What is the TCS Controversy About?
In August 2026, reports emerged that IT giant TCS had deployed a 'Digital User Experience Monitoring' tool on company-issued laptops. According to sources cited in media reports, the software can provide visibility into which applications employees are using
and the amount of time they spend on them. This move, affecting a workforce of nearly 600,000 people, immediately sparked concern among employees and privacy advocates about the extent of workplace tracking. The primary worry is whether a tool ostensibly for IT support and security is doubling as a surveillance mechanism, providing management with detailed insights into individual work patterns. The lack of formal communication from the company about the tool's capabilities and purpose has further fuelled these concerns.
TCS's Position: Security, Not Surveillance
In response to the controversy, TCS issued a statement rejecting the claims of tracking individual employees as "baseless and inaccurate." The company clarified that it does not monitor individual activity on laptops and respects employee privacy. According to TCS, the tools in question are used to monitor "macro-level network performance" to ensure security, system availability, and an enhanced user experience for its staff. The company's rationale is rooted in its need to protect sensitive client information and maintain strong cybersecurity across its vast network. The IT services industry handles critical data for global clients, making robust security measures a business necessity. TCS insists the software is for monitoring the health of its IT infrastructure, not the productivity of its people.
A Blurry Line and a Wider Debate
The TCS incident is not happening in a vacuum. It taps into a much larger, ongoing debate about employee monitoring in the age of hybrid and remote work. As work moved from the office to the home, companies globally adopted software to manage productivity and security. These technologies can track everything from application usage to keystrokes and even take periodic screenshots. Other major tech companies, like Meta, have faced similar criticism for deploying tools that log employee activity. The core of the dilemma is balancing a company's legitimate need to protect its assets and ensure productivity with an employee's right to a reasonable degree of privacy, even when using a company-owned device.
What Does Indian Law Say?
India does not have a single law dedicated to employee monitoring. Instead, the rules are a mix of the Information Technology Act, 2000, contract law, and, most importantly, the Digital Personal Data Protection (DPDP) Act of 2023. Generally, employers have the right to monitor activity on company-owned devices and networks for legitimate business purposes like security and compliance. However, the right to privacy has been upheld as a fundamental right by the Supreme Court. The DPDP Act strengthens this by requiring companies to be transparent about data collection. They must provide clear notice to employees about what is being monitored and why. Covertly monitoring employees or collecting more data than necessary for a stated purpose could lead to significant penalties under the new act.
Know Your Rights as an Employee
As an employee in India, your privacy rights at work are becoming clearer. Under the DPDP Act, you have the right to be notified about any monitoring. This is typically done through a clause in your employment contract or a company policy document. You also have the right to know what data is being collected and for what purpose. Importantly, monitoring personal devices (even if used for work) requires your explicit consent. Accessing personal email or messaging accounts on a work device is generally not permitted. If you believe monitoring is excessive or intrusive, you have the right to raise a grievance with your company's Data Protection Officer and can escalate the complaint to the Data Protection Board of India.














