Fifty years ago, the Supreme Court established for the first time that tort law was subject to the First Amendment.3 The central insight of New York Times Co. v. Sullivan was that private claims empowered by the state can undo free expression.4 But the speech protected in the case that launched the modern First Amendment5 cost $4800 in 1960.6 Indeed, in his argument to the Court, Commissioner L.B. Sullivan ridiculed the Times’ claim to be promoting the “equality of practical enjoyment of the benefits” of free speech and press.7 Justice Brennan, writing for the Court, could only argue that “‘editorial advertisements’ of this type” at issue in the case allowed “persons who do not themselves have access to publishing facilities . . . to exercise their freedom of speech even though they are not members of the press.”8 Still, by turning the First Amendment’s gaze from direct state regulation of speech to private law, Sullivan helped usher in an era when speech, powered by the Internet, would in fact become free—in both senses of the term. Free as in speech, and free as in beer.9

Since the rise of the World Wide Web, scholars have sought to understand its relationship to the First Amendment. Eugene Volokh observed that the Internet diversifies the range of speakers and increases access to speech, reducing the historical bias in favor of the speech of the rich.10 Lawrence Lessig argued that the architecture of the Internet allowed “a First Amendment in code more extreme than our own First Amendment in law.”11 James Boyle and Yochai Benkler warned that intellectual property protections were fencing off speech behind proprietary lines.12 Cass Sunstein worried that users would use the new medium to cocoon themselves from contrary perspectives.13 Michael Froomkin showed that the standards-setting process used for Internet architecture approximates Jürgen Habermas’ discourse ideal.14 Seth Kreimer argued that intermediary liability would lead intermediaries to censor speech broadly.15 Rebecca Tushnet suggested that online intermediaries will favor speech congenial to their corporate interests.16 Christopher Yoo observed that consumers often rely on intermediaries to filter speech for us.17 Edward Lee argued that the Sony safe harbor for new technologies has First Amendment underpinnings.18 In the latest interventions, Jane Bambauer affirms that data is speech,19 while Jack Balkin warns of the rise of “collateral censorship” through a public–private alliance.20

Yet despite this extensive commentary, scholars have largely ignored a key insight: the First Amendment played an essential role in configuring the legal environment that enabled the rise of the Internet as we know it today, and in the process, helped bring the promise of 1789 closer to fruition.21 Cyberlaw is today’s speech law. Yet, free speech casebooks and texts pay little attention22 to the ways that cyberlaw configures the principal mechanism for exercising free speech rights today—communication online.23 The First Amendment protected Internet intermediaries from obligations to censor, while at the same time rebuffing efforts to impose stricter privacy obligations on Internet enterprises.24 The First Amendment thus created the business model of new media, permitting it to publish vast amounts of speech but not be held liable for that speech, while at the same time earning income through advertising based on personal profiling. For the first time, individuals could now speak to the nation—through YouTube, Twitter, blogs, comments, Facebook, and Google—without needing either princely sums for national advertising or the permission of editors. This is the First Amendment/‌Cyberlaw Dialectic: the First Amendment constituted cyberlaw, and cyberlaw in turn constituted free speech.

While the First Amendment failed to constrain ever-lengthening copyright terms,25 we show that concerns for speech stymied excessive copyright protections in other crucial ways, from the Digital Millennium Copyright Act (“DMCA”) to the anti-SOPA campaign. Our analysis also helps solve a puzzle: In these debates, why might Congress have favored Silicon Valley upstarts over the well-heeled and powerful media companies of Hollywood and New York? Did not the movie, television, and newspaper companies epitomize the concerns of the First Amendment? Did not old media have far more power in the halls of Congress than Silicon Valley? The answer lies in the way that new media differs from old media. New media made speech free in ways old media never could. No longer did one need the permission of a narrow set of editors who controlled television channels or newspaper pages. Old media helped a few people speak; new media gave voice to the rest of us.26 Mass media transformed from simplex to duplex communication, and from top-down to bottom-up.

Some will be skeptical: Did not the Internet itself allow individuals to post a webpage that the world could see without the need for intermediaries?27 But experience with the first two decades of the web taught us this: If someone cries on a lonely blog, no one may hear. Internet intermediaries turn out to be crucial to helping individuals share information with friends, family, and strangers, through search engines, social networks, and even personal magazines.28 Call this the “Lonely Blog” versus the “Networked User” phenomenon. Google, Facebook, and Twitter, not to mention Instagram, Pinterest, and other services not yet invented, help individuals speak with each­­­ other, even in the form of 140 characters or six-second videos.

This moment of free speech, radical by historical standards and unimaginable even in 1964, hangs at a precipice. Rather than a medium for free expression, the Internet might become widely censored or even more widely surveilled, with every utterance subject to third-party censorship or, even more pernicious, self-censorship. The new measures threaten to turn us from citizens to subjects. Today’s threats to speech increasingly arise online. Millions of people protesting the Stop Online Piracy Act (“SOPA”) argue the bill would “censor the Internet.”29  The enforcement of criminal copyright law through seizures of domain names and computer servers implicate First Amendment protections against prior restraints. The United States deplores efforts to relocate Internet governance to international fora, fearing the censors of China, Iran, and Russia.30 At the same time, the “21st-century” trade agreements31 promising a free trade area across the Pacific and the Atlantic include hidden implications for speech. Mass electronic surveillance of ordinary persons will chill even speech among friends. We observe a kind of antinomy: The digitization of speech lends itself to widespread surveillance, wrecking the very freedoms the digitization made possible.

Our account sheds light on the First Amendment itself. The marketplace of ideas, it turns out, depends on an actual market. When First Amendment scholars write about commerce, they focus largely on commercial speech. When they speak of the Internet, they focus on censorship of pornographic speech. In our account, the First Amendment reveals itself as an industrial policy. In an information age, free speech greases the economic engine. By revealing the free speech foundations of American cyberlaw, we hope to encourage other countries around the world eager to incubate the next Silicon Valley to embrace free speech. Governments from Brazil to India to Russia, seeking to incubate their own Silicon Valleys, must recognize the vital role that free speech plays in enabling Internet enterprise. This Article reconceptualizes threats to web industries as threats to free speech itself. The elusive distinction between free speech and free press resolves itself through a recognition of the press as the technology of speech.32 When Google, Twitter, and Facebook allow us to speak to each other, a threat to any of them becomes a threat to all of us.

Some First Amendment scholars may worry that our argument edges towards the precipice of a new Lochnerism, with the First Amendment deployed to strike down a host of consumer regulations.33 As Robert Post observes, “If every state regulation touching on what we call, in ordinary language, ‘communication’ were to be subject to constitutional review under the standards of the First Amendment, large swaths of perfectly common forms of regulation would be constitutionalized.”34 In 2011, the Supreme Court itself invoked Lochner when striking down a Vermont privacy regulation on First Amendment grounds.35 While our argument might seem to embrace unlimited expansion of the First Amendment, we believe that recognizing the core expressive interests at stake in cyberlaw actually provides an important rationale that should restrain undue expansion. Free speech must not be a get-out-of-jail-free card, a talisman to ward off regulation. Even if the First Amendment is the first among the amendments,36 that does not render other constitutional values effete. Free speech is hardly the only value in a democratic state.37 Martha Nussbaum enumerates a broad array of capabilities that are necessary to human flourishing, of which speech is but one.38

Our Article proceeds as follows. In Part II, we show how the First Amendment helped make American cyberlaw an engine for free speech, from rebuffing early efforts to censor the Internet to reducing liabilities for the speech of users or the data gathering of marketeers. Rather than seeing free speech as a bit player on the Internet, only disciplining occasional attempts to impose censorship regimes, our account brings free speech to the center stage of the legal framework for the web. In Part III, we turn to contemporary threats to history’s most powerful platform for speech. We show that the central defect of SOPA was its threat to free speech, and then show that this threat to speech is migrating into other less-visible regimes—from criminal law enforcement, to the Trans-Pacific Partnership and efforts to bring the Internet under control of the United Nations. We apply the analysis to the European Union’s proposed right to forget, observing its tension with a central free speech tenet—the right to remember. The most serious threat to free speech arises from the self-censorship that will follow from widespread electronic surveillance (which may be facilitated by the new technologies of Web 3.0 and the Internet of Things).

