryption! Open letter to the EU urging them to protect your privacy". Retrieved 17 June 2024.
  15. ↑ "Chat Control: What is actually going on?". European Digital Rights (EDRi). 24 September 2025. Retrieved 12 July 2026. EU governments will decide whether to endorse or reject a mass surveillance, encryption-breaking and anonymity-ending law: the EU CSA Regulation
  16. ↑ [12][13][14][15]
  17. ↑ Directive 2011/93/EU of the European Parliament and of the Council of 13 December 2011 on combating the sexual abuse and sexual exploitation of children and child pornography, and replacing Council Framework Decision 2004/68/JHA, vol. 335, 13 December 2011, retrieved 16 July 2026
  18. ↑ "Combating child sexual abuse and exploitation" (PDF). European Parliamentary Research Service. September 2024. Retrieved 17 July 2026. During the previous term, Parliament repeatedly stressed the importance of fully implementing Directive 2011/93/EU.
  19. ↑ "EU Strategy for a more effective fight against child sexual abuse". European Parliament Legislative Train Schedule. Retrieved 17 July 2026. The Council ... and the European Parliament ... had urged for such measures.
  20. ↑ "Curbing the surge in online child abuse: The dual role of digital technology in fighting and facilitating its proliferation" (PDF). European Parliamentary Research Service. November 2020. pp. 2–3. Retrieved 17 July 2026. The pandemic has created a unique situation that has seen both child sex offenders and minors spending more time online.
  21. ↑ "Commission adopts strategy for a more effective fight against child sexual abuse". Better Internet for Kids. 2020. Retrieved 17 July 2026. The strategy was announced ... as part of the European Commission's Security Union Strategy.
  22. ↑ "Combating child sexual abuse online" (PDF). European Parliamentary Research Service. 30 May 2023. Retrieved 17 July 2026.
  23. ↑ "Single Market For Digital Services and amending Directive 2000/31/EC". Retrieved 12 July 2026. Where a provider of hosting services becomes aware of any information giving rise to a suspicion that a criminal offence involving a threat to the life or safety of a person or persons has taken place, is taking place or is likely to take place, it shall promptly inform the law enforcement or judicial authorities of the Member State or Member States concerned of its suspicion and provide all relevant information available
  24. ↑ "Single Market For Digital Services and amending Directive 2000/31/EC (Digital Services Act)". Retrieved 12 July 2026. Nothing in this Regulation should be construed as an imposition of a general monitoring obligation or a general active fact-finding obligation, or as a general obligation for providers to take proactive measures in relation to illegal content.
  25. ↑ "Building a Database of CSAM for AOL, One Image at a Time". Community Signal. Retrieved 14 July 2026. when he first started at AOL, in the mid-'90s, the work of finding and reviewing CSAM was largely manual
  26. ↑ "Child sexual abuse 'hash lists' shared with internet giants". Wired. Retrieved 14 July 2026. The master list is based on content the IWF's own analysts investigations have assessed and confirmed. This content may have been flagged up as a part of their own investigations, warnings from the public, internet companies, or from CAID.
  27. ↑ "Child sexual abuse 'hash lists' shared with internet giants". Wired. Retrieved 14 July 2026. When any new image is uploaded onto their services, it will be automatically hashed on their end. Then it can be automatically compared to our hash list.
  28. ↑ Pingen 2022: "It is submitted that the current system based on voluntary detection and reporting by companies has proven insufficient to adequately protect children"
  29. ↑ "What Apple Can Do Next to Fight Child Sexual Abuse". Wired. Retrieved 14 July 2026. Facebook topped the 2020 list-making 20.3 million reports last year. Google made 546,704; Dropbox 20,928; Twitter 65,062, Microsoft 96,776; and Snapchat 144,095. Apple made just 265 CSAM reports
  30. 1 2 Lu, Mengyao; Lamond, Maria; Fry, Deborah (2024). "A content analysis of metrics on online child sexual exploitation and abuse used by online content-sharing services". Child Abuse & Neglect. 157 107046. doi:10.1016/j.chiabu.2024.107046. PMID 39316848. Without such an evidence base, there are no objective measures to assess the progress and effectiveness in addressing OCSEA.
