Right to Privacy: What the judgment means for Aadhaar, its constitutionality

A NINE-judge Bench of the Supreme Court is rare; a unanimous decision by such a Bench, rarer. Thursday’s decision is historic not only because it has ruled that privacy is a fundamental right, but also because it has deepened our understanding of fundamental rights as inalienable inherent rights in every human being. 

What impact will the verdict have on the Aadhaar case, which provided the context for this important moment in Indian constitutional history?

  • Portions of the judgment that deal with data protection and privacy say that any collection of personal information that would impact privacy must have a law to back it.

  • A corollary to this proposition is that all actions of the Unique Identification Authority of India (UIDAI) prior to the coming into force of the 2016 Aadhaar Act are of suspect constitutionality. 

  • Also, the very idea of a boundless general purpose identification database is constitutionally suspect following the unequivocal declaration of privacy as a fundamental right, and the drawing up of the conditions of restricting that right in as narrow a manner as the judgment has done.

  • This ruling has opened up the field for more concrete challenges to various architectural and implementational aspects of Aadhaar, and its impact on privacy — such as the mandatory collection of biometric data, deployment of private players for collection of information, online authentication and the extent of authentication data storage, and the possibility of data convergence and profiling as a result of Aadhaar-seeding of various databases.

Apart from these issues linked directly with the right to privacy, there are a number of other issues on the Aadhaar project that the court is yet to hear and decide. Some of these, not necessarily in order of importance, are:

  • Whether the Aadhaar Act should have been, and could have been, passed as a Money Bill, bypassing Rajya Sabha;

  • The issue of Section 7 of the Aadhaar Act that empowers governments to make Aadhaar mandatory for subsidies, services and benefits drawn directly from the Consolidated Fund of India being an unconscionable bargain, and whether the state can specify conditions that infringe on people’s fundamental rights such as privacy and bodily integrity to enable them to access their legal rights and entitlements;

  • The issue of decisionmaking on substantive questions such as identity through untested, unreliable technology that irreversibly tilts the scales of control in favour of the state and away from the control of the citizen;

  • Above all, the issue of the fundamental nature of the relationship between the state and the citizen in creating a national biometric database with identity reduced to a mere number, and the right to identity being supplanted with the power to identify by the state.

Following the resolution of the question of whether the right to privacy is a fundamental right, the decks are now clear for a smaller Bench of the Supreme Court to hear and decide on these questions at the earliest, keeping in mind that this is litigation that began almost six years ago.

What are its implications for privacy in tech use?

  • Information technology is not only punctuating, but is virtually taking over our lives today.

  • Technology has made many hitherto impossible things possible, many improbable things certain, many processes so advanced that they are “indistinguishable from magic”, as sci-fi writer Arthur C Clarke put it.

  • The methods by which a person’s legal rights may be infringed have undergone similar transformation.

  • Infringements of privacy by state and non-state actors is a real danger of our times, and it required strong articulation as a fundamental right by the nation’s highest constitutional court.

  • Besides privacy, other legal problems, too, arise from the widespread use of technology. Take the increasing use of technology and algorithms for decision making — the use of proprietary biometric matching algorithms to determine substantive legal status of identity in Aadhaar is one example.

  • Given the asymmetry of information on the working of the technology — where, in most cases, the algorithm developer and the technology provider know more about the working of the technical system than the person whose interests are affected by it — on whom should the burden of proof lie if questions of arbitrariness or discrimination are raised in the working of the algorithm?

  • If technology-assisted decision making must be provably non-arbitrary and non-discriminatory, what is the standard of proof that is acceptable for various applications?

  • Even if we were to assume that technology may not be used as the final word, and it may only be technology-assisted human decision making in the matter of, say, criminal sentencing where a predictive algorithm is used to determine the appropriate sentence, what would be the legal principles in dealing with the bias that such technical assistance provides to the final deciding authority?


  • It must be remembered that technology gives a sense of benevolent determinism to many of our life’s problems, which may, however, turn out to be false. As methods of incursion into our rights become more sophisticated, so should our means of asserting those rights and warding off the incursions.

  • The landmark Supreme Court judgment has broadly drawn the parameters for technology-related state action that impacts privacy rights. However, jurisprudence in relation to other rights and other kinds of incursions will similarly need to develop to answer questions of the kind mentioned above.


Leave a Reply