II.     Making Speech Free

Picture Senator James Exon’s desk on the Senate floor in the summer of 1995. Senators huddle over the desk, perusing a blue folder containing pornography downloaded from the Internet.39 Senator Exon sought to demonstrate the indecent material available on the Internet.40 What came to be known as the “Blue Book”41 would eventually lead to the first Supreme Court case involving the Internet and the First Amendment, and also, unexpectedly, the most important piece of legislation supporting the rise of cyberspace as we know it today. The controversy attending the Communications Decency Act (“CDA”) marked the first great speech conflict of the Internet, even resulting in the first Internet protest blackout, presaging the wider SOPA protest nearly two decades later.42 Struggles over the Internet over decades to come would often revolve around speech.

Whatever one’s theory of speech, the Internet helped realize speech in ways never before possible.43 Consider three classic free speech theories: democratic self-governance, marketplace of ideas, and human dignity and self-fulfillment. The theory of “democratic self-governance” stresses the role of free speech in actualizing society’s participation in governance.44 The Internet not only reduces barriers to participation, it increases the pace of activism and discourse—petitions and protests can be offered with a few keystrokes. Instead of political participation, the “marketplace of ideas” theory focuses on free speech as a critical vehicle for truth-seeking by ensuring an open forum where ideas compete against each other, furthering human enlightenment.45 On the Internet, truth and lies jostle for primacy, much in the way that marketplace theorists imagine, but with an intensity and participation rate previously unimaginable. As exemplified by Wikipedia, the Internet allows a decentralized network of vigilant individuals to collaborate and debate on “truth.” The “human dignity and self-fulfillment” theory of free speech avers that the freedom of speech is necessary to dignity and autonomy.46 The Internet makes self-expression possible with a reach previously unknown to ordinary persons.

A.     Liability and Speech

With memories of the Blue Book likely in mind, Congress in 1996 overwhelmingly passed the CDA.47 Its central provision, what would be § 223 of the U.S. Code, placed liability on intermediaries for the sending or transmission of “indecent” communication to minors.48 Congressman Jerrold Nadler, a critic of the bill, called it “the cyberspace equivalent of book burning.”49 In a moment largely lost to history, Yahoo! and other Internet services darkened their websites, using white text on a black background, to denounce the threat to “the very existence of the Internet as a viable means of free expression, education, and political discourse.”50 By requiring Internet services to ensure that children could not access “indecent” material, the CDA would have: (1) forced them to carry out an impossible task, namely to identify and eliminate all the “indecent” speech on their sites teeming with user content; or otherwise (2) to require age verification. Imagine if Pinterest or Google had to police their services for indecency, the failure of which would subject them to fines and/‌or a maximum of two years imprisonment.51

Figure 1. Yahoo’s webpage in the Internet protest blackout, February 1996.


But another provision of the CDA, amending § 230 of the U.S. Code, would prove a godsend to Internet companies.52 That provision originated in the House of Representatives, where it passed overwhelmingly, 420–4.53 It was joined somewhat unnaturally to § 223 in the Conference Committee. Section 230 explicitly recognized the Internet as “a forum for a true diversity of political discourse, unique opportunities for cultural development, and myriad avenues for intellectual activity.”54 It immunized Internet intermediaries for the actions of their users. On the House floor, Representative Zoe Lofgren embraced the speech freedoms enshrined in § 230, which she believed would “preserve the [F]irst [A]mendment and open systems on the Net.”55

Having passed this bill at war within itself, fettering speech while liberating it, Congress now passed the baton to the courts. And the courts responded dramatically, repudiating the speech fetters of § 223, while strengthening the speech freedoms of § 230.

When the Supreme Court struck down the age verification provisions of the CDA in its first decision involving the Internet, it did so explicitly to protect freedom of speech in this new communications medium. In Reno v. ACLU, the Court ruled unconstitutional core provisions of the CDA that sought to keep children from accessing material judged indecent by a community.56 If the CDA’s anti-indecency provisions had survived, many websites might have been reluctant to allow individuals to post freely, fearing liability arising out of postings that some community might find “indecent.” Age verification through credit cards might lead websites to require a fee because credit card companies charge for verification.57 The CDA spelled the end of a free Internet. Moreover, only those adults with credit cards would now be able to access these sites. Furthermore, the CDA would have meant that social media websites unable to monitor their sites for “indecency” would have had to deny access to youth.

The Supreme Court embraced the speech potential of cyberspace. Justice Stevens began his opinion for the Court by declaring the Internet “a unique and wholly new medium of worldwide human communication.”58 The opinion announced that the Court would treat this new medium differently than the broadcast medium of radio and television: “Neither before nor after the enactment of the CDA have the vast democratic forums of the Internet been subject to the type of government supervision and regulation that has attended the broadcast industry.”59 The Court emphasized the value of the Internet to democratic exchange, observing that the Internet offered a medium “to foster an exchange of information or opinion on a particular topic running the gamut from, say, the music of Wagner to Balkan politics to AIDS prevention to the Chicago Bulls.”60

Not only did the Supreme Court strike out anti-speech aspects of the CDA, the lower courts, informed by the First Amendment, interpreted § 230 broadly. Most importantly, the courts eliminated both publisher and distributor liabilities for web intermediaries. In Zeran v. American Online, Inc., the Fourth Circuit held that § 230’s explicit elimination of publisher liability implied the elimination of distributor liability as well.61 The court reasoned that distributor liability would chill speech because service providers would take down information that some user found offensive for fear of liability for letting it remain: “Because service providers would be subject to liability only for the publication of information, and not for its removal, they would have a natural incentive simply to remove messages upon notification, whether the contents were defamatory or not.”62 Distilling the larger purpose of § 230, the Fourth Circuit declared that Congress’ intent was “to promote unfettered speech on the Internet.”63 Writing for the court, Chief Judge J. Harvie Wilkinson III explained:

Congress recognized the threat that tort-based lawsuits pose to freedom of speech in the new and burgeoning Internet medium. The imposition of tort liability on service providers for the communications of others represented, for Congress, simply another form of intrusive government regulation of speech. Section 230 was enacted, in part, to maintain the robust nature of Internet communication and, accordingly, to keep government interference in the medium to a minimum.64

Over the next decade and more, § 230 would prove a lifeline to Internet enterprises, their first line and often last line of defense against suits.65

Section 230 was not a blanket immunity for all speech—rather it protected intermediaries qua intermediaries. Intermediaries could still be held liable for their own speech. The CDA immunized a service only when the service could not itself be said to be the speaker—in the CDA’s terms, when the service did not “develop” the offensive material but remained a true intermediary for the speech of others.66 Internet defendants have found the CDA defense unavailing precisely when they become the speaker.67 In this way, § 230 recognized the special role of intermediaries, who serve as a vehicle for the speech of others.

B.     Copyright and Censorship

Copyright has sometimes been seen as a realm outside the First Amendment, immune from its constraints. Indeed, efforts by public domain advocates to discipline copyright through the First Amendment have been rebuffed by courts.68 Yet, as we show below, First Amendment concerns helped animate the statutory protections Congress offered to Internet intermediaries in the DMCA.