  31. ↑ Transparency Reporting on Child Sexual Exploitation and Abuse Online (PDF) (Report). OECD. 2023. pp. 6–7. Retrieved 13 July 2026. Only 10 of the 50 services define CSEA with sufficient detail to understand what is prohibited on their services, and only 20 of the services issue a transparency report on CSEA.
  32. ↑ "Explaining the technology for detecting child sexual abuse online". Child Rights International Network. 10 November 2023. Retrieved 14 July 2026. The identification of unknown child sexual abuse material can only be done through artificial intelligence, based on machine learning. [..] The detection of grooming requires the analysis of text through machine learning.
  33. ↑ "What Apple Can Do Next to Fight Child Sexual Abuse". Wired. Retrieved 14 July 2026. PhotoDNA, which was developed by Microsoft and Dartmouth College in 2009
  34. ↑ "Microsoft tackles spread of child abuse imagery with free online tool". Wired. Retrieved 14 July 2026. PhotoDNA will then be able to identify exploitative imagery whenever it comes across any photo with a signature matching one held in its database of known illegal images.
  35. ↑ "Protecting people from illegal harms online: Volume 2—Service design and user choice" (PDF). Ofcom. 16 December 2024. p. 183. Retrieved 14 July 2026.
  36. ↑ "Explaining the technology for detecting child sexual abuse online". Child Rights International Network. Retrieved 14 July 2026. PhotoDNA, one of the main tools for perceptually hashing photos and videos, has been said to have a false positive rate of 1 in 50 billion. However, there is no independent review of this technology.
  37. ↑ "Explaining the technology for detecting child sexual abuse online". Child Rights International Network. Retrieved 14 July 2026. The Commission's Impact Assessment does not provide specific false positive error rates for Thorn's classifier or the other tools it mentions.
  38. ↑ "An Garda Síochána unlawfully retains files on innocent people who it has already cleared of producing or sharing of child sex abuse material". Irish Council for Civil Liberties. Retrieved 14 July 2026. Of the 4,192 reports received, only 852 were found to contain child sexual abuse material, while 471 were categorised as false positives.
  39. ↑ Steel, Chad M.S. (2024). "Artificial intelligence and CSEM - A research agenda". Child Protection and Practice. 2 100043. doi:10.1016/j.chipro.2024.100043. Retrieved 9 July 2026.
  40. ↑ "COM(2025) 740 final". EUR-Lex. Retrieved 14 July 2026. The overwhelming majority of content detected using these technologies was confirmed as child sexual abuse material following human review.
  41. ↑ "Directive (EU) 2018/1972 establishing the European Electronic Communications Code". EUR-Lex. Retrieved 6 October 2026.
  42. ↑ "Proposal for a Regulation of the European Parliament and of the Council on a temporary derogation from certain provisions of Directive 2002/58/EC". EUR-Lex. Retrieved 6 October 2026.
  43. 1 2 "Why the EU's temporary law allowing companies to detect child sexual abuse online must be extended". Internet Watch Foundation. 9 March 2026. Retrieved 6 October 2026.
  44. ↑ "Regulation (EU) 2021/1232". EUR-Lex. Retrieved 6 October 2026.
  45. ↑ "Regulation (EU) 2021/1232". EUR-Lex. Retrieved 6 October 2026.
  46. ↑ "Interim Regulation Report Article 3(1)(g)(vii) — Meta Platforms Ireland Limited". AskTheEU.org. Retrieved 6 October 2026.
  47. ↑ "Child sexual abuse online: voluntary detection measures will not be extended". European Parliament. 26 March 2026. Retrieved 6 October 2026.
  48. ↑ "Temporary derogation from certain provisions of the ePrivacy Directive to combat online child sexual abuse". European Parliament Legislative Observatory. Retrieved 6 October 2026.
