Apple is taking the UK government to court over a demand that would effectively punch a hole through its encryption protections. The company filed a legal complaint challenging a Technical Capability Notice (TCN) issued by British authorities in January 2025, which ordered Apple to provide access to encrypted iCloud backups.
Rather than quietly comply, Apple chose the nuclear option: it disabled its optional Advanced Data Protection (ADP) feature for UK users entirely.
What the UK actually demanded
The original order wasn’t just about British users. The TCN initially carried a worldwide scope, meaning UK authorities were essentially asking Apple to create a backdoor that could access encrypted data for users globally.
The Investigatory Powers Act, sometimes referred to as the “Snoopers’ Charter,” gives UK authorities the legal framework to issue these notices. In practice, a TCN compels a company to build technical capabilities that allow law enforcement to access communications data.
The global scope of the original demand caught the attention of US officials. Following objections from Washington in August 2025, the UK modified the order. The revised version focused solely on UK-based data.
Apple’s response has been characteristically blunt.
“We have never built a backdoor or master key to any of our products or services and we never will.”
The encryption chess match
Apple’s decision to pull ADP from UK users deserves a closer look. Advanced Data Protection is an opt-in feature that extends end-to-end encryption to iCloud backups, photos, notes, and other data categories. Without it, Apple holds encryption keys for most iCloud data and can hand material over when served with valid legal process.
It’s worth noting that 15 default categories within iCloud remain end-to-end encrypted even without ADP enabled. So the sky hasn’t completely fallen for UK iPhone owners. But the optional layer of protection that privacy-conscious users relied on is gone.
The case is now headed to a tribunal, with hearings expected in early 2026.
Why crypto and tech investors should care
If the UK successfully compels Apple to weaken its encryption, the playbook becomes available to every other government with similar ambitions. Australia already has comparable legislation. The EU has been debating client-side scanning proposals for years. India has pushed for traceability in encrypted messaging apps.
For the broader technology sector, forced decryption mandates create a compliance nightmare. Companies operating across multiple jurisdictions would face contradictory legal requirements: one country demanding backdoor access while another’s privacy laws prohibit exactly that. The GDPR in Europe, for instance, essentially requires robust data protection, which sits in direct tension with building government access points.
Disclosure: This article was edited by Editorial Team. For more information on how we create and review content, see our Editorial Policy.

1 hour ago
17









English (US) ·