When the DMCA was first proposed, however, free speech advocates rang the alarm. Just like they had focused on the anti-indecency provisions of the CDA, they focused now on the anti-circumvention measures in the DMCA’s title I. They worried that criminalizing devices that broke through access and copy protections would stifle comment on others’ works, making impossible the copy-and-paste that facilitates critique.69  The public dialogue around the statute focused on the statute’s protections for the copyright industry, not on the immunities for those who might upset that industry.

Yet, even at the time, the proponents of the statute understood that title II helped create the conditions for free speech. Most importantly, Congress recognized in title II the new industry of speech—the Internet service providers that enabled individuals to express themselves. The House report explained that title II “essentially codifies the result in the leading and most thoughtful judicial decision to date: Religious Technology Center v. Netcom On-line Communications Services, Inc.70 In that case, Judge Ronald Whyte of the Northern District of California had explicitly used First Amendment concerns to protect web services that had been used for copyright infringement. The case exemplified the risk that excessive copyright liability posed for speech. The copyright holders for the works of Church of Scientology founder L. Ron Hubbard sued those operating a Usenet bulletin board where a “former minister of Scientology turned vocal critic” had posted portions of Hubbard’s works.71 Judge Whyte wrote, “If Usenet servers were responsible for screening all messages coming through their systems, this could have a serious chilling effect on what some say may turn out to be the best public forum for free speech yet devised.”72 Judge Whyte explained that the Internet services sued in the case “play a vital role in the speech of their users.”73 He characterized copyright liability as a possible “‘prior restraint’ on free speech.”74

Introducing what would become title II,75 Senator John Ashcroft declared that immunities against copyright liability would serve free speech. He observed that online service providers could provide to “those who use the Internet or information in a digital format for education, entertainment, research” and that their—both the online service providers’ and users’—“opportunity to speak and to learn needs to be protected.”76 In enacting title II, Congress defied the copyright industry, which believed that the common law liability rule sufficed.

When the House acted to adopt the conference report on October 12, 1998, Representative Barney Frank spoke of the impact of Congressional action on free speech online: “We have in this country the freest speech in the world, . . . but we are developing a second line of law which says electronically-transmitted speech is not as constitutionally protected. We must reverse that trend or we will erode our own freedoms.”77 Representative Frank believed that title II ensured that Internet intermediaries would not act as censors: “In the Committee on the Judiciary, we worked very hard in particular in trying to work out a formula that would protect intellectual property rights and not give the online service providers an excessive incentive to censor.”78

The importance of DMCA title II to free speech is hard to overstate. Before title II, the sword of copyright liability hung over the Internet. In Playboy Enterprises Inc. v. Frena79 and MAI Systems Corp. v. Peak Computer, Inc.,80 federal courts had held Internet service providers liable for copyright infringement occurring through their services, even for the temporary reproductions that arise in the ordinary course of Internet activity. If providers of web services were liable for this, the Internet would have shut down. The direct relationship between copyright and censorship would become even clearer with SOPA.81 The liberating effect of the DMCA on speech can be discerned through a counterfactual: Can we imagine the rise of Google or Facebook if providers were liable for user copyright infringements?

C.     Privacy and Disclosure

In 1995, the European Union (“EU”) adopted the Data Protection Directive, a vast new regime of privacy protection.82 In 1998, Japan launched a comprehensive data bureaucracy, the Supervisory Authority for the Protection of Personal Data, to oversee businesses handling personal data under government guidelines; broad statutes governing personal information would follow in 2001 and 2003.83 In 2001, South Korea implemented laws protecting consumer privacy.84 The United States Congress, however, remained remarkably restrained, limiting itself to a law protecting the privacy of children under 13.85 While numerous omnibus privacy bills were introduced, none passed.86 Why?

Certainly, a pro-business attitude played a crucial role in the American preference for Internet self-regulation expressed throughout the 1990s. Unlike intellectual property, privacy did not have an obvious industry antagonistic to Silicon Valley’s interests in the area, and so, industry was largely united against broad privacy laws. But a preference for business was not the only concern. The penchant for self-regulation had a constitutional underpinning: By allowing private parties to regulate themselves, there would be no government regulatory scheme or mandate that could conceivably impinge on their First Amendment rights. Indeed, as we will show here, the First Amendment posed a substantial hurdle to broad privacy regulations like those passed in other advanced economies.87 We do not mean to suggest that privacy statutes are unconstitutional per se—but that Congress is reluctant to regulate privacy because such statutes might impinge on free speech.

Even before the Internet, the First Amendment had constrained the common law privacy torts.88 William Prosser’s privacy torts had seen their growth stunted by courts concerned about free speech.89 Even Louis Brandeis, whose writing had helped fashion the privacy torts, had retreated from his earlier strong privacy views, endorsing Justice Oliver Wendell Holmes’ view that “a free trade in ideas” might override concerns of “opinions that we loathe and believe to be fraught with death.”90 While Congress responded to the development of computer databases by requiring the federal government to keep information private,91 it was reluctant to offer similar regulations of databases assembled by private parties, such as outside credit information and health records.

Efforts to impose privacy regulations on private entities were met with First Amendment concerns.92 That is not to say that free speech by itself foiled privacy law. Instead, concerns over free speech intermingled with concerns over regulating enterprise, forestalling congressional activity in the area. As James Whitman writes, “Freedom of expression has been the most deadly enemy of continental-style privacy in America.”93 Writing to the House Subcommittee on Commerce, Trade, and Consumer Protection in 2001, Fred Cate cautioned against adopting the European approach to privacy, noting that, “of course, Europe does not have a ‘First Amendment’ or a tradition of constitutional protection for information flows.”94

This hesitance about broad privacy mandates on Internet service providers would only be confirmed in 1999 when the Court of Appeals of the Tenth Circuit declared consumer privacy rules for telecommunications providers unconstitutional. In U.S. West, Inc. v. FCC, the appeals court ruled that requiring telephone companies to obtain customer consent before using personal information outside certain specified domains violated the companies’ First Amendment rights.95 Acting under the authority of a section of the Telecommunications Act of 1996 entitled “Privacy of customer information,” the Federal Communications Commission (“FCC”) had sought to require opt-in consent before a telecommunications provider could use consumer information outside specified purposes.96 In striking down the regulation, the Tenth Circuit held that the government had to narrowly tailor the privacy regulation to pass constitutional muster.97 The court reasoned that the FCC could have considered an opt-out consent to accomplish the statute’s purpose. And it demonstrated a clear hostility to opt-in requirements of the type promoted in Europe.

The implications for the regulation of Internet enterprises of U.S. West were relatively direct. At the most fundamental, the courts made clear that privacy rules regulating the use of consumer information—even by commercial entities—were subject to First Amendment scrutiny. In U.S. West, the court held that privacy regulation “implicate[s] the First Amendment by restricting protected commercial speech.”98 In the Supreme Court’s 2001 decision in Bartnicki v. Vopper, the Court again affirmed that “the naked prohibition against disclosures is fairly characterized as a regulation of pure speech.”99 The Court repeated: “[T]he acts of disclosing and publishing information . . . constitute speech.”100

Efforts to regulate consumer information would clearly raise First Amendment scrutiny. As the Tenth Circuit described in U.S. West, “the essence of the statutory scheme [at issue in the case] requires a telecommunications carrier to obtain customer approval when it wishes to use, disclose, or permit access to [customer information] in a manner not specifically allowed [by the statute].”101 The statute targeted specific information about the customer’s use of the service: “information that relates to the quantity, technical configuration, type, destination, and amount of use of a telecommunications service subscribed to by any customer of a telecommunications carrier, and that is made available to the carrier by the customer solely by virtue of the carrier-customer relationship.”102 As the court described, this included information “such as when, where, and to whom a customer places calls.”103 Translated to the web, such details might include what websites one visited, whom one contacted, and where one was—the precise kind of data that is very attractive for online marketing.