  49. ↑ "Regulation (EU) 2021/1232". EUR-Lex. Retrieved 6 October 2026.
  50. ↑ "Regulation (EU) 2026/1881". EUR-Lex. Retrieved 6 October 2026.
  51. ↑ "Regulation (EU) 2026/1881". EUR-Lex. Retrieved 6 October 2026.
  52. ↑ "Regulation (EU) 2026/1881". EUR-Lex. Retrieved 6 October 2026.
  53. ↑ "Proposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse". EUR-Lex. Retrieved 6 October 2026.
  54. ↑ "Proposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse". EUR-Lex. Retrieved 6 October 2026.
  55. ↑ "Proposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse". EUR-Lex. Retrieved 6 October 2026.
  56. ↑ "Proposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse". EUR-Lex. Retrieved 6 October 2026.
  57. ↑ "Proposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse". EUR-Lex. Retrieved 6 October 2026.
  58. ↑ "Child sexual abuse online: effective measures, no mass surveillance". European Parliament. 14 November 2023. Retrieved 6 October 2026.
  59. ↑ "Child sexual abuse: Council reaches position on law protecting children from online abuse". Council of the European Union. 26 November 2025. Retrieved 6 October 2026.
  60. ↑ "Child sexual abuse: Council reaches position on law protecting children from online abuse". Council of the European Union. 26 November 2025. Retrieved 6 October 2026.
  61. ↑ "Procedure 2022/0155/COD". EUR-Lex. Retrieved 6 October 2026.
  62. ↑ "Procedure 2022/0155/COD". EUR-Lex. Retrieved 6 October 2026.
  63. ↑ "Regulation (EU) 2026/1881". EUR-Lex. Retrieved 6 October 2026.
  64. ↑ Pingen 2022: "Providers will have to assess the risk that their services are misused to disseminate child sexual abuse material or for purposes to solicit children, known as grooming"
  65. ↑ "Combating child sexual abuse online" (PDF). European Parliamentary Research Service. January 2026. p. 4. Retrieved 15 July 2026. The general objective of the proposal is to improve the functioning of the internal market ... by introducing consistent mandatory EU rules to prevent and combat child sexual abuse online, covering both old and new CSAM as well as grooming.
  66. ↑ Pingen 2025: "The Council text introduces three risk categories for online services, allowing proportional obligations – particularly for high-risk platforms, which may be required to contribute to the development of mitigation technologies."
  67. ↑ "EU Proposes Legislation Targeting Online Child Sexual Abuse Material". Orrick. 10 August 2022. Retrieved 16 July 2026. If a covered service has an establishment in Europe, or targets its activities towards one or more Member States, then it will have to comply with the Regulation.
  68. ↑ "How the EU is fighting child sexual abuse online". European Parliament. 26 June 2025. Retrieved 16 July 2026. The regulation would also introduce specific mandatory mitigation measures for services directly targeting children, platforms primarily used for the dissemination of pornographic content, and certain chat services within games.
  69. ↑ "EU Proposes Legislation Targeting Online Child Sexual Abuse Material". Orrick. 10 August 2022. Retrieved 16 July 2026. Non-EU covered services will also be obligated to appoint a European representative to serve as a point of contact for regulators.
  70. ↑ "Obligations of Online Service Providers to Fight Against Child Sexual Abuse Material in the European Union". Journal of Human Trafficking. 2026. doi:10.1080/15564886.2025.2557901. Retrieved 16 July 2026. OSPs might establish their CSAR Proposal point of contact in Country A to receive removal orders while receiving European investigation orders in Country B.
  71. ↑ "Report urges fixes to online child exploitation CyberTipline before AI makes it worse". AP News. 22 April 2024. Retrieved 13 July 2026. It took them weeks to get through that backlog.
  72. ↑ Quintel, Teresa (18 November 2025). "Europol's Data Dominance: The Multifaceted Involvement and Impact of Data Analytics Across Sectors". European Papers. 10 (3): 747–778. doi:10.15166/2499-8249/853. ISSN 2499-8249. The EU Centre will substitute the EU law enforcement's reliance on the NCMEC as it would provide a triage role for reports of potential CSAM from providers.
