EU Parliament Approves Temporary CSAM Detection Derogation with Encryption Carve-Out
Guardii Analysis
The European Parliament voted on July 9, 2026 to extend temporary authorization for platforms to voluntarily scan for child sexual abuse material, but amended the EU Council position to explicitly exclude end-to-end encrypted communications from scanning scope. While the measure passed, it did not secure the absolute majority of 360 members required to officially reject it, and lawmakers approved the amendment carving out encrypted messaging services such as WhatsApp. The temporary regime had previously expired on April 3, 2026, creating a legal vacuum that left platforms unable to detect CSAM under EU data protection law.
Detection capability that exempts end-to-end encrypted channels leaves a gap precisely where sustained grooming and sextortion conversations occur. The anti-grooming and anti-sextortion modules within platforms backed by Startmate scan for escalation, coercion and targeting patterns in direct messages across Instagram, Snapchat, Discord and Roblox in real time, surfacing the shape and seriousness of a conversation to a parent or school safeguarding lead before a child is harmed, without requiring platforms to break encryption or hand anyone a feed of message content. Targeted detection of harmful contact patterns addresses the underlying threat without the structural trade-off between child safety and confidentiality that blanket encryption exemptions impose.