First Amendment concerns also kept strong state privacy laws at bay.104 For example, in 2011, California considered a law that would adjust the default privacy setting on social networks to not share information and would allow a user to delete personal information about himself or herself from a social network. The bill would have required social networks to remove “personal identifying information” upon the individual’s request or, if the individual was a minor, his parents’ requests.105 Silicon Valley advocates argued that California’s proposed bill undermined speech, noting that, as written, the “Social Networking Privacy Act” would allow anyone who worked at the California Senate to remove all references to that body from a social network.106 But even industry criticisms did not fully appreciate the extent of the free speech threat posed by the statute. Essentially, the bill would have codified a kind of mini-“right to be forgotten.”107 It gave users the ability to erase their names from social media sites.108 Users could stop other people from saying bad things about them, simply by having their names deleted. Negative speech could be removed with a few keystrokes, even if it were truthful. A penalty of $10,000 for each violation, in combination with the onerous obligation of verifying parental-registered user relationships, would ensure that companies would remove information liberally, particularly where minors were concerned.

“[I]nformation is power,” Justice Kennedy declared, in his opinion for the Court in 2011.109 In Sorrell v. IMS Health, the Supreme Court dramatically demonstrated the seriousness of First Amendment constraints on privacy regulations on information intermediaries.110 The Court struck down a Vermont privacy law that prevented pharmacies from sharing physician prescription data for marketing purposes without physician consent.111 Reasoning that marketing was a protected expressive purpose, the Court held that the statute was a content-based restriction on protected expression.112 The Court extolled the virtues of free information.113 Justice Kennedy wrote, “Facts, after all, are the beginning point for much of the speech that is most essential to advance human knowledge and to conduct human affairs.”114  This included anodyne details of prescription practices. Because consumer privacy laws suppress the gathering, retention, or use of typically mundane facts about individuals, the Court’s embrace of facts suggests that consumer privacy law would meet stiff First Amendment challenge.

Does Sorrell mean “the death of privacy”?115 No, but it suggests serious limits to privacy law. Would, for example, a privacy statute targeting only social networks be seen as disfavoring a particular category of speaker? Would a statute requiring explicit consent before the use or sharing of a user’s personal information be seen as insufficiently narrowly tailored when an opt-out mechanism might have been used? As Justice Kennedy writes, “The capacity of technology to find and publish personal information . . . presents serious and unresolved issues with respect to personal privacy and the dignity it seeks to secure.”116

D.     The Free Speech Structure of Cyberlaw

In fits and starts, Congress and the courts recognized that broad liabilities on Internet intermediaries would impinge on the speech of ordinary persons. In so doing, they were translating the logic of New York Times Co. v. Sullivan to the information age. Sullivan marked its 50th anniversary in 2014.

Sullivan understood that free speech depends on a free press. In that case, a “rule of liability” was held to “abridge[] the freedom of speech and of the press.”117 Where earlier the First Amendment had focused on direct governmental regulation, Sullivan recognized that speech could be burdened indirectly, by delegating the right to sanction speech to private parties. Laws aimed at speech intermediaries implicated the speech of ordinary persons. This would be true even if it were simply private parties suing other private parties. The Court recognized that a private claim would cause the newspaper to avoid such controversial topics in the future.118 In Sullivan, when private citizens criticized Alabama officials through an advertisement in the New York Times, the officials sued the deep-pocketed newspaper that published their advertisement. A liberal liability rule against the newspaper would, the Supreme Court understood, undermine the speech of those persons who had posted the advertisement. The Court recognized that advertising itself was a direct form of speech by persons other than the press, and that liberally allowing liability arising out of these advertisements would lead the newspaper to sharply curtail what was said in its advertisements:

Any other conclusion would discourage newspapers from carrying “editorial advertisements” of this type, and so might shut off an important outlet for the promulgation of information and ideas by persons who do not themselves have access to publishing facilities—who wish to exercise their freedom of speech even though they are not members of the press.119

Even though the Court described the danger as “self-censorship,” in fact the problem was that the New York Times would not only censor itself, it would censor third parties in the future by refusing to accept advertisements on controversial topics. A contrary ruling would have essentially privatized censorship.

Private liability regimes are one-directional: Liability arises only if the speech intermediary publishes the speech, not if it censors it. Thus, the slightest uncertainty resolves in favor of censorship. Private law can thus function as a one-way ratchet towards censorship. This incentivizes broad suppression of speech, and so, must be scrutinized with care.120 The constitutional interest in such cases is significant because the regulation does not target only “low-value” speech (instead sweeping in both high-value and low-value speech) and because the very ability of speech intermediaries to carry on may be at stake. Even if the regulation itself appears content neutral, the effect of the liability regime will be to deter controversial speech, the speech at the edges of what might invoke liability.121 Censor or shutter.

Sullivan held that even speech paid for by private parties and posted as an advertisement was constitutionally protected—that the commercial context of the speech did not take it outside the First Amendment. Furthermore, the case involved statements that were actual untruths (which the New York Times itself admitted). Even still, the Times was excused. To hold otherwise would substantially chill speech.

The Internet would take us much farther towards the promise of free speech than even a New York Times freed of stiff defamation judgments. Recall that the advertisement taken out in the Times cost $4800 in 1960, beyond the means of most ordinary persons (the average yearly income per family at the time was $5600).122 The Internet allows members of the public to speak directly to the country, even without the hundreds of thousand dollars required to take out a similar advertisement today.123 All one needs to join Facebook or Twitter is access to a computer and an email address (the latter available for free).124 In theory, one does not need a Silicon Valley intermediary to do this, as the World Wide Web is designed to enable ordinary persons to share a webpage viewable on all connected computers. But experience taught us that social networks were crucial to enabling information to reach a broader audience. Facebook, Twitter, and Google enabled users to “follow” others, collecting all their “friends’” posts in one easy-to-read page and allowing for a kind of 24-hour-a-day virtual salon to occur. Being held liable for the speech of their users would lead these services to censor material liberally, or to shut down if such censorship proved practically impossible. After all, the small additional revenues attributable to controversial speech might well not justify the expected costs of a lawsuit or a judgment.

The American commitment to free speech also rebuffs efforts to enact broad privacy protections. U.S. West and Sorrell demonstrated that the First Amendment serves as a significant check on the kinds of privacy protections that might be imposed on Internet intermediaries. The Supreme Court’s 2001 decision in Bartnicki held that a privacy-related wiretapping claim brought by one private party against another implicated speech, and thus, had to pass First Amendment muster. The case again relied on the logic of Sullivan.

When it comes to speech, Internet intermediaries are likely to be ensnared, caught in the middle of the worldwide war fueled by copyright interests, users’ privacy, and governments’ desire to control what is said and to listen in on what people are saying. Internet intermediaries are often the most vulnerable and effective points of control for any government keen on controlling speech. We thus turn to some of the most important contemporary cyberlaw conflicts, demonstrating that the contest over the contours of free speech underlies them all.

III.     Keeping Speech Free

Today’s speech law is being made in the major cyberlaw disputes of the day. Recognizing the free speech structure of cyberlaw helps us understand that today’s major cyberlaw disputes will configure the possibility of free speech in the days to come.

