AntiMalware•July 15, 2026•🇷🇺Translated from Russian

UK Plans Nighttime Social Media Curfew and Addictive Feature Restrictions for Teens from 2027

The United Kingdom is preparing to introduce strict nighttime restrictions on social media for teenagers as part of a broader effort to protect young users from excessive screen time and harmful online content.

Starting in spring 2027, users aged 16-17 will be blocked from accessing social networks between midnight and 6 a.m.. This curfew will apply to home internet connections through mandatory content filtering systems.

Beyond the time restriction, platforms will be required to disable the most engaging features by default for this age group. These include infinite personalized feeds, automatic video playback, Reels, and similar short-form video content on TikTok and other services.

The nighttime and feature restrictions are intended to serve as a gradual transition before a full ban on social media for children under 16, which is also scheduled to begin in spring 2027. Officials describe the approach as a phased model: complete prohibition for younger children, followed by limited access, and eventual unrestricted use only for adults.

The government references an experiment involving 300 participants that showed nighttime restrictions quickly became habitual and led to measurable improvements in sleep quality and concentration levels.

Additional measures target AI chatbots. Services aimed at minors will be required to implement mandatory breaks, while platforms distributing dangerous or unverified mental health advice may face outright prohibition.

Schools will also update their curricula to include training on safe interaction with artificial intelligence, recognition of deepfakes, disinformation, and violent or misogynistic content as part of expanded digital literacy programs.

Related articles

Habr•Policy & Regulation

How to Complete the Roskomnadzor Personal Data Notification Form in 2026: Field-by-Field Analysis

The article provides a detailed walkthrough of the current Roskomnadzor notification form for operators processing personal data under Russian law. It explains that the form is an extract from existing internal documents rather than a questionnaire, requiring operators to reference their data processing policy, inventory results, appointment orders, and protection level acts. Key prerequisites include confirming that notification is mandatory after the 2022 amendments removed most exemptions, preparing five core documents, and understanding that the form pulls data directly from those records. The guide covers every section, from operator identification and processing regions to data categories, protection measures, geography, and post-submission obligations. It also addresses common mistakes, the option to save drafts, auto-population features, and liability for non-compliance or inaccurate information. The piece concludes with a checklist mapping each form field to its source document.

Habr•Policy & Regulation

OBEP Raids on Russian IT Firms: How to Safeguard Source Code, Servers and Blockchain Assets During Searches

Russian IT companies, Web3 projects and fintech services now face frequent visits from OBEP operatives conducting pre-investigative checks or searches under criminal cases. The article details the legal distinction between operational-search measures and formal searches, emphasizing article 164.1 of the UPK RF that prohibits seizure of physical servers in economic crime investigations. It explains how companies can demand data mirroring instead of hardware removal and how to invoke article 51 of the RF Constitution when pressured for encryption keys. Commercial secret regimes are presented as a tool to raise criminal liability for leaks and to request closed court proceedings. Practical checklists cover document verification, staff instructions, password retention and immediate calls to specialized criminal counsel. The guidance aims to prevent business paralysis while preserving evidence integrity during raids.

Habr•Policy & Regulation

RWB Deploys Enterprise-Wide Database Access Control with Trino and Open Policy Agent

RWB has replaced fragmented manual database access processes with a centralized architecture built on Trino as the single entry point and Open Policy Agent for policy enforcement. The system enforces least-privilege access, mandatory auditing, and automated revocation tied to HR records while eliminating anonymous and password-based logins. Access requests now complete in 3–10 minutes instead of an average of four days, with 92 percent handled automatically. Key components include Keycloak for OIDC authentication, Vault for secrets, Kafka for security event streaming to SOC, and Kubernetes orchestration. Responsibility is split across AI & Data Security, Core DevOps, Access Management, SOC, and Trust & Safety teams. More than 1,250 PostgreSQL clusters and 90 projects are now connected, with real-time dashboards tracking adoption and policy health.

AntiMalware•Policy & Regulation

Russia Moves to Allow Biometric Data Processing for Suspects and Convicts Without Consent

Russian law enforcement agencies may soon gain the legal right to process biometric data of suspects, accused individuals, and convicted persons without requiring their personal consent. A corresponding draft bill has already been submitted to the government and is scheduled for review at the next cabinet meeting, according to TASS. The measure covers fingerprints, facial images, voice recordings, and other physiological or behavioral characteristics used for identification. If approved, prior permission from the individual will no longer be needed when biometrics are used in criminal proceedings. The change applies not only to those already convicted but also to suspects and accused persons whose guilt has not yet been established by a court. For ordinary citizens, enrollment in the Unified Biometric System remains voluntary and is used for remote identity verification when accessing financial and government services.