  73. ↑ Global Response Against Child Exploitation: Legal Report (PDF) (Report). GRACE. 2024. p. 77. Retrieved 16 July 2026. These European CSA reports are shared at first solely with the EU Centre via a secure information sharing system.
  74. ↑ Pingen 2022: "The EU Centre will support national law enforcement and Europol by reviewing the reports from the providers to ensure that they are not submitted in error. It will channel reports quickly to law enforcement"
  75. ↑ Global Response Against Child Exploitation: Legal Report (PDF) (Report). GRACE. 2024. p. 77. Retrieved 16 July 2026. Having received such a report, the EU Centre has to assess whether the report is "manifestly unfounded" in order to avoid obvious false positives.
  76. ↑ Global Response Against Child Exploitation: Legal Report (PDF) (Report). GRACE. 2024. p. 77. Retrieved 16 July 2026. When the EU Centre considers a report to be "manifestly unfounded", the EU Centre has to inform the reporting provider to that extent and specify the reasons.
  77. ↑ Pingen 2022: "The EU Centre will support national law enforcement and Europol by reviewing the reports from the providers to ensure that they are not submitted in error. It will channel reports quickly to law enforcement"
  78. ↑ Global Response Against Child Exploitation: Legal Report (PDF) (Report). GRACE. 2024. p. 77. Retrieved 16 July 2026. The EU Centre has to forward the report to Europol and to the competent national LEA(s) likely to have jurisdiction.
  79. ↑ Pingen 2025: "It also confirms the creation of a new EU agency ... to support implementation, maintain a central database of verified CSAM indicators, and channel reports to Europol and national law enforcement."
  80. ↑ Pingen 2022: "It will also make detection technologies available to providers free of charge so that detection orders addressed to providers can be executed."
  81. ↑ "Controversial Proposal on Combating Child Sexual Abuse Online". eucrim.eu. Retrieved 18 July 2026. "It will .. support Member States by serving as a knowledge hub for best practices on the prevention of child sexual abuse and assistance to victims."
  82. ↑ Pingen 2022: "It will channel reports quickly to law enforcement and support Member States by serving as a knowledge hub for best practices on the prevention of child sexual abuse and assistance to victims. It will also make detection technologies available to providers free of charge"
  83. ↑ Transparency Reporting on Child Sexual Exploitation and Abuse Online (PDF) (Report). OECD. 2023. p. 32. Retrieved 13 July 2026. The proposed EU Centre will coordinate actions to fight against child sexual abuse, from detection and reporting, to prevention and assistance to victims. It will support law enforcement to act on reports.
  84. ↑ "Fundamental rights assessment of the framework for detection orders under the CSAM proposal" (PDF). Institute for Information Law. April 2023. Retrieved 18 July 2026. The EU Centre would publish annual transparency reports, compiling and analysing information from service providers and coordinating authorities, as well as information on its own activities
  85. ↑ Proposal for a Regulation laying down rules to prevent and combat child sexual abuse: State of play of interinstitutional negotiations (PDF) (Report). Council of the European Union. 22 June 2026. p. 2. Retrieved 13 July 2026. Provisional agreement has been reached on almost all the provisions related to the EU Centre, with the exception of own-initiative searches
  86. ↑ Pingen 2022: "Providers will have to assess the risk that their services are misused to disseminate child sexual abuse material or for purposes to solicit children, known as grooming; providers must also take reasonable mitigation measures tailored to the risk identified"
  87. ↑ des Hommes, Terre. "THE PROPOSED EU CHILD SEXUAL ABUSE REGULATION" (PDF). Retrieved 18 July 2025. Provider reports risk assessment and mitigation to CA every 3 months
  88. ↑ LIBE 2023a: "Upon obtaining actual knowledge on potential online child sexual abuse on their services, they should act expeditiously ... and ... report it to the EU Centre"
  89. ↑ Witting, Sabine K.; Malgieri, Gianclaudio (15 May 2023). "Voluntary detection orders under the proposed EU Child Sexual Abuse Regulation violate EU (privacy) law". European Law Blog. doi:10.21428/9885764c.1294c4df. Retrieved 18 July 2026. If a provider receives a detection order, it is obliged to use technologies to detect and report specific types of online CSA to a newly established 'EU Centre'.