We review here the following Internet controversies: SOPA, a bill that would have enhanced public and private copyright enforcement powers; the intellectual property chapter of the proposed Trans-Pacific Partnership free trade agreement; the United States government’s seizure of domain names in connection with copyright infringement claims; efforts to increase the United Nations’ control over the Internet through the International Telecommunication Union (“ITU”); the EU’s proposed “right to be forgotten”; the new technologies of Web 3.0 and the Internet of Things; and finally, the ubiquitous surveillance of electronic records by the United States government.

A.     SOPA Strikes Back

January 18, 2014, marked the second anniversary of the “SOPA Blackout,” which—like the “A Thousand Points of Darkness” protest in 1995—now seems like a forgotten floppy disk of the digital age. But the threats raised by SOPA remain. They have migrated away from the public halls of Congress to the more secretive world of international diplomacy. Two mega-trade treaties, the Trans-Pacific Partnership Agreement (“TPP”) and the Transatlantic Trade and Investment Partnership (“TTIP”), seek to establish free trade from Asia across the Pacific and then across the Atlantic, with the United States as its epicenter. To understand what is at stake in TPP and TTIP, we must first briefly revisit SOPA.

SOPA sought to make U.S. copyright and trademark holders global censors.125 Introduced on October 26, 2011, in the House of Representatives, SOPA sought to enhance public and private power to shutter Internet sites on behalf of copyright interests.126 In November, opponents declared an “American Censorship Day.”127 Then on January 18, 2012, Google and other sites slapped a black band across their logo, visually recalling the censorship of an analog age, while other sites, like Wikipedia, blacked out their site entirely.128 The perceived threat to speech was made plain in the most dramatic terms.

Proponents cast the bill as necessary to combat foreign websites that facilitate infringement of U.S. copyrights. SOPA would have permitted copyright holders and the U.S. Department of Justice to seek court orders against foreign websites accused of facilitating copyright infringement.129 But it would go much further than restraining alleged foreign rogues through the courts. The bill defined “U.S.-directed sites” to include sites inside the United States, even ones without any foreign component.130 Such a site would be declared “dedicated to theft of U.S. property” if its owner had “taken . . . deliberate actions to avoid confirming a high probability of the use of the U.S.-directed site to carry out” infringement.131 Given that almost any site with user-generated content will include copyright-infringing work, even ordinary sites might then be declared rogue. The bill imposed a secondary boycott,132 under which any intellectual property holder could require companies to either remove a “rogue” site from search results or to cease payment or advertisement services.133 More subtly, SOPA also induced, through a promise of immunity, websites and Internet service providers to proactively avoid, again without a court order, sites that might be found to be “dedicated to theft of U.S. property.”134

The speech implications of the bill were astonishing. Any Internet website that hosted content supplied by users could be said to facilitate copyright infringement because users routinely post infringing material as a form of online sharing. The social web was at risk. The bill gave intellectual property holders the right to block financial and advertising support for websites “dedicated” to theft. Such a power would impinge on the speech of both the intermediaries—denied the right to advertise even without adversary proceedings establishing a primary violation—and the target website—denied the lifeblood of a business, funding and advertising. More importantly, the speech of multitudes of users was at stake because the platforms for their speech might disappear in the face of such risks. Moreover, the rights of intellectual property holders would trump the speech of both Internet intermediaries, target websites, and individual users, even without judicial determinations of infringement. Laurence Tribe denounced the statute for creating prior restraints.135 More pernicious, however, the statute would constrain speech, even without intellectual property holders lifting a finger. The incentive of immunity for proactively refusing to deal with sites “dedicated” to theft would lead many services to blacklist sites that intellectual property holders might disfavor. By making private companies responsible for their users, SOPA would, as Rebecca MacKinnon observed, “emulate China’s system of corporate ‘self-discipline.’”136

If SOPA had been implemented, parts of the Internet would have effectively gone dark—denied domain names or advertising revenues—and been banned from search engines. The targets would not simply be “rogue” sites, whose raison d’être was an intellectual property violation, but also possibly sites like Etsy, selling some million handmade goods, some of which might infringe (handmade Mickey Mouse Club party hats, for example137). In this way, SOPA would jeopardize all sites containing user-generated content, including even such foundational services as Google or Facebook. This is not a fanciful hypothetical. In January 2012, Fox’s Rupert Murdoch took to Twitter to accuse Google of being a “[p]iracy leader.”138 A prominent advertising firm listed the Internet Archive, Vimeo, and SoundCloud among a list of pirate sites.139 Twitter’s then-general counsel, Alex Macgillivray, illustrated the impact on speech of ordinary individuals through the hypothetical teacher Abe:

Abe may wake up one morning and not be able to access any of his photos of his children. Neither he, nor his students, would be able to access any of his lectures. His trove of smart online discussions would likewise evaporate and he wouldn’t even be able to complain about it on his blog.140

Some seven million people signed a petition that helped convince Congress to set SOPA aside.141 This act of speech, which was only made possible by the awareness facilitated by speech intermediaries,142 had protected speech itself.

At least temporarily. If we can’t have intermediary policing imposed through domestic law, perhaps an international agreement might do the trick.143 Led by the United States, a group of countries on both sides of the Pacific is negotiating what is heralded as a “landmark, 21st-century trade agreement.”144 In the latest leaked version, made available by Wikileaks rather than the New York Times, the TPP includes important free flow of data obligations that facilitate free speech, but also includes a chapter on intellectual property that would require member states to adopt strict intermediary liability obligations for Internet service providers.145 We focus here on that latter chapter.146

A close reading of the leaked draft of this chapter reveals SOPA-like ambitions.147 The leaked TPP proposal would require that states provide “legal incentives for service providers to cooperate with copyright owners in deterring the unauthorized storage and transmission of copyrighted materials.”148 The focus here is on deterrencenot notice and takedown, which happens after the fact. How might we provide a legal incentive for service providers to deter infringement? An ideal formulation of such a “legal incentive” for deterrence regime is SOPA—which in section 104 would have provided “immunity for taking voluntary action against sites dedicated to theft.”149 Rather than rely on copyright holders to notify the intermediary of the alleged infringement, the intermediary would itself police its site, deleting material that some might claim was infringing. Fair use would be at the mercy of speech intermediaries that had a legal incentive only to take material down, not to keep it up—a legal incentive, that is, to censor material, not to publish it.

The U.S.’ goal in this provision is not simply to export DMCA title II, with its safe harbors for well-behaved intermediaries that take down allegedly infringing material following appropriate notice. Indeed, the TPP makes this clear: the “legal incentives” for deterrence are in addition to DMCA title II-like safe harbors.150 By creating a legal regime that encourages providers to prevent potentially infringing activity, the proposed TPP intellectual property chapter risks transforming Internet providers into Internet censors.

Thus, the threats from SOPA are alive, global, and unfortunately, avoiding public engagement. Unlike the SOPA discussion, where the collective power of individual speech was demonstrated, the negotiations towards a TPP are reserved for speech by a select few. As for the transatlantic agreement, we will likely have to wait for the next revelation by Wikileaks to learn whether TTIP poses the same dangers to speech.

B.     Criminal Domains: Megaupload and Rojadirecta

The day after the massive protest that doomed SOPA, authorities around the world descended on the cloud service Megaupload.151 In Hong Kong, a hundred policemen entered luxury hotel suites, homes, and offices, seizing computer servers and millions of dollars in cash.152 In the United States, authorities seized ten domain names associated with the service.153 Meanwhile, police in New Zealand descended by helicopter at the home of Megaupload’s flamboyant founder, Kim Dotcom, cutting their way into his panic room.154 On January 20, 2012, users who had posted material to the Megaupload storage lockers, or others who sought access to those materials, now encountered an FBI anti-piracy warning.

Figure 2. The anti-piracy warning posted by the FBI on the Megaupload website, January 2012.


