Canada Adopts Stringent Anti-Spam Legislation
Time 1 Minute Read

Adam Kardash from Heenan Blaikie LLP in Canada reports that Bill C-28, the Fighting Internet and Wireless Spam bill, received Royal Assent on December 15, 2010.  The centerpiece of the Act are prohibitions aimed at preventing spam, but the law also includes regulations to combat phishing and protect users from online malware.  Specifically, among other things, the legislation would prohibit:

  • sending commercial electronic messages (including emails and text messages) without consent (subject to certain limited exceptions);
  • altering transmission data on email messages; and
  • the installation of computer programs without express consent.

The legislation gives primary enforcement authority to the Canadian Radio-television and Telecommunications Commission, which may investigate and levy significant monetary penalties against organizations that send unsolicited commercial electronic messages without consent.  The Act also provides for a private right of action for businesses and consumers.

The Act’s permission-based, largely opt-in approach to consent for commercial electronic messages sets forth a more restrictive model than its U.S. counterpart, the CAN-SPAM Act.

For further information, view Industry Canada’s news release.

You May Also Be Interested In

Time 2 Minute Read

On March 5, 2026, the California Privacy Protection Agency announced that the agency had reached a settlement with Ford Motor Company resolving an enforcement action against the company that alleged noncompliance with the California Consumer Privacy Act’s opt-out of sale/sharing rights.

Time 3 Minute Read

On February 17, 2026, the Federal Aviation Administration (FAA) issued a final rule adopting a new airworthiness directive (AD) for certain Bombardier Inc. airplanes. This new AD requires locking features to be installed on applicable network interfaces to prevent unauthorized network access. FAA seeks 45-day public comment on any written data, views, or arguments associated with this final rule, ending on April 3, 2026.

Time 2 Minute Read

On December 16, 2025, the Federal Trade Commission announced an enforcement action against Illusory Systems Inc., a Utah-based company doing business as Nomad, following a major data breach in which hackers stole $186 million from consumers.

Time 3 Minute Read

On October 15, 2025, the UK Information Commissioner’s Office announced a £14 million fine against Capita plc and Capita Pension Solutions Limited following a significant data breach.

Search

Subscribe Arrow

Recent Posts

Categories

Tags

Archives

Jump to Page