  90. ↑ LIBE 2023a: Providers "should act expeditiously to remove or to disable access to that content and to report"
  91. ↑ LIBE 2023a: "Those reports should ... contain a minimum of information as specified in this Regulation, and providers should ensure the quality of the information submitted"
  92. ↑ LIBE 2023a: "Providers should ensure the quality of the information submitted so the EU Centre can conduct its assessment"
  93. ↑ "Joint Opinion 04/2022 on the Proposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse" (PDF). europea.eu. EDPB & EDPS. Retrieved 18 July 2026. Article 22 of the Proposal limits the purposes for which the providers subject to the Proposal may keep the content data and other data processed in connection to the measures taken to comply with the obligations set out in the Proposal
  94. ↑ "Joint Opinion 04/2022 on the Proposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse" (PDF). europea.eu. EDPB & EDPS. Retrieved 18 July 2026. The Proposal indicates that providers may also preserve this information for the purpose of improving the effectiveness and accuracy of the technologies to detect online child sexual abuse for the execution of a detection order
  95. ↑ "Joint Opinion 04/2022 on the Proposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse" (PDF). europea.eu. EDPB & EDPS. Retrieved 18 July 2026. They shall not store any personal data for that purpose
  96. ↑ "D2.3 Research Report on Legislation" (PDF). CESAGRAM. 20 March 2024. Retrieved 18 July 2026. The purposes concern … measures against users, handling complaints and redress, and responding to competent authorities
  97. ↑ "D2.3 Research Report on Legislation" (PDF). CESAGRAM. 20 March 2024. Retrieved 18 July 2026. The data may be retained for as long as strictly necessary, but the retention period will never be more than 12 months
  98. ↑ "D2.3 Research Report on Legislation" (PDF). CESAGRAM. 20 March 2024. Retrieved 18 July 2026. The data retention period may be extended upon request by a competent national authority or court where necessary for ongoing administrative or judicial redress proceedings
  99. ↑ "D2.3 Research Report on Legislation" (PDF). CESAGRAM. 20 March 2024. Retrieved 18 July 2026. The data may only be accessed and processed for the purposes for which it was preserved
  100. ↑ Pingen 2022: "Detection orders will be issued by courts or independent national authorities."
  101. ↑ "The proposed EU Child Sexual Abuse Regulation" (PDF). Terre des Hommes. Retrieved 14 July 2026. order the removal of CSAM from a platform within 24 hours
  102. ↑ "Member States want internet service providers to do the impossible in the fight against child sexual abuse". European Digital Rights. 1 February 2023. Retrieved 17 July 2026. Under the Commission proposal, ISPs can be ordered to block Uniform Resource Locators (URLs) for known CSA material which is hosted outside the European Union if voluntary removal of the material is not possible.
  103. ↑ "Eurochild reacts to the Council's position on the Regulation to Prevent and Combat Child Sexual Abuse". Eurochild. 8 December 2025. Retrieved 16 July 2026. The competent national authorities will be empowered to require companies to remove content or, in the case of search engines, to delist search results.
  104. ↑ "Controversial Proposal on Combating Child Sexual Abuse Online". eucrim.eu. Retrieved 18 July 2026. Both providers and users will have the right to challenge any measure affecting them in court
  105. ↑ Lannier, Salomé (3 April 2026). "Obligations of Online Service Providers to Fight Against Child Sexual Abuse Material—a Systematization of EU Law". Victims & Offenders. 21 (3): 506–534. doi:10.1080/15564886.2025.2557901. Retrieved 18 July 2026. In case of noncompliance, penalties must be passed at the national level, with fines up to "6% of the annual income or global turnover of the preceding business year," or period payments of up to "5% of the average daily global turnover […] in the preceding financial year per day
  106. ↑ "Legislative Overview" (PDF). Online Trust Coalition. 1 January 2026. Retrieved 19 July 2026. Sanctions for providing incorrect, incomplete or misleading information, for failing to respond, failing to rectify incorrect, incomplete or misleading information or refusing to submit to an on-site inspection, shall not exceed 1% of the provider's annual income or total turnover.