A year earlier, the U.S. government had seized and, domain names operated by Puerto 80, a Spanish company. The authorities accused the sites of facilitating copyright infringement by collecting links to often unauthorized videos of sporting events around the world. The seizure occurred without prior notice to the website owners, and without any adversarial hearing.155

To seize the domain names in both cases, the United States relied on civil seizure and forfeiture triggered on the claim that the domain names “had been used to commit and facilitate . . . criminal copyright infringement.”156 The law permitting seizure did not require either Megaupload or Rojadirecta themselves to have committed a crime, only that the domain names were “used, or intended to be used, in any manner or part to commit or facilitate” copyright infringement.157 The Megaupload and Rojadirecta seizures followed the model of earlier actions,158 in which the U.S. government seized domain names, mainly by targeting VeriSign, a Virginia company that manages .com, .net, .cc, and .tv top-level domains, and the Public Interest Directory, a Virginia company that manages .org.159 This combination revealed that the United States already had an authority proposed in SOPA—the power to shut down at least some foreign websites accused of facilitating infringement without trial in ex parte proceedings.160

The seizures harmed speech, and in some cases, permanently destroyed it. Rojadirecta, for example, not only hosted links to video streams, but also provided forums for sports discussions. The seizure thus denied its 865,000 registered users access to discussion forums, and given that Rojadirecta ranked among the top 100 most trafficked websites, interfered with many users’ access to information.161 On the other hand, the seizure actually destroyed speech in Megaupload’s case. Megaupload’s 5.86 million registered users162 could no longer access their writing, photos, videos, or audio recordings in Megaupload’s cloud—an astonishing 40 petabytes’ worth of material.163 Neither could others who might want to access or download material posted by the registered users, whether it was a song parody, a document, or a cute cat video. Certainly, a significant percentage of the material was likely to be copyright infringing, but the seizure indiscriminately barred access to both infringing and non-infringing content. The Department of Justice offered that a user could retrieve data where he could “demonstrate whether he has an interest in any property seized,” which “may require the testimony of numerous witnesses, including potential expert witnesses.”164 Given the site’s 5.86 million users storing files on the Megaupload clouds, sorting through legitimate and illegitimate claims might seem a formidable task. Denied its domain name and access to its bank accounts, Megaupload could no longer finance its hosting service to continue keeping the data (a reported cost of at least $9000 per day) while it fought the case in the courts.165 Users have not recovered their lost files as of this writing and many will never recover it at all. Denounced as “the largest data massacre in the history of the [I]nternet,” Megaupload’s 630 servers of data have been wiped clean by one of its hosting service providers.166 Nineteen petabytes of data were destroyed, the equivalent of 1945 times the U.S. Library of Congress print collection.167 The fate of another 1103 servers, containing 25 petabytes, remains uncertain.

Puerto 80 argued that the domain name seizure amounted to an unconstitutional “prior restraint on speech.”168 The district court rejected Puerto 80’s efforts to have the domain names restored, pending review on the merits.169 District Judge Paul Crotty observed, “[a]lthough some discussion may take place in the forums, the fact that visitors must now go to other websites to partake in the same discussions is clearly not the kind of substantial hardship that Congress intended to ameliorate.”170 Puerto 80 could, and did, transfer its service to other domains (.es, .me, and .in, for example), but this interrupted user access and likely lost users in the process.171 Puerto 80, in fact, pleaded with its users, “¡SPREAD our new address!”172 On appeal to the U.S. Court of Appeals of the Second Circuit, the government acknowledged the users’ free “speech rights in Rojadirecta’s chat forums” but argued that they could be exercised elsewhere.173 The government relied upon a Supreme Court decision upholding the incidental burden on speech imposed by the closure of an adult bookstore.174 But the bookstore case was inapposite because it did not involve a prior restraint; the bookstore had been found to be hosting illegal prostitution in a contested proceeding. The Rojadirecta case ended with a whimper. Eighteen months after the seizure, the U.S. government returned the domain names and abandoned its case without explanation.175

The domain name seizure seemed to fit the classic fact pattern for a prior restraint: “administrative and judicial orders forbidding certain communications when issued in advance of the time that such communications are to occur.”176 Such an order would be especially constitutionally suspect when the speech had been curtailed “without a prior judicial determination” of illegality.177

A domain name seizure operates both as a punishment for prior speech and a prior restraint on future speech. Domain name seizures are particularly troubling when they interfere with the access of thousands, or even millions of users, to forums for sharing information. Domain name seizures in this context almost invariably impinge on protected speech, with the real consequence of certainly destroying them. A blunderbuss approach to a problem, they are not narrowly tailored to target the actual offense. The First Amendment should require the use of “more sensitive tools”178 than domain name seizures.

The United States cannot translate its de facto control of the most significant parts of the domain name space into a de facto system of licensing speech. Anyone placing material on a .com or a .org space should not have to worry that they might wake up to find their site disappeared for the offense it offered to the U.S. government. Yet through the TPP, the United States is globalizing this de facto system of speech licensing. In addition to the SOPA-like provisions that incentivize monitoring, both the U.S. proposal and the official TPP proposal would add aiding-and-abetting liability for criminal copyright infringement179 to civil forfeiture—the main legal basis behind these high profile domain seizures.180 Introduced in the U.S. Copyright Act of 1909,181 aiding-and-abetting liability for copyright infringement was actually removed in the Copyright Act of 1976.182 Nevertheless, the United States charged Megaupload under both a direct criminal copyright theory and for aiding and abetting such infringement, using the general aiding-and-abetting statute coupled with the underlying criminal copyright infringement offense.183 That case remains unresolved with regards to aiding-and-abetting liability.

The fundamental concern is that broad criminal aiding-and-abetting liability for copyright infringement will drive speech intermediaries to censor broadly, lest they be held criminally responsible for the speech of their users. The threat of aiding-and-abetting criminal copyright liability might render the DMCA title II safe harbors meaningless because companies could still be indicted as aiders and abettors.184 Incentivizing monitoring obligations, increasing criminal liability, and displacing safe harbor protection effectively negate the goal of the DMCA safe harbors “not [to] give the online service providers an excessive incentive to censor.”185

C.     The United Nations of Censors

When governments have censored speech, they have often been criticized both by other governments and civil society.186 What if a government could cite an international treaty authorizing Internet censorship? Before a United Nations ITU conference in Dubai in 2012, China, Russia, and Saudi Arabia proposed precisely this.187 They sought international authority for every state to restrict Internet access where it might “interfer[e] in the internal affairs or undermin[e] . . . national security [or] public safety . . . or . . . divulge information of a sensitive nature.”188

National security, of course, is often invoked by governments seeking to censor information they find undesirable. This provision would have authorized both a kill switch, allowing governments to shut down the Internet, and more targeted censorship, barring particular information that a government declares forbidden. By seeking such constraints at the telecommunications level (the realm of the ITU), Russia and other states sought to build censorship into the infrastructure of the Internet—and receive international blessing to do so. They also sought to build in surveillance. Russia proposed that a state “have the right, where necessary, to know the actual course of a route, for the purposes of ensuring security and combating fraud”189 and even sought to “ensure that operating agencies duly identify the subscriber.”190

Concerns over the free speech implications of these provisions led the ITU ultimately to reject these changes to the International Telecommunications Regulations,191 at least for now.192 The ITU did require states to “endeavour to ensure the security and robustness of international telecommunication networks,” potentially raising censorship-via-security-rationale concerns—though not with the same force as the more direct censorship and surveillance proposals.193

