2025-15809Rule

FCC Cracks Down on Robocalls with Strict Caller ID Rules

Published Date: 8/19/2025

Rule

Summary

The FCC is making caller ID safer by setting clear rules for phone companies that use helpers to verify calls. Providers must stay in charge of confirming caller ID and use their own digital certificates, not their helpers’. They also need to get special tokens and keep records to prove they’re following the rules. This affects all phone providers using STIR/SHAKEN tech and helps fight robocalls without extra costs.

Analyzed Economic Effects

5 provisions identified: 1 benefits, 4 costs, 0 mixed.

Providers must control attestation decisions

If a phone provider relies on a third party to help verify calls under STIR/SHAKEN, the provider itself must make the ‘attestation‑level’ decisions that determine how caller ID is authenticated. This rule applies to any provider with a STIR/SHAKEN implementation obligation.

Calls must use provider's digital certificate

All calls that are signed under STIR/SHAKEN must be signed using the digital certificate of the provider with the implementation obligation, not using a third party’s certificate. Providers with STIR/SHAKEN obligations must ensure their certificate is used for signing.

Must obtain SPC token and certificate

Providers with a STIR/SHAKEN implementation obligation must obtain a Service Provider Code (SPC) token from the STIR/SHAKEN Policy Administrator and present that token to a STIR/SHAKEN Certificate Authority to obtain a digital certificate. This is a required step for obtaining the certificate used to sign calls.

Recordkeeping for third‑party arrangements

The rules require providers to keep records of any third‑party authentication arrangements so the FCC can monitor compliance and enforce its rules. Providers with STIR/SHAKEN obligations must maintain these records.

Third parties may sign calls under conditions

The FCC authorizes providers with STIR/SHAKEN obligations to engage third parties to perform the technical act of digitally signing calls, provided the provider keeps attestation‑level control and the provider’s certificate is used to sign. Providers may use third parties for signing only under those conditions.

Your PRIA Score

Score Hidden

Personalized for You

How does this regulation affect your finances?

Sign up for a PRIA Policy Scan to see your personalized alignment score for this federal register document and every other regulation we track. We analyze your financial profile against policy provisions to show you exactly what matters to your wallet.

Free to start

Key Dates

Published Date
8/19/2025

Department and Agencies

Department
Independent Agency
Agency
Federal Communications Commission
Source: View HTML

Related Federal Register Documents

Previous / Next Documents

Back to Federal Register

Take It Personal

Get Your Personalized Policy View

Start a Free Government Policy Watch to see how policy affects your household, then upgrade to PRIA Full Coverage for year-round monitoring.

Already have an account? Sign in