Logo

Your trusted compliance partner

Logo

Your trusted compliance partner

Back To Home

Research Team (Tsaaro)

India Clarifies Stand on Smartphone Source Code Amid Industry Consultations

The Ministry of Electronics and Information Technology (Ministry of Electronics and Information Technology) has formally disputed media reports suggesting that it intends to mandate smartphone manufacturers such as Apple Inc. and Xiaomi to disclose the core source code of their operating systems. 

In a press note issued over the weekend, the Ministry clarified that the discussions currently underway are part of its regular and ongoing engagement with industry on safety and security standards. It stressed that the consultations are exploratory in nature and that the government retains an “open mind” on the outcome of these discussions. 

Routine Consultations, Not New Mandates 

According to MeitY, the purpose of the consultations is to better understand technical constraints, compliance burdens, and international best practices followed by smartphone manufacturers. The Ministry emphasised that all legitimate industry concerns will be examined, balancing national interests with the needs of the technology ecosystem. 

A senior government official strongly refuted the report that triggered the controversy, noting that it relied on an Indian Telecom Security Assurance Requirements (ITSAR) document issued in 2023 by a body under the Department of Telecommunications. While the ITSAR standard does reference third-party audits of source code and advance intimation of software updates, the official clarified that this does not translate into an immediate or blanket disclosure mandate. 

Shift in Administrative Oversight 

The official explained that the consultations gained momentum after the enactment of the Telecommunications Act, 2023. Following industry representations seeking oversight by a single ministry, smartphone manufacturers were brought under MeitY’s administrative purview, with the Ministry continuing discussions earlier initiated by the Department of Telecommunications. 

Importantly, the official stated that no smartphone manufacturer has raised objections regarding the manner in which these consultations are being conducted. 

Industry Response 

The India Cellular and Electronics Association (ICEA), representing major smartphone manufacturers, also sought to allay concerns. The association described the issue as “not a new one” and characterised the ongoing dialogue as a natural outcome of transparent and detailed stakeholder consultations, indicating that there is currently no pressing industry alarm. 

Broader Implications 

This highlights India’s evolving approach to digital security and telecom governance one that seeks to reconcile national security considerations with innovation, proprietary technology, and ease of doing business. For now, the government’s message is clear: there is no final decision, only consultation. 


 


 


 

We Help You to Grow Your Business Faster & Easier

Our mission is to redefine Digital Trust — helping businesses stay compliant and secure across data privacy, cybersecurity, AI governance, and risk. With 150+ clients across 6 global regions and 50+ regulations covered, we've partnered with leading brands like Airtel, Adani, Titan, Godrej, Booking.com, Paytm, CRED, Nykaa, IKEA, and Flipkart & more.


  • Specialist Talent, On Demand – Privacy, Cyber, AI & GRC experts via staff augmentation, expert pods, and SME-on-demand.

  • Leadership as a Service – Fractional DPO, CISO, and AI Officer leadership, without the cost of a full-time hire.

  • Proven Results – Trusted by top brands including Adani, CRED, and Flipkart.

  • Responsible AI Governance – Build and run AI programmes aligned to ISO/IEC 42001, the EU AI Act, and NIST AI RMF.

  • Cybersecurity Expertise – Protect your business from evolving threats with vCISO-led strategy and assessments.

  • Global Standards & Regulations – Stay ready for GDPR, DPDPA, PDPL, HIPAA, and ISO frameworks across markets.

  • Flexible & Cost-Effective – The right expertise at the right time, without permanent-hiring overhead.

  • Trusted Advisory – Led by certified privacy and security professionals.

We Help You to Grow Your Business Faster & Easier

Our mission is to redefine Digital Trust — helping businesses stay compliant and secure across data privacy, cybersecurity, AI governance, and risk. With 150+ clients across 6 global regions and 50+ regulations covered, we've partnered with leading brands like Airtel, Adani, Titan, Godrej, Booking.com, Paytm, CRED, Nykaa, IKEA, and Flipkart & more.


  • Specialist Talent, On Demand – Privacy, Cyber, AI & GRC experts via staff augmentation, expert pods, and SME-on-demand.

  • Leadership as a Service – Fractional DPO, CISO, and AI Officer leadership, without the cost of a full-time hire.

  • Proven Results – Trusted by top brands including Adani, CRED, and Flipkart.

  • Responsible AI Governance – Build and run AI programmes aligned to ISO/IEC 42001, the EU AI Act, and NIST AI RMF.

  • Cybersecurity Expertise – Protect your business from evolving threats with vCISO-led strategy and assessments.

  • Global Standards & Regulations – Stay ready for GDPR, DPDPA, PDPL, HIPAA, and ISO frameworks across markets.

  • Flexible & Cost-Effective – The right expertise at the right time, without permanent-hiring overhead.

  • Trusted Advisory – Led by certified privacy and security professionals.

We Help You to Grow Your Business Faster & Easier

Our mission is to redefine Digital Trust — helping businesses stay compliant and secure across data privacy, cybersecurity, AI governance, and risk. With 150+ clients across 6 global regions and 50+ regulations covered, we've partnered with leading brands like Airtel, Adani, Titan, Godrej, Booking.com, Paytm, CRED, Nykaa, IKEA, and Flipkart & more.


  • Specialist Talent, On Demand – Privacy, Cyber, AI & GRC experts via staff augmentation, expert pods, and SME-on-demand.

  • Leadership as a Service – Fractional DPO, CISO, and AI Officer leadership, without the cost of a full-time hire.

  • Proven Results – Trusted by top brands including Adani, CRED, and Flipkart.

  • Responsible AI Governance – Build and run AI programmes aligned to ISO/IEC 42001, the EU AI Act, and NIST AI RMF.

  • Cybersecurity Expertise – Protect your business from evolving threats with vCISO-led strategy and assessments.

  • Global Standards & Regulations – Stay ready for GDPR, DPDPA, PDPL, HIPAA, and ISO frameworks across markets.

  • Flexible & Cost-Effective – The right expertise at the right time, without permanent-hiring overhead.

  • Trusted Advisory – Led by certified privacy and security professionals.