Governments may not need the cover of the United Nations to try to impose greater control over information on the Internet. Countries around the world are seeking to keep data about their citizens from leaving their borders and increasing their ability to monitor their citizens in the process.194 Vietnam’s Decree 72 now requires a local copy of all information about Vietnamese users;195 Germany proposed a parallel Internet infrastructure to keep information within Europe;196 Brazil considered (and ultimately rejected) a Marco Civil Provision that would allow the executive to ban any information from leaving the country.197

D.     Europe’s Forgetting Pill

The elephantine memory of computer systems combined with the rise of digitized expression and interaction has led many to propose a legal tool to compel the deletion of personal information from databases.198 The European Commission proposes such a right across Europe, defining a “right to be forgotten” as “the right of individuals to have their data . . . deleted when [it is] no longer needed for legitimate purposes.”199 The proposed Data Protection Regulation not only gives you the right to remove what you have said from others’ computers, but also what they have said about you.200 To assuage concerns about expression, the proposed regulation provides exceptions for free speech, public health, research, journalism, and art.201 While these exceptions might seem to insulate the regulation from speech concerns, one needs only imagine an effort by an individual, Jack, to erase an earlier intemperate Facebook post that had been shared by Jill. Should Facebook eliminate this posting from Jill’s page as the quintessential kind of activity that a person might desire to be forgotten? Or should Facebook declare Jill’s sharing “free expression”? One suspects that the Facebook employee, faced with such concerns, might simply press “delete,” though it may be hard to know whether Jack or Jill will be more aggravated by a decision one way or another. The employee would keep the following fact in mind: Liability for noncompliance with the right to be forgotten runs only if one refuses to delete, not if one deletes at the drop of a hat. Removing art and free expression carelessly does not carry any sanction. And the liability for failure to delete is fearsome: a fine of up to two percent of Facebook’s annual worldwide income,202 or more than $100,000,000 based on 2012 figures.203

The right to be forgotten transforms Facebook, Google, Reddit, and Twitter into censors, charged with evaluating whether a particular expression has artistic or journalistic merit or otherwise constitutes free expression. It renders them art curators and masters of literary value.204 It imposes difficult burdens on Web 2.0205 enterprises, including the potential requirement to identify how personal data has been shared through their platform, which might require a kind of tracking mechanism for data. This policing burden arises from the requirement that a data controller is responsible “[w]here the controller . . . has made the personal data public,” for example, by “authoris[ing] a third party publication of personal data.”206 Because authorizing might include providing a “share” button, Internet intermediaries might find their burden here impossibly heavy. The proposed Data Protection Regulation has been overwhelmingly backed by the European Parliament’s Committee on Civil Liberties, Justice and Home Affairs late last year and is currently being negotiated in the Council of the EU.207

The European Court of Justice considered the issue in the case of Google Spain v AEPD and Mario Costeja González. In this case, a data subject sued Google for displaying incriminating information about him, which was made available online by a third party and then indexed by Google. When the case was being heard, the Advocate General of the European Court of Justice, Niilo Jääskinen, advised the court208 that the 1995 Directive209 does not provide citizens the general right to be forgotten. But when asked whether the right to be forgotten could be derived from Article 7 of the European Union Charter, Jääskinen said:

[T]he right to search information published on the internet by means of search engines is one of the most important ways to exercise that fundamental right. . . . An internet user’s right to information would be compromised if his search for information concerning an individual did not generate search results providing a truthful reflection . . . .210

At the same time, Jääskinen recognized that the “search engine service provider lawfully exercises . . . his . . . freedom of expression when he makes available internet information location tools relying on a search engine.”211 Echoing the reasoning of Sullivan, Jääskinen advised that “any unregulated ‘notice and take down procedure’ . . . would amount to the censuring of [the website’s] published content by a private party.”212

The Court of Justice of the European Union decided this case on May 13, 2014, ruling that Internet search engines must consider an individual’s requests to remove links resulting from a search of his name and must remove “from the list of results displayed following a search made on the basis of a person’s name links to web pages, published by third parties and containing information relating to that person.”213 The judgment establishes a right to be forgotten based on Articles 7 and 8 of the EU Charter for data that “appear to be inadequate, irrelevant . . . or excessive.”214 The judgment also distinguishes between private information and information tightly bound to the “legitimate interest of internet users.”215 Without additional guidance, search engines are obligated to arbitrate what information is inadequate, irrelevant, of the public interest, and whose interests should override. To comply with the judgment, Google offered EU citizens the ability to file data removal requests.216 Within 24 hours, the search engine received right to be forgotten requests from at least 12,000 individuals.217 Not only can search engines interfere with third parties’ social and political opinions relating to an individual, they can severely curtail billions of Internet users’ access to knowledge and speech. While individuals can file requests for removal, Internet users and third party speakers have no recourse to have search engines reinstate the links to writings and publications. The European Court of Justice approach does not give due attention to the importance of search services to free speech. Imagine the burden on speech if a library were to tell you that information might be found in its vast, unorganized stacks, but that it could not offer an index to assist the search for information.

A right to be forgotten law, limited to children, was proposed in California,218 but ultimately, the version of the bill that was passed, the Privacy Rights for California Minors in the Digital World Act, only narrowly allowed children to delete information they had posted from their own streams, not from those of others.219 This is a right that most services already provide to users.

E.     Web 3.0 and the Internet of Things

Free speech gave life to Web 2.0, and it will also be critical to Web 3.0. While Web 2.0 could be captured by Facebook’s mission statement—“to give people the power to share and make the world more open and connected”220—Web 3.0 seeks to create a world where the devices we use share, process, and “comprehend” data in a way that makes them in some sense aware.221 Conceptualized by the World Wide Web inventor Tim Berners-Lee as a “Semantic Web,” Web 3.0 consists of an intelligent network with growing ontologies for information, allowing computers to better “understand” digitized information.222 With this metadata, Web applications, smartphones, and perhaps even a humble toaster will be able to mine and interpret the massive quantity of data generated on the Web. The ontologies help define the ways that information can be related or its possible range of (computer-accessible) meanings. These ontologies will not only enable, but they will also condition speech. They are intended to help computers, and the people behind them, to understand the world through its digitized ephemera. But representations of information can also limit the kinds of information that is acceptable—they can constrain as much as enable.223

Web 3.0 implicates computer-mediated information sharing—or speech—to an extent never before possible. Let us anticipate an objection in our characterization of this as speech. Computers, of course, are not “persons” for purposes of the First Amendment, but their owners are. The people who devise the ontologies, or who program the computer, are speaking. Our speech is no less our own if it is processed by a computer we direct through a word processor or a web server. In Sorrell, as we have observed, the Court declared expansively, “[I]nformation is speech.”224 Information about information (metadata, or even the higher-level ontologies that define the form and content of metadata) is also speech, even if it is to be used by computers in the service of people.225 Chief Judge Jon Newman’s holding for the Second Circuit that “computer code conveying information is ‘speech’ within the meaning of the First Amendment” holds true here as well.226 As we press forward with the frameworks for information representation and connection, we have to be careful to allow for ontologies that do not unduly constrain speech, especially in ways that favor the government.

Perhaps an even graver concern is the possibility that Web 3.0 will assist government surveillance, allowing governments to more accurately assess the content of speech using automatic means. Surveillance will grow even more ubiquitous through the rapid deployment of what has come to be known as the “Internet of Things”—the rise of objects embedded with sensors connected to the Internet.227 Cisco projects that there will be 50 billion such devices by 2020,228 connecting and communicating with each other and other software agents on the Internet. 229

The speech concern raised by the Internet of Things is that people may censor themselves, knowing that their environment and the devices they use are blabbing about them. Jerry Kang and Dana Cuff ask, “How likely are you to walk through the gay and lesbian studies section of [a bookstore] if you are closeted and know that RFID [radio frequency identification] readers are locked on your body?”230 This concern can be ameliorated by careful construction and deployment of the underlying technologies.231We turn to the crucial issue of surveillance in the next Subpart.