  107. ↑ Lannier, Salomé (23 March 2026). "Obligations of Online Service Providers to Fight Against Child Sexual Abuse Material - a Systematization of EU Law". Victims & Offenders. 21 (3): 506–534. doi:10.1080/15564886.2025.2557901. Retrieved 19 July 2026. Authorities may impose periodic penalty payments of up to 5% of the provider's average daily worldwide turnover for each day of continued non-compliance
  108. ↑ "Last attempt at chat control: Hungary to force approval to scan". netzpolitik.org. Member States should ensure that the competent authorities, whether to impose a penalty and when determining the type and level of, penalty is account is taken of all relevant circumstances, including: the nature, gravity and duration of the infringement; whether the infringement was intentional or negligent; any previous infringements by the provider or the other person; the financial strength of the provider or the other person; the level of cooperation of the provider or the other person with the competent authorities; the nature and size of the provider or the other person, in particular it is a micro, small or medium-sized enterprise; the degree of fault of the provider or other person, taking into account the technical and organizational taking measures by the provider it to with this regulation.
  109. ↑ "Online age verification and children's rights" (PDF). EDRI. 4 October 2023. Article 6 requires app stores ... to block 'child users' ... from downloading apps with a 'significant' risk of grooming ... and to use ... age assessment measures
  110. ↑ "Online age verification and children's rights" (PDF). EDRI. 4 October 2023. Article 4.3 requires private message services, including those offered via gaming platforms, to use document-based age verification or age estimation measures if they have identified a risk of grooming
  111. ↑ Apostle, Julia (10 August 2022). "EU Proposes Legislation Targeting Online Child Sexual Abuse Material". www.orrick.com. Orrick. Retrieved 18 July 2026. a victim's right to information ... [and] a right of assistance and support for removal of such content.
  112. ↑ Gates, K&L. "Global Platform for Child Exploitation Policy, Legal Q&A: European Union" (PDF). Global Platform for Child Exploitation Policy. p. 31. Retrieved 18 July 2026. Article 12(3) of the Proposal requires providers to 'establish and operate an accessible, age-appropriate and user-friendly mechanism that allows users to flag to the provider potential online child sexual abuse on the service,' ... thereby establishing a direct pathway for victims and the general public to report suspected CSAM or solicitation of children to platforms
  113. ↑ Pingen 2022.
  114. ↑ Finlay, McCann FitzGerald LLP-Adam (29 August 2022). "EDPB and EDPS opine on proposed further online content regulation to prevent and combat child sexual abuse". Lexology. Retrieved 12 July 2026.
  115. ↑ "EDPB-EDPS Joint Opinion 4/2022 on the Proposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse" (PDF). European Data Protection Supervisor. 28 July 2022. p. 20. Archived (PDF) from the original on 21 September 2023. Retrieved 16 October 2023.
  116. ↑ "Opinion of the European Economic and Social Committee on the Proposal for a Regulation laying down rules to prevent and combat child sexual abuse". Official Journal of the European Union (C 486). 21 December 2022. Retrieved 16 July 2026.
  117. ↑ "This EU law could end online privacy". Context. 10 November 2022. Retrieved 16 July 2026.
  118. ↑ "Proposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse - Presidency compromise texts". Retrieved 13 July 2026.
  119. ↑ Claburn, Thomas (3 March 2023). "German Digital Affairs Committee hearing heaps scorn on Chat Control". The Register.
  120. ↑ "EU Parliament study slams online child abuse material proposal". www.euractiv.com. 13 April 2023. Archived from the original on 2 June 2023. Retrieved 2 June 2023.
