The European Union's "Chat Control" proposal, first introduced in 2021 and now being considered in a revised form, aims to combat Child Sexual Abuse Material (CSAM) by requiring messaging platforms—including apps, social media, and email providers—to scan private digital communications for illegal content. The legislation is currently stalled as the European Parliament and the Council have yet to agree on a final text, leaving the bloc divided over how to balance child protection with privacy rights.
How Chat Control would work
The legislative framework is split into two parts: an interim measure, often called Chat Control 1.0, and a proposed permanent regulation, Chat Control 2.0. The interim measure creates an exemption to the EU's ePrivacy Directive, allowing platforms to voluntarily scan unencrypted communications. The permanent regulation, proposed by the European Commission, would make such scanning mandatory.
At the heart of the controversy is end-to-end encryption, which ensures that only the sender and recipient can read messages. To scan encrypted communications, the proposed law would require technology companies to implement "client-side scanning," which intercepts and analyses messages directly on a user's device before they are encrypted. This technical approach has drawn sharp criticism from digital rights organisations and security experts.
Supporters argue that automated tools are necessary to protect children online, especially as the volume of CSAM continues to grow. However, privacy advocates warn that the measures could effectively legalise mass surveillance, undermining the presumption of innocence. The automated AI filters used for scanning are prone to false positives, meaning ordinary family photos or messages could be flagged as illegal and trigger automatic reports to law enforcement.
The debate has intensified as the EU recently extended voluntary chat scanning for child abuse material until 2028, a move that critics see as a step toward permanent surveillance. Meanwhile, the European Parliament's civil liberties committee has raised concerns about the proportionality of the measures, and several member states, including Germany and Austria, have expressed reservations.
Digital rights groups, such as the Electronic Frontier Foundation and European Digital Rights, have launched campaigns against the proposal, arguing that it would create a backdoor to encryption and set a dangerous precedent for government access to private communications. They also point to the unreliability of AI detection systems, which have been shown to produce high rates of false positives in similar contexts, such as content moderation on social media platforms.
On the other side, law enforcement agencies and child protection organisations argue that the status quo is insufficient. They highlight that end-to-end encryption has made it harder to detect and prosecute child sexual abuse, and that voluntary measures have not yielded enough results. The European Commission has emphasised that the proposal includes safeguards, such as human oversight and strict data protection requirements, but critics remain unconvinced.
The political landscape is further complicated by the upcoming European Parliament elections, which could shift the balance of power on digital rights issues. Some MEPs have called for a more targeted approach, focusing on specific platforms or types of content rather than blanket scanning. Others have proposed alternative solutions, such as improving reporting mechanisms and investing in victim support services.
As the debate continues, European Pulse invites readers to share their views in our poll: should the EU scan your private messages to protect children, or does Chat Control go too far? The outcome of this legislative battle will have far-reaching implications for digital privacy and security across the continent, from Brussels to Berlin, Paris to Prague.


