India denies report on proposal to seek smartphone source code, says consultations ongoing
The tech companies have countered that the package of 83 security standards, which would also include a requirement to alert the government to major software updates, lacks any global precedent and risks revealing proprietary details
Highlights
- India denies plans to force smartphone makers to share source code.
- Government says media reports misrepresented ongoing consultation process.
- Proposed smartphone security standards remain under industry review.
- Apple and Samsung reportedly opposed draft security requirements.
- India cites rising cybercrime and data risks driving security push.
- Stakeholder consultations continue to shape mobile security regulations.
India has denied a report that it plans to require smartphone makers to share source code with the government and implement a range of software changes as part of proposed security measures, saying consultations with industry stakeholders are ongoing.
The Ministry of Electronics and Information Technology said late on Monday that reports claiming the government intended to force such measures had misrepresented the process.
"These news reports have not quoted any statement from these smartphone manufacturers or the industry associations which represent them. Instead, they have selectively chosen to ignore the comments of industry associations, which clearly indicates its mischievous intent to sensationalise the news," the ministry said in a statement.
Earlier, Reuters reported that Indian authorities were considering a package of 83 proposed security standards for smartphones, including provisions that could allow designated Indian laboratories to analyse or test source code, according to government and industry documents and people familiar with the discussions. The proposals prompted behind-the-scenes opposition from companies such as Apple and Samsung, the sources said.
The ministry said the government was fully committed to working with the industry and addressing concerns, adding that it was engaging with companies to understand technical and compliance burdens as well as international best practices adopted by smartphone manufacturers.
The proposals are part of Prime Minister Narendra Modi's broader push to strengthen data security as online fraud and data breaches rise in the world's second-largest smartphone market. India has nearly 750 million smartphones in use.
IT Secretary S. Krishnan previously told Reuters that "any legitimate concerns of the industry will be addressed with an open mind," adding it was "premature to read more into it." A ministry spokesperson earlier said it could not comment further due to ongoing consultations with technology firms.
In its latest statement, the ministry said smartphones were increasingly being used for financial transactions, delivery of public services and storage of sensitive personal information, making them attractive targets for cybercriminals.
"With over a billion mobile users in the country, smartphones today hold vast amounts of personal and financial data," the statement said, adding that any compromise of mobile security could lead to identity theft, financial losses and privacy violations.
Indian government requirements have previously drawn resistance from technology firms. Last month, authorities revoked an order mandating a state-run cyber safety application on smartphones amid surveillance concerns, while last year the government pressed ahead with stricter testing rules for security cameras.
Consultations with stakeholders are continuing to develop what the ministry described as an appropriate and robust regulatory framework for mobile security.