  121. ↑ EPRS 2023a
  122. ↑ "EU Council's legal opinion gives slap to anti-child sex abuse law". Euractiv. 9 May 2023. Archived from the original on 1 June 2023. Retrieved 2 June 2023.
  123. ↑ "Opinion of the Legal Service: Proposal for a Regulation laying down rules to prevent and combat child sexual abuse" (PDF). Council of the European Union. 26 April 2023. Archived (PDF) from the original on 1 June 2023. Retrieved 2 June 2023.
  124. ↑ "Germany suggests splitting up child sexual abuse material regulation". Euractiv. 12 October 2023. Archived from the original on 18 November 2023. Retrieved 17 July 2026.
  125. ↑ "Detect child abusers without mass scanning". EPP. 14 November 2023. Archived from the original on 18 November 2023. Retrieved 18 November 2023.
  126. ↑ Claburn, Thomas (15 February 2024). "European Court of Human Rights declares backdoored encryption is illegal". The Register. Archived from the original on 18 February 2024. Retrieved 18 February 2024.
  127. ↑ Castro, Chiara (7 June 2024). "Proposed EU Chat Control law wants permission to scan your WhatsApp messages". TechRadar. Retrieved 12 July 2026.
  128. ↑ Leloup, Damien (21 June 2024). "« Chat control »: dans la lutte contre la pédopornographie, revers pour le projet de règlement européen de surveillance des messageries". Le Monde (in French). ISSN 1950-6244. Retrieved 12 July 2026.
  129. ↑ Ivanovs, Alex (20 June 2024). "EU Council has withdrawn the vote on Chat Control". Stack Diary. Retrieved 21 June 2024.
  130. ↑ "EU 'chat-control' plan goes back to drawing board". Brussels Signal. 20 June 2024. Retrieved 21 June 2024.
  131. ↑ Euractiv (13 December 2024). "EU interior ministers remain deadlocked on CSAM detection bill". Euractiv. Retrieved 12 July 2026.
  132. ↑ "Online child sexual abuse material; lack of progress prompts Polish Presidency of EU Council to recommend extending transitional solution". agence europe. Retrieved 13 July 2026.
  133. ↑ "A strong Europe in a changing world" (PDF). 1 July 2025. Retrieved 6 September 2025.
  134. ↑ "Germany will not support 'Chat Control' message scanning in the EU". therecord.media. Retrieved 12 July 2026.
  135. ↑ Jones, Connor (8 October 2025). "Germany slams brakes on EU's Chat Control device-scanning snoopfest". The Register. Retrieved 1 November 2025.
  136. ↑ "Proposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse - Presidency compromise texts". Retrieved 13 July 2026.
  137. ↑ Moreau, Claudie. "Danish Presidency backs away from 'chat control'". Euractiv. Archived from the original on 31 October 2025. Retrieved 14 July 2026. The Danish presidency of the EU Council has dropped mandatory detection obligations from its latest compromise proposal.
  138. ↑ Castro, Chiara (5 November 2025). "Chat Control isn't dead, Denmark has a new proposal − here's all we know". TechRadar. Retrieved 12 July 2026.
  139. ↑ "Proposal for a Regulation of the European Parliament and of the Council laying down rules to prevent and combat child sexual abuse - Partial mandate for negotiations with the European Parliament | Parlament Österreich". www.parlament.gv.at (in German). Retrieved 12 July 2026.
  140. ↑ Pingen 2025
  141. ↑ "Statement by the EP negotiating team on combatting child sexual abuse online | News | European Parliament". www.europarl.europa.eu. 29 June 2026. Retrieved 13 July 2026.
  142. ↑ "Fighting child sexual abuse online: interim measure protecting children now reinstated". Consilium (in German). Retrieved 24 July 2026.
  143. ↑ Parodi, Alessandro; Chee, Foo Yun (26 November 2025). "EU states back away from forcing Big Tech to detect and remove child pornography". Reuters. Retrieved 17 July 2026. EU countries will now have to thrash out details of the draft legislation with EU lawmakers before it can become law.
