Cyberspace is the fifth domain of human activity after land, sea, air and space — and, like those domains, it is increasingly contested. State-sponsored cyber operations, cross-border data flows, platform power, and AI-driven content have turned "internet governance" from a technical backwater into a frontline diplomatic agenda. For UPSC aspirants, this topic threads through General Studies Paper II (international institutions), Paper III (cybersecurity, science and technology) and the essay paper.
What Is Internet Governance?
Internet governance refers to the development and application of shared principles, norms, rules, decision-making procedures and programmes that shape the evolution and use of the internet. As articulated in the 2005 Tunis Agenda of the World Summit on the Information Society (WSIS), it covers:
- Technical standards — protocols (TCP/IP, HTTP, DNS) and standards bodies (IETF, W3C).
- Critical resources — IP addresses, domain names, root servers (managed primarily via ICANN and regional registries).
- Public policy issues — privacy, cybercrime, content moderation, platform regulation, AI.
- Development and capacity building — bridging the digital divide.
There is no single global internet governance authority. Instead, a patchwork of institutions, industry bodies, technical communities and governments share overlapping roles.
Why Governance Is Necessary
- Cross-border nature of data — a single transaction can traverse half a dozen jurisdictions, creating conflicts around ownership, taxation and law enforcement access.
- Critical infrastructure risk — telecom, power, finance, health and defence systems are networked and vulnerable to state-sponsored attacks.
- Power struggles — attempts to influence elections, social movements and narratives across borders raise sovereignty concerns.
- Equitable access — undersea cables, cloud data centres and content networks are concentrated in a few countries, skewing the "open" internet.
- Lack of harmonised cyber law — countries struggle to prosecute cross-border crime or enforce privacy rights, driving demand for cyber norms.
Competing Governance Models
Multistakeholder Model
Championed by the United States, the European Union and much of industry, this model brings governments, private sector, technical community, academia and civil society together as peers. ICANN and the Internet Governance Forum (IGF) embody this approach. Proponents argue it preserves innovation and the open, permissionless internet.
Multilateral Model
Advocated by Russia and China, this model insists on state primacy — with the UN's International Telecommunication Union (ITU) or a new treaty body taking charge of internet governance. Proponents argue it respects sovereignty; critics fear it enables authoritarian content control and fragmentation.
India has historically oscillated between these poles, now favouring a "multistakeholder with multilateral oversight" formulation.
Actions Taken So Far
- WSIS 1 (Geneva, 2003) and WSIS 2 (Tunis, 2005) — created the Internet Governance Forum and defined governance jurisdiction.
- UN Group of Governmental Experts (UN GGE) — narrow membership body that produced landmark reports (2013, 2015, 2021) affirming that international law applies to cyberspace.
- Open-Ended Working Group (OEWG, 2019) — inclusive counterpart to the GGE, with all 193 UN members participating; its second OEWG (2021-25) continues to develop norms for responsible state behaviour.
- UN Convention on Cybercrime (2024) — the first treaty focused on cybercrime, adopted by the UN General Assembly in December 2024.
- ICANN transition (2016) — the US relinquished oversight of the IANA functions, making ICANN fully community-governed.
- Budapest Convention on Cybercrime — a Council of Europe instrument that India has observed but not signed.
India's Position
India’s stance has matured across three phases. Initially a vocal advocate of multilateralism (2011 India-Brazil-South Africa proposal for a “UN Committee on Internet Related Policies”), India then leaned into the multistakeholder approach by hosting the India IGF and engaging ICANN and the IETF. Since 2020, India has combined both — asserting sovereignty (data localisation, IT Rules 2021, Digital Personal Data Protection Act 2023) while exporting digital public infrastructure (UPI, Aadhaar, DIKSHA) through the India Stack.
Key Concerns for India
- Data sovereignty without fragmentation — localisation rules that do not destroy interoperability.
- Cybersecurity and critical infrastructure protection — protecting grids, banking and telecoms from state and non-state adversaries.
- Platform accountability — regulating misinformation, deepfakes and hate speech without chilling free speech under Article 19.
- AI governance integration with internet governance, now that generative AI sits atop internet infrastructure.
- Representation in technical bodies — more Indian engineers in IETF, ICANN and IEEE working groups.
Ethical and Policy Dimensions
Internet governance decisions carry deep ethical stakes — who decides what speech is acceptable, how children are protected, whether marginalised communities get voice, and whether surveillance is constrained by law. The principle of "net neutrality" — equal treatment of data regardless of content or source — remains a policy fight globally, though India's 2018 net neutrality rules among the world's strongest.
Latest Developments (2024-26)
- AI Action Summit, Paris (February 2025) — India co-chaired, pushing for inclusive, open and trusted AI that sits within existing internet governance frameworks rather than in a siloed AI regime.
- India Semiconductor Mission — by reducing import dependence on foreign chipmakers, India strengthens its claim in governance discussions around hardware supply chains.
- Chandrayaan-4 and Gaganyaan have made India a stronger voice in space-internet governance, where LEO constellations intersect with ITU spectrum rules.
- National Quantum Mission is beginning to feed into internet governance debates around post-quantum cryptography standards being developed at NIST and IETF.
- DPDP Act, 2023 and Draft DPDP Rules, 2025 — operationalise consent architectures, impose cross-border transfer notifications and create the Data Protection Board of India.
- Global Digital Compact (September 2024) — adopted at the UN Summit of the Future, sets a forward agenda spanning AI, digital public goods, human rights online, and the future of the IGF.
- WSIS+20 Review (2025) — stock-taking of two decades of internet governance, with India pushing for digital public infrastructure as a central theme.
UPSC Relevance
For Prelims, remember the distinction between ICANN, IGF, ITU, and UN OEWG/GGE, along with the Tunis Agenda and Global Digital Compact. For GS II Mains, internet governance connects to international institutions, India's diplomacy, and global public goods. For GS III, it links to cybersecurity, data protection, critical infrastructure, and emerging technologies such as AI and quantum. Essay papers can frame internet governance as a test case for balancing sovereignty, security and openness in the twenty-first century.
Tell Google you want more of this.
Add Anantam IAS as a preferred sourceOne tap, and this site shows up more often in your own Top Stories, AI Overviews and AI Mode. Remove it any time.