Metadata retention has emerged as one of the biggest lawful access concerns, with requirements that providers retain metadata for all subscribers for up to one year. As I argued before the Standing Committee on Public Safety and National Security last week, when retained at scale, the retention becomes a comprehensive surveillance map of virtually every Canadian with information on where and when they go and who they interact with. Under Bill C-22, this data would apply to every subscriber regardless of suspicion. The government’s Charter Statement remarkably fails to address the regime, despite the fact that bulk retention frameworks of this kind have been struck down by the European Court of Justice in Digital Rights Ireland and Tele2 Sverige, and by Germany’s Federal Constitutional Court.
Archive for May 15th, 2026

Law Bytes
Episode 277: Kate Robertson on the Risks That Lie Behind Canada's Unexpected Signing of the UN Cybercrime Convention
byMichael Geist

June 22, 2026
Michael Geist
Search Results placeholder
Michael Geist on Substack
Recent Posts
From CCH to ChatGPT: How Canadian Copyright Law Played the Key Role in Deciding a Leading AI Training Data Case in India
Starting Over: Court Filing Confirms the CRTC’s Streamer Contribution Decisions Are Dead With a Full Online Streaming Act Reset to Come
The Name on the Window Was Enough: The Attacks on Kiva’s and the Normalization of Antisemitic Violence in Canada
The Law Bytes Podcast, Episode 277: Kate Robertson on the Risks That Lie Behind Canada’s Unexpected Signing of the UN Cybercrime Convention
A Surveillance Treaty in Disguise: The Trouble With Canada’s Quiet Decision to Sign the UN Cybercrime Convention

