Apple and the UK government are heading back into a major fight over encrypted iCloud data.
Apple has launched a new legal challenge against a UK government demand that could require the company to provide access to encrypted cloud backups belonging to British users.
The dispute follows an earlier confrontation over encryption that resulted in Apple withdrawing its Advanced Data Protection feature from UK customers.
This time, the reported government demand is narrower because it doesn’t apply to American users.
For British Apple customers, however, the underlying question remains the same:
Can your cloud data really be private if a technology company can be forced to create a way into it?
What Has Happened?
According to the Financial Times, Apple filed a complaint with the UK’s Investigatory Powers Tribunal challenging a government technical capability notice, commonly known as a TCN.
Technical capability notices can be issued under Britain’s Investigatory Powers Act and can require technology companies to maintain certain capabilities that assist law enforcement and intelligence agencies.
The latest dispute reportedly concerns encrypted iCloud data belonging to UK users.
Apple is challenging the government’s legal powers surrounding the order.
The company has consistently opposed requirements that would force it to weaken encryption or create special mechanisms for accessing encrypted customer information.
The UK government, meanwhile, argues that law enforcement needs proportionate access to information when investigating serious crimes and threats to public safety.
That creates a conflict with no easy technical solution.
What Is Advanced Data Protection?

To understand why this matters, you need to understand how Apple’s Advanced Data Protection for iCloud, or ADP, works.
Standard iCloud security already encrypts user information.
But Advanced Data Protection goes considerably further by applying end-to-end encryption to additional categories of iCloud information.
With ADP enabled, data including iCloud Backup, Photos, Notes and iCloud Drive can be protected using encryption keys Apple itself doesn’t possess.
Apple’s own current law-enforcement documentation states that it cannot decrypt certain iCloud content protected by Advanced Data Protection.
That’s important.
If Apple doesn’t possess the encryption key, the company can’t simply hand over readable copies of that encrypted information—even when it receives a valid legal request.
That architecture is one of the strongest privacy protections Apple can provide.
It’s also precisely why governments can find end-to-end encryption frustrating.
UK Users Already Lost Advanced Data Protection
This isn’t an abstract argument for British Apple customers.
Advanced Data Protection was withdrawn for new UK users in early 2025 following Apple’s previous confrontation with the British government.
That means customers elsewhere can have access to an iCloud security feature that Apple no longer offers in the UK.
The earlier government demand reportedly went further, creating concerns about access to encrypted information belonging to users outside Britain as well.
Following significant political controversy, the UK backed away from that original demand.
But the encryption dispute didn’t disappear.
Authorities subsequently issued another technical capability notice that reportedly applies to UK users rather than American customers.
Apple is now challenging that demand.
Why Can’t Apple Just Create Access for Police?
This is where the encryption debate becomes technically difficult.
The phrase “backdoor” can make the problem sound like adding a hidden password that only trusted authorities know.
Strong encryption doesn’t work that neatly.
If a system is deliberately redesigned so somebody other than the user can decrypt information, another pathway to the protected data now exists.
Security experts have long argued that creating exceptional access for legitimate authorities can introduce vulnerabilities that could potentially be exploited by criminals, hostile governments or other attackers.
Apple’s position is that it has never created a universal backdoor or master key for its products and doesn’t intend to do so.
Governments make a different argument.
They contend that increasingly widespread encryption can prevent investigators from accessing evidence even when they have proper legal authorisation.
That can affect investigations involving terrorism, organised crime, child exploitation and other serious offences.
The policy question therefore isn’t whether law enforcement should investigate serious crime.
It’s whether exceptional access can be created without making encrypted systems fundamentally less secure.
That’s the part technologists and governments have been arguing about for decades.
Why iPhone Users Outside the UK Should Care
The current reported demand is focused on British users, but the outcome could have wider implications.
Technology products are global.
If one country establishes that companies can be compelled to redesign encrypted services to provide exceptional access, governments elsewhere could pursue similar powers.
Companies could then face a difficult choice.
They might build different security architectures for different countries.
They could remove features from particular markets, as Apple has already done with Advanced Data Protection in Britain.
Or they could challenge government orders in court.
For consumers, this means national laws can increasingly determine which privacy features are available on their phones and cloud accounts.
The iPhone in your pocket might be physically identical to one sold elsewhere while offering different privacy protections depending on where you live.
Does This Mean the UK Government Can Read Your iCloud?
Not automatically.
It’s important not to turn a complicated legal dispute into an unnecessarily frightening claim.
Different categories of iCloud information receive different levels of encryption protection.
Apple can provide some information when presented with an appropriate legal request because it retains the technical ability to access certain categories of data.
End-to-end encrypted information is different.
Apple’s documentation states that when Advanced Data Protection is enabled, it doesn’t possess the encryption keys necessary to decrypt protected categories including Photos, iCloud Drive, backups, Notes and Safari bookmarks.
The problem for UK users is that Apple no longer offers ADP to new customers there.
Exactly what the government’s latest technical capability notice requires is also difficult to assess publicly because Britain’s legal regime restricts companies from discussing individual notices.
That’s one reason this case matters: much of the fight over users’ privacy is taking place behind legal secrecy.
Privacy Groups Are Challenging the System Too

Apple isn’t the only organisation fighting the UK’s technical capability notice regime.
Privacy International and Liberty have pursued their own legal challenge involving these powers.
Privacy International has argued that secrecy surrounding technical capability notices prevents proper public scrutiny of decisions that could have enormous consequences for cybersecurity and privacy.
The Investigatory Powers Tribunal is expected to consider how the related legal challenges should proceed.
That means this dispute is likely to continue rather than being resolved quickly.
What UK Apple Users Can Do Right Now
British users can’t simply switch Advanced Data Protection back on if Apple no longer makes the feature available to them.
But there are still sensible steps anyone can take to improve Apple account security.
Use a strong, unique Apple Account password and make sure two-factor authentication is enabled.
Review which devices are signed into your Apple Account and remove hardware you no longer recognise or use.
Keep your iPhone, iPad and Mac updated so known security vulnerabilities receive patches.
You should also understand the difference between device encryption and cloud encryption.
Your iPhone being strongly encrypted doesn’t necessarily mean every piece of information synchronised to a cloud service receives exactly the same protection.
For particularly sensitive information, consider carefully where that data is stored and what encryption model the service uses.
The Encryption Fight Is Bigger Than Apple
It’s tempting to frame this as Apple versus the British government.
The real issue is much larger.
Encrypted messaging, cloud backups and secure devices now contain enormous amounts of our personal lives.
Governments understandably want access to evidence when investigating serious crimes.
Technology companies and security researchers warn that deliberately weakening encryption could expose ordinary people to entirely different threats.
Both problems are real.
What’s much harder is finding a technical solution that provides guaranteed access only to the “good guys.”
So far, modern cryptography hasn’t provided a magic door that knows who deserves to walk through it.
Apple’s latest legal challenge means that fundamental conflict is heading back before the UK’s surveillance tribunal.
And for millions of ordinary users, the outcome could help determine how private the cloud really is.
By Radoslav Jokic
Updated on 7th August 2026