What the New Framework Demands
India's government has amended its Information Technology (IT) Rules to specifically target what it calls Synthetically Generated Information (SGI). The rules mandate that platforms like YouTube, Instagram, and X (formerly Twitter) must ensure any AI-generated
audio or visual content is clearly and prominently labeled. This isn't just a suggestion; platforms must also embed permanent metadata or unique identifiers to trace the content back to its origin. Furthermore, the framework introduces drastically shorter takedown timelines. Platforms now have just three hours to remove unlawful content after receiving a government or court order, a massive reduction from the previous 36-hour window. For high-risk content, such as non-consensual nudity or impersonation, the deadline is even tighter at just two hours.
The End of 'Safe Harbor' as We Know It
Perhaps the most significant change is the threat to the "safe harbor" protections that intermediaries have long enjoyed. Under Section 79 of India's IT Act, platforms were generally shielded from liability for content posted by third-party users. The new amendments state that failure to comply with these deepfake regulations—such as by not implementing labeling, deploying detection tools, or meeting takedown deadlines—will result in the loss of this legal immunity. This move exposes companies to potential civil and criminal liability for harmful deepfakes circulating on their sites. The message from New Delhi is clear: platforms are no longer passive hosts but active participants who must proactively police their own services. They are now required to use automated tools to detect and prevent the spread of prohibited content.
Why This Is Happening Now
The regulatory crackdown didn't happen in a vacuum. India has seen a surge in malicious deepfakes targeting public figures, including prominent actors and politicians. These incidents have gone viral, sparking public outcry and raising alarms about the potential for AI-generated content to be used for fraud, harassment, and misinformation. Authorities have warned about scams where criminals use deepfake audio or video to impersonate executives and authorize fraudulent financial transactions, a threat that has already materialized in other parts of the world. By defining SGI and setting clear rules, the government aims to prevent the misuse of synthetic media for everything from financial fraud and impersonation to election interference and defamation.
A Global Precedent for the U.S.?
While the U.S. and Europe are also grappling with how to regulate AI, India's move is one of the most aggressive and prescriptive to date. The European Union's AI Act also includes provisions for labeling AI-generated content, but its implementation timeline is slower than India's. In the United States, federal action has been more narrowly focused, such as on criminalizing non-consensual intimate deepfakes, but a comprehensive framework comparable to India's has yet to emerge. India's enforcement-heavy model, which places significant operational burdens on tech companies, serves as a major test case. Global platforms must now decide whether to create a specific compliance system for India or apply these stricter standards across all their markets, potentially setting a new de facto global norm.














