Privacy and Technology Policies

U.S. Senator Warns of Security and Regulatory Risks in Trump Mobile Service

Senator Maggie Hassan said that Trump Mobile does not appear to have obtained the authorization required for international telecommunications services, and that it lacks or is missing robocall-mitigation filings. These questions follow a breach affecting the data of 3,615 customers and concerns about subscriber identity-verification mechanisms.

2026-10-08
4 min read
201 views
certi.news
U.S. Senator Warns of Security and Regulatory Risks in Trump Mobile Service

U.S. Senator Maggie Hassan asked Trump Mobile for clarification about its compliance with Federal Communications Commission (FCC) rules after indicating that the service does not appear to have the authorization necessary to provide the international communications component it advertises. This came alongside security questions following the leak of personal data belonging to 3,615 customers and an earlier incident in which a vendor exposed customer data online.

In a letter addressed to Patrick O’Brien, the company’s chief executive officer, Hassan said that a search of the FCC’s international communications filing system did not show Trump Mobile possessing the authorization required under Section 214 of the Communications Act of 1934. The service advertises connectivity to more than 230 countries and territories, raising questions about which entity provides these services and the regulatory basis on which they rely.

Why Does the Lack of Authorization Matter?

Section 214 requirements include disclosure of foreign ownership so that the FCC can assess national-security risks associated with international communications services. According to Hassan’s letter, these rules apply to network operators as well as mobile virtual network operators (MVNOs) that resell other companies’ services.

The senator cited previous FCC decisions that linked the absence of authorization to risks involving national security, law enforcement, foreign policy, and trade. She also pointed to the revocation of China Telecom Americas’ authorization in 2021, after the commission concluded that a company controlled by a foreign government might be able to access, monitor, store, disrupt, or reroute U.S. communications.

Liberty Mobile’s Relationship Under Scrutiny

The letter also focuses on Liberty Mobile Wireless, a Florida-based MVNO that Trump Mobile describes as the service’s “enabler” and “backbone.” According to previous statements by Trump Mobile officials reported by The Verge, Liberty Mobile handles much of the technical, legal, and financial operations, while the two companies appear to be run by the same people.

Hassan asked whether Trump Mobile owns, operates, or controls Liberty Mobile, and what the nature of the relationships is between the two companies and other telecommunications companies. The senator believes that the ownership and operating structure is important for determining which entity is responsible for compliance and security controls.

Gaps in Fraudulent-Call Mitigation

Hassan said that Trump Mobile does not appear in the robocall-mitigation database under its name or its operating name, T1 Mobile LLC, while Liberty Mobile’s latest filing appears not to include information about “know your customer” (KYC) procedures. The rules governing the robocall-mitigation database require the submission of a description of customer-identity-verification mechanisms as part of annual plans.

This point is especially important because the service allows subscriptions to be activated through a simplified process, which Hassan said could make it easier for fraudsters to obtain U.S. numbers. Failure to comply with filing rules can result in fines, removal from the database, or requiring other companies to block traffic associated with the noncompliant operator.

The Breach and Open Questions

The demands follow a report about the theft of data belonging to 3,615 customers and a ransomware group’s claim that it notified Trump Mobile of the breach before receiving a response stating that there was no team to handle it. Hassan also said that the company appears to lack a robust customer-authentication process.

The senator asked O’Brien to respond by October 29 regarding the breach, the ownership structure, the relationship with Liberty Mobile, subscriber-verification procedures, regulatory filings, and the sales and component sources of Trump phones. Ars Technica contacted Trump Mobile, Liberty Mobile, and the FCC for comment, but the source did not include a response from them by the time of publication.

Editorial reading: The letter alone does not establish that a final violation occurred, but it reveals a gap between the advertised services and the visible regulatory filings, and directly links regulatory compliance to the operator’s ability to prevent the misuse of numbers and protect customer data. The existence of the authorization, Liberty Mobile’s responsibility, and the completeness of the KYC plans remain points requiring an official response or action from the FCC.

News source
c
Author

certi.news

In the same category

You may also like

View all news