  144. 1 2 "CSAM regulation – interinstitutional negotiations progress, disagreements persist over voluntary nature of content detection". Agence Europe. 17 April 2026. Retrieved 17 July 2026. Nevertheless, the measures governing content detection continue to be the focus of debate.
  145. ↑ Meister, Andre (12 June 2026). "Trilog zur Chatkontrolle geht in entscheidende Phase". netzpolitik.org (in German). Retrieved 17 July 2026. Aufdeckungsanordnung: Freiwillig oder als letztes Mittel verpflichtend
  146. ↑ Meister, Andre (12 June 2026). "Trilog zur Chatkontrolle geht in entscheidende Phase". netzpolitik.org (in German). Retrieved 17 July 2026. Es sei auch nicht klar, wer diese Personen oder Gruppen identifiziere und auf welcher Basis.
  147. ↑ Meister, Andre (12 June 2026). "Trilog zur Chatkontrolle geht in entscheidende Phase". netzpolitik.org (in German). Retrieved 17 July 2026. LVA sprach sich für einen weiten Anwendungsbereich (bekanntes Material, neues Material, Grooming) aus.
  148. ↑ Meister, Andre (12 June 2026). "Trilog zur Chatkontrolle geht in entscheidende Phase". netzpolitik.org (in German). Retrieved 17 July 2026. Einigkeit besteht zwischen den Ko-Gesetzgebern, dass Ende-zu-Ende verschlüsselte Kommunikationsinhalte von Aufdeckungstechnologien ausgenommen bleiben sollen.
  149. ↑ "Online child sexual abuse: The EU has a choice. Not between privacy and protection, but between indifference and compassion". Eliminating Child Sexual Abuse Online. 10 November 2025. Retrieved 19 July 2026.
  150. ↑ "A beginner's guide to EU rules on scanning private communications: Part 2". European Digital Rights (EDRi). Archived from the original on 10 March 2023. Retrieved 10 March 2023.Vincent, James (11 May 2022). "New EU rules would require chat apps to scan private messages for child abuse". The Verge. Archived from the original on 10 March 2023. Retrieved 10 March 2023.
  151. ↑ "European Commission must uphold privacy, security and free expression by withdrawing new law, say civil society". European Digital Rights (EDRi). Archived from the original on 7 April 2023. Retrieved 7 April 2023.
  152. ↑ "Chat control: incompatible with fundamental rights". GFF – Gesellschaft für Freiheitsrechte e.V. Retrieved 18 June 2024.
  153. ↑ "Citizens' enquiries on the EU's proposal to address child sexual abuse online". Epthinktank. 4 April 2023. Archived from the original on 6 April 2023. Retrieved 7 April 2023.
  154. ↑ Zandonini, Giacomo; Fotiadis, Apostolis; Stavinoha, Luděk (25 September 2023). "'Who Benefits?' Inside the EU's Fight over Scanning for Child Sex Content". Archived from the original on 17 November 2023. Retrieved 18 November 2023.
  155. ↑ "Commissioner Johansson cannot be trusted with the EU's proposed CSA Regulation". European Digital Rights (EDRi). Archived from the original on 18 November 2023. Retrieved 18 November 2023.
  156. ↑ Tar, Julia (16 October 2023). "EU Commission's microtargeting to promote law on child abuse under scrutiny". www.euractiv.com. Archived from the original on 18 November 2023. Retrieved 18 November 2023.
  157. ↑ "What is 'chat control', the EU's contentious plan to fight online child abuse?". TheJournal.ie. 11 July 2026. Retrieved 17 July 2026.
  158. ↑ "Did the European Parliament Adopt a Law Allowing Online Platforms to Monitor Private Chats?". Myth Detector. 14 July 2026. Retrieved 17 July 2026.
  159. ↑ "Chat Control 2.0: Six out of ten Europeans believe it will improve online safety, while one-fifth are willing to protest against this regulation". CEDMO. Retrieved 12 July 2026.

Sources

[edit]


[edit]