DoT Notifies Final Telecom Rules, Drops Shared Biometric Database Plan
Government scraps shared biometric database plan for telecom users.
The government has dropped its proposed plan to create a common biometric database of telecom users under the newly notified Telecommunications (User Identification) Rules, 2026. The proposed Biometric Identity Verification System (BIVS) would have assigned a unique identification number to users and allowed telecom companies to cross-check customer identities against records held by other operators. The final rules, notified by the Department of Telecommunications on August 21, remove the proposed system and instead rely on existing electronic and digital verification mechanisms.
The decision comes nearly 11 months after the government released the draft rules in September 2025. Under the final framework, telecom companies must verify the identity of customers before issuing a new SIM card, updating subscriber information or disconnecting a mobile connection. The rules apply to telecom operators across India, including Airtel, Jio, Vodafone Idea and BSNL. The regulations have taken immediate effect, although operators have been given three months to implement the required systems, with the period extendable by another three months.
The removal of BIVS means telecom companies will not carry out the proposed cross-industry biometric matching of customers. Instead, Aadhaar holders will undergo e-KYC through the authentication facility of the Unique Identification Authority of India, while non-Aadhaar users will be subject to the digital KYC process specified under the rules. During D-KYC, the telecom entity will capture a live photograph of the customer and an electronic image of the original identity and address documents. Alternative arrangements must be provided for people who cannot have their face captured because of an impairment, injury or disfigurement.
Also Read: CJP Seeks Government Accountability Over Poor Conditions In Rajasthan Schools
The final rules also introduce additional safeguards around requests made in a subscriber's name. Under the new alert mechanism, users can receive notifications whenever a new SIM connection, update or disconnection request is initiated using their identity. They will be asked to confirm whether the request was actually made by them. Telecom companies must also report instances where biometric identification fails to the government. Another significant change is that biometric verification will now be required before a mobile connection is disconnected, whereas the draft rules had primarily focused on verification during enrollment and updates.
Several provisions contained in the draft version have also been removed from the final framework. These include an explicit provision for self-KYC through a website or mobile application and a requirement concerning biometric verification of a new user within seven days, after which a connection could have been disconnected if the required process was not completed. The government has not publicly detailed the reasons for dropping the BIVS proposal. Concerns had previously been raised over the creation of another large biometric repository and the potential duplication of biometric information already held under Aadhaar.
Separately, the Department of Telecommunications has introduced another mechanism for checking connections across telecom operators through its Digital Intelligence Platform. Under a circular issued on August 17, the platform will collect subscriber information and photographs from telecom companies to identify individuals holding more than the permitted number of mobile connections. The limit is nine connections across most of India and six in Jammu and Kashmir, Assam and the North-Eastern states. Photo-based verification under this mechanism is scheduled to begin from August 23, creating a separate cross-operator monitoring system even as the proposed shared biometric database has been scrapped.
Also Read: Kerala Biker Killed After Iron Rods Fall Off Moving Van