The lawful access debate in Canada has to date focused on privacy concerns such as access to subscriber information, mandatory metadata retention, and international production orders. But there is another dimension to Bill C-22 that has received less attention and may matter even more to the daily security of Canadians: the risk that the bill’s surveillance-capability requirements and lack of clarity about systemic vulnerabilities will make Canadians less secure. The international experience with similar laws is not reassuring, as it points to risks of hacking, removal of security features that protect users, and reduced investment and innovation. Bill C-22 heads in much the same direction.
Archive for April 8th, 2026

Law Bytes
Episode 274: Mark Musselman on What Stakeholders Really Think About the Government’s Reversal of the CRTC Online Streaming Act Decision
byMichael Geist

June 22, 2026
Michael Geist
Search Results placeholder
Michael Geist on Substack
Recent Posts
Shaky Ground Gets Shakier: What the U.S. Supreme Court’s Location Data Decision Means for Bill C-22
The Two Weeks That Reshaped Canada’s Digital Policy
The Law Bytes Podcast, Episode 274: Mark Musselman on What Stakeholders Really Think About the Government’s Reversal of the CRTC Online Streaming Act Decision
Improv Policy: The Government Doesn’t Know What To Do About Its Online Streaming Act Mess
Soft Ban or Hard Verification Requirement?: Why Bill C-34’s Social Media Ban Exemption Gets the Incentives Wrong and Comes Too Late to Matter

