India's proposed phone security rules that are worrying tech firms

https://www.reuters.com/world/china/indias-proposed-phone-security-rules-that-are-worrying-tech-firms-2026-01-11/

cross-posted from : https://lemmy.zip/post/56776769

SOURCE CODE DISCLOSURE:

BACKGROUND PERMISSION RESTRICTIONS:

  • Apps cannot access cameras, microphones or location services in the background when phones are inactive. Continuous status bar notifications are required when these permissions are active.

PERMISSION REVIEW ALERTS:

  • Devices must periodically display warnings prompting users to review all app permissions, with continuous notifications.

ONE-YEAR LOG RETENTION:

  • Devices must store security audit logs, including app installations and login attempts, for 12 months.

PERIODIC MALWARE SCANNING:

OPTION TO REMOVE PRE-INSTALLED APPS:

INFORMING GOVERNMENT OF MAJOR UPDATES:

TAMPER-DETECTION WARNINGS:

  • Devices must detect if phones have been rooted or "jailbroken", where users bypass built-in security restrictions, and display continuous warning banners to recommend corrective measures.

ANTI-ROLLBACK PROTECTION:

  • Phones must permanently block installation of older software versions, even if officially signed by the manufacturer, to prevent security downgrades.
24 points · 3 comments · view on lemmy.world

3 Comments

kolorafa@lemmy.world · 6 pts · 230d

Anti rollback shoud have exceptions for when new software is bad/broken, you would be able to unlock/disable this feature (with some boot alerts or something).

jtzl@lemmy.zip · 2 pts · 229d

Do it. Let's see who's more powerful.

baatliwala@lemmy.world · 1 pts · 230d

Our government has some technologically illiterate morons