The lawful access debate in Canada has to date focused on privacy concerns such as access to subscriber information, mandatory metadata retention, and international production orders. But there is another dimension to Bill C-22 that has received less attention and may matter even more to the daily security of Canadians: the risk that the bill’s surveillance-capability requirements and lack of clarity about systemic vulnerabilities will make Canadians less secure. The international experience with similar laws is not reassuring, as it points to risks of hacking, removal of security features that protect users, and reduced investment and innovation. Bill C-22 heads in much the same direction.
Archive for April 8th, 2026

Law Bytes
Episode 268: Sara Grimes on the Moral Panic Behind Banning Kids from Social Media and AI Chatbots
byMichael Geist

May 11, 2026
Michael Geist
May 4, 2026
Michael Geist
April 27, 2026
Michael Geist
Ep. 265 – Jason Millar on Claude Mythos, Project Glasswing, and the Governance Crisis in Frontier AI
April 20, 2026
Michael Geist
Search Results placeholder
Michael Geist on Substack
Recent Posts
The Online Streaming Act Bill Comes Due: Why the CRTC’s Latest Ruling Guarantees Years of Trade and Legal Battles
The Government Tries to Make the Case for Bill C-22: Why Its Own Use Cases Reveal Disproportionate Overreach
Tech Exodus: Why Bill C-22’s Privacy and Security Risks Will Drive Digital Services Out of the Country
The Lawful Access Two-Headed Surveillance Monster: How Bill C-22 Went Off the Rails
How Much Further Will Lawful Access Go?: Police Chief Tells Bill C-22 Hearing That Three Years of Metadata Retention Would Be “Ideal”

