Learn

Could a new law scan your private messages? The debate over "client-side scanning"

Europe is debating a rule that would check your messages on your own phone before you send them. Here is what that means — in plain words. As of September 2026, it is still just a proposal, not a law.

Key takeaways

  • End-to-end encryption means only you and the person you message can read what you send.
  • "Client-side scanning" checks your message on your phone before it gets locked.
  • Supporters want it to catch crimes against children. Critics say it breaks private messaging.
  • This is a debate, not a law. It may still change or fail.

What encryption promises

End-to-end encryption is like a sealed envelope. Your message is locked on your phone, and only the person you sent it to can open it. Nobody in between can read it — not the app, not your phone company, not someone watching the network. That promise, only the two ends can read it, is the whole point of the word "encryption".

What client-side scanning changes

Client-side scanning does not break the lock. It reads your message on your own phone before the lock closes. Supporters say the encryption is untouched, and technically that is true. Critics say it misses the point: the promise was that only you and the person you sent it to could see the message, and now a scanner reads it first. It is like someone reading your letter over your shoulder before you seal the envelope.

What is happening in Europe

The plan is often nicknamed "Chat Control", and its stated goal is to detect child sexual abuse material and grooming. In 2026 the EU extended a temporary rule that lets messaging apps choose to scan unencrypted messages for that content. The bigger fight is over a permanent version that could go further — one that could require apps to scan messages, including on encrypted apps, using client-side scanning. That permanent proposal is back for debate as of September 2026. It has stalled and returned several times, and nothing is final.

Why people disagree

Almost everyone shares the goal of protecting children from serious abuse. The disagreement is about the method. Security experts raise two practical worries. First, a tool built to scan for one thing can later be pointed at other things — the machinery does not care what is on its list, and someone else decides what goes on it. Second, no scanner is perfect: innocent people can be wrongly flagged, and a "read before you lock" channel on billions of phones becomes a target for mistakes and abuse. This is the mainstream view among cryptographers, which is why the debate keeps coming back.

What this means for apps like Sealby

Most of this debate is about messaging apps, because it is about things you send to other people. Sealby is different: it is a private vault, not a messenger. It keeps your own files, photos and notes on your own device, locked so that only you can open them, and nothing is sent to a recipient. Still, the idea behind this debate matters for any encrypted app: encryption only means something if you are the only one who can read your data. That is why a good vault keeps nothing readable sitting around — there is simply nothing for a scanner, or anyone else, to reach. No app can override the law, and we will not pretend otherwise.

This article is general education, not legal advice, and it describes a proposal that is still being debated. Laws on message scanning and encryption differ between countries and change over time. Details, timing, and outcomes may differ from what is described here.

Quick answers

Does client-side scanning break encryption?

Not directly. It reads your message on your phone before the message is locked, so the encryption itself stays intact. Critics say this misses the point, because the promise was that only you and the person you sent it to could see the message — and now a scanner sees it first.

Is this a law now?

No. As of September 2026 it is a proposal being debated in the EU. A temporary rule that lets apps choose to scan unencrypted messages was extended in 2026, but the broader permanent plan — which could require scanning even on encrypted apps — has not taken effect and could still change or fail.

Would this affect a private vault app like Sealby?

The debate is about messaging apps — scanning things you send to other people. A vault app like Sealby stores your own files on your own device and sends nothing to a recipient, so it is a different case. The reason it still matters is the principle: encryption only means something if you are the only one who can read your content.

Your vault is waiting.

Download Sealby and protect what matters. Setup takes under a minute, and there’s no account to create.

Download on the App Store

iPhone & iPad · iOS 17+ · Free