Official record

Addressing the Threat Posed by Applications and Other Software Developed or Controlled by Chinese Companies

Record date: 2021-01-08

Executive Order 13971 of January 5, 2021 Addressing the Threat Posed by Applications and Other Software Developed or Controlled by Chinese Companies By the authority vested in me as President by the Constitution and the laws of the United States of America, including the International Emergency Economic Powers Act ( 50 U.S.C. 1701 et seq. ) (IEEPA), the National Emergencies Act ( 50 U.S.C. 1601 et seq. ), and section 301 of title 3, United States Code , I, DONALD J. TRUMP, President of the United States of America, find

What this record contains

Federal Register document
2021-00305
Publication date
2021-01-08
Citation
86 FR 1249
Issuing office
Executive Office of the President

Official record excerpt

Executive Order 13971 of January 5, 2021 Addressing the Threat Posed by Applications and Other Software Developed or Controlled by Chinese Companies By the authority vested in me as President by the Constitution and the laws of the United States of America, including the International Emergency Economic Powers Act ( 50 U.S.C. 1701 et seq. ) (IEEPA), the National Emergencies Act ( 50 U.S.C. 1601 et seq. ), and section 301 of title 3, United States Code , I, DONALD J. TRUMP, President of the United States of America, find that additional steps must be taken to deal with the national emergency with respect to the information and communications technology and services supply chain declared in Executive Order 13873 of May 15, 2019 (Securing the Information and Communications Technology and Services Supply Chain). Specifically, the pace and pervasiveness of the spread in the United States of certain connected mobile and desktop applications and other software developed or controlled by persons in the People's Republic of China, to include Hong Kong and Macau (China), continue to threaten the national security, foreign policy, and economy of the United States. At this time, action must be taken to address the threat posed by these Chinese connected software applications. By accessing personal electronic devices such as smartphones, tablets, and computers, Chinese connected software applications can access and capture vast swaths of information from users, including sensitive personally identifiable information and private information. This data collection threatens to provide the Government of the People's Republic of China (PRC) and the Chinese Communist Party (CCP) with access to Americans' personal and proprietary information—which would permit China to track the locations of Federal employees and contractors, and build dossiers of personal information. The continuing activity of the PRC and the CCP to steal or otherwise obtain United States persons' data makes clear that there is an intent to use bulk data collection to advance China's economic and national security agenda. For example, the 2014 cyber intrusions of the Office of Personnel Management of security clearance records of more than 21 million people were orchestrated by Chinese agents. In 2015, a Chinese hacking group breached the United States health insurance company Anthem, affecting more than 78 million Americans. And the Department of Justice indicted members of the Chinese military for the 2017 Equifax cyber intrusion that compromised the personal information of almost half of all Americans. In light of these risks, many executive departments and agencies (agencies) have prohibited the use of Chinese connected software applications and other dangerous software on Federal Government computers and mobile phones. These prohibitions, however, are not enough given the nature of the threat from Chinese connected software applications. In fact, the Government of India has banned the use of more than 200 Chinese connected software applications throughout the country; in a statement, India's Ministry of Electronics and Information Technology asserted that the applications were “stealing and surreptitiously transmitting users' data in an unauthorized manner to servers which have locations outside India.” The United States has assessed that a number of Chinese connected software applications automatically capture vast swaths of information from millions ( printed page 1250) of users in the United States, including sensitive personally identifiable information and private information, which would allow the PRC and CCP access to Americans' personal and proprietary information. The United States must take aggressive action against those who develop or control Chinese connected software applications to protect our national security. Accordingly, I hereby order: Section 1 . (a) The following actions shall be prohibited beginning 45 days after the date of this order, to the extent permitted under applicable law: any transaction by any person, or with respect to any property, subject to the jurisdiction of the United States, with persons that develop or control the following Chinese connected software applications, or with their subsidiaries, as those transactions and persons are identified by the Secretary of Commerce (Secretary) under subsection (e) of this section: Alipay, CamScanner, QQ Wallet, SHAREit, Tencent QQ, VMate, WeChat Pay, and WPS Office. (b) The Secretary is directed to continue to evaluate Chinese connected software applications that may pose an unacceptable risk to the national security, foreign policy, or economy of the

The excerpt is reproduced from the public federal record and may omit later sections, tables, signatures or attachments. Open the official source for the complete text.

Questions for accountability

How to use this page

This is a source-record entry, not a truth-rating by itself. It preserves the action, date and original government publication so it can be connected to later claims, implementation records, court decisions, costs and measurable outcomes. Editorial claim reviews on this site use separate finding labels and explain the evidence for those findings.

Open primary source ↗