F.     Surveillance

“An inspecting gaze, a gaze which each individual under its weight will end by interiorising to the point that he is his own overseer, each individual thus exercising this surveillance over, and against, himself. A superb formula: power exercised continuously and for what turns out to be a minimal cost.”

                 Michel Foucault, Power/Knowledge232


“Surveillance . . . breeds conformity,” Glenn Greenwald observed in the wake of the recent disclosures of widespread electronic surveillance by the United States.233 “[S]urveillance leads to self-censorship,” Jerry Kang similarly warned early in the Internet Age.234 Even earlier, Jennifer Granholm, who would go on to become governor of Michigan, worried that surveillance on the streets might suppress the inclinations of “[l]ight-hearted pedestrians” who might otherwise “sing out loud, dance a few steps in the street, or impulsively . . . hug a friend.”235 Meiklejohn’s “dancing in the streets” after Sullivan236 might yield to the sober business of getting from point A to point B with coats drawn closed. Daniel Solove, too, noted that “[s]urveillance can lead to self-censorship and inhibition. Because of its inhibitory effects, surveillance is a tool of social control.”237 In 1981, Vincent Blasi described the speech implications of self-censorship as follows: “Speakers, listeners, and society at large all suffer when . . . a regulatory scheme . . . causes [persons] to forgo protected expression rather than get themselves enmeshed in the scheme.”238 

Ubiquitous surveillance poses a mortal risk to free speech. Surveillance scholars point to Michel Foucault’s observation that surveillance functions most effectively when it is internalized by its subjects, who conform to the preferences of the watchers, even without need for individual discipline.239 Foucault described the physical architecture of the Panopticon, which can regulate without lifting a finger. As Foucault noted:

The genius of the Panopticon is that the surveillance itself disciplines: ‘He who is subjected to a field of visibility, and who knows it, assumes responsibility for the constraints of power; he makes them play spontaneously upon himself; he inscribes in himself the power relation in which he simultaneously plays both roles; he becomes the principal of his own subjection.’240

Yet, because of the diffuseness of the chilling effect, it may be difficult to make out a First Amendment case against public surveillance.241 In 1967, civil rights activists challenged the U.S. Army’s extensive monitoring of their public activities, arguing that it “chilled” speech. 242  In Laird v. Tatum, the Supreme Court held that the plaintiff lacked standing because the injury was too “speculative.”243 In his dissent, Justice William O. Douglas compared the U.S. Army’s actions with those of the Russian authorities:

When an intelligence officer looks over every nonconformist’s shoulder in the library, or walks invisibly by his side in a picket line, or infiltrates his club, the America once extolled as the voice of liberty heard around the world no longer is cast in the image which Jefferson and Madison designed, but more in the Russian image . . . .244

Justice Douglas even quoted from a letter from Alexander Solzhenitsyn, the Soviet dissident and scholar of totalitarianism, noting the “forbidden, contaminated zone” that surveillance had created around his family, placing everyone with whom they were in contact at risk of reprisal.245 The courts have largely continued in Laird’s vein, most recently in a federal district court’s dismissal of a claim against the surveillance of mosques by the New York City Police.246 In Hassan v. City of New York, the district judge believed that the harm only arose when the plaintiffs learned of the surveillance from the media and would not have occurred if the surveillance had remained hidden.247 But if individuals come to believe that their every move is in fact being watched, the chilling effect has already arrived. Given the real harms of such surveillance, Neil Richards has argued that “a reasonable fear of government surveillance that affects the subject’s intellectual activities (reading, thinking, and communicating) should be recognized as a harm sufficient to prove an injury in fact under standing doctrine.”248

Many readers will agree with this critique of omnipresent government surveillance made possible by the digital medium. But readers may note that surveillance comes in additional forms. Surveillance by corporations, or corporate “dataveillance,” is an increasingly commonplace feature of digital life, and indeed, as we have suggested, a key to the free speech made possible by the Web. Corporations amass as much data as possible about an individual, then mine the data for marketing purposes. While such information helps tailor advertising to the individual tastes of the user, many worry about the possible manipulation of consumers made possible by the greater knowledge of their habits.249

Fearing that Big Brother is watching, individuals will comport themselves accordingly.250 Self-censorship will become the norm, as it is in authoritarian societies today.

IV.     Conclusion: #

#Inauguration, #BostonMarathon, #StandWithWendy, #DOMA, #Prop8, #MalalaDay, #MarchOnWashington, #GovernmentShutdown, #IranTalks, #RIPMandela. These are the issues that occupied the nation’s attention in 2013, as reflected in what we spoke about on Twitter.251  The zeitgeist of an age is perhaps more likely to be reflected on Twitter than either the New York Times or CBS. When Nelson Mandela passed away, many took to the streets, but even more took to social media. On Twitter, their messages might appear in the newsfeeds of their followers, and also in the results for anyone searching for conversations about Mandela through hashtags. The hashtag served as a democratizer of speech, allowing anyone to have her thoughts echoed around the world. Thus, the hashtag facilitates a bottom-up commentary on the issues of the moment. But Twitter did not invent the hashtag. Instead, it was the community of users who found a need to connect thoughts from disparate individuals.252 But the hashtag granted an extraordinary power—it helped give ordinary people the power to engage the world on whatever topic they choose. And it gave individuals the ability to hear what their fellow human beings wanted to say on a particular subject. Reflecting on the year just ending, Twitter itself observed, “[t]his year’s most-retweeted Tweets showed the world coming together in loss, love, and celebration.”253 No one has the power to exclude someone from a conversation. No one can un-hashtag someone else’s speech. The hashtag is free and open, not trademarked or copyrighted. When Mitt Romney supporters created the hashtag #AreYouBetterOff, Barack Obama supporters joined in the conversation, outnumbering Romney supporters by a margin of three to one.254 While the services do give a user the power to block others, this only blocks those users from one’s own newsfeed—not from the general public.255

One day in 2013, a false rumor, circulated on Twitter, caused the stock market to lose $200 billion in value.256 Someone hijacking the Associated Press Twitter account had falsely reported injury to the President, sending the market into a swoon.257 Lawsuits for damages would have spelled the death of Twitter. Yet, no lawsuits were forthcoming, clearly futile because of the law. Outrageous conduct by users of Facebook, Google, Reddit, Tumblr, or Yelp might have spelled the death of social media without a law insulating these companies from liability for facilitating the speech of users.

On the Internet, speech, technology, and business are inextricably bound. Free speech and its limits are now debated in the MIT Technology Review.258 The central organizing principles of the Internet revolve around speech and freedom. Consider the famous maxims: “Information wants to be free”259 or “The Net interprets censorship as damage and routes around it.”260 Even the Internet’s best-known joke—“On the Internet, nobody knows you’re a dog”261—relies on the way that the Internet frees speech.

The latest incarnation of Silicon Valley can be attributed to a decision in 1789 and efforts to give it life two centuries later. When James Madison first proposed what became the First Amendment to the U.S. Constitution,262 he could scarcely have imagined the world of Facebook, Flickr, Google, Pinterest, and Twitter. But the U.S. Constitution’s free speech guarantee would help usher these companies into being at the dawn of the millennium. In turn, the free speech guarantee would itself be reincarnated, giving ordinary persons in the United States and the world the ability to talk to each other.

Yet, the same technology that gives us free speech lends itself to pervasive surveillance, unimaginable even by the Stasi.263 A 21st-century free speech law must attend to the ways that Internet protocols and intermediaries regulate or liberate speech. We must be ever vigilant, lest additional years find us lamenting the loss of a golden age for free speech. 

