CASL at 10 – Parameters

This is part two of a multi-part series reviewing Canada’s Anti-Spam Legislation in practice since its introduction in 2014 and the beginnings of enforcement in 2015. Crosslinks will be added as new parts go up. Here’s Part 1, Terminology.

Before we dig into what CASL does, let’s look at what it’s for. This whole series kicked off as a work-related question around student subscriptions to Faculty newsletters,1In a nutshell: we use Mailchimp for newsletters, which comes with a baked-in unsubscribe function; we’ve also developed a process to scrape the school database to auto-update student lists so that it periodically “automagically” recalibrates for students who have left, new students who have joined, etc. That in turn would refresh the lists in a way that pushes students who unsubscribe – which they really shouldn’t do in the first place – back into the mailing list, and administrators, appropriately concerned, asked if that was even CASL compliant. Hence (gestures around). so that’s a jumping off point for what I’ll be exploring here.

Oh! Yes! I am not a lawyer and this is not legal advice. Just a reminder (and a catchy tune, if I do say so myself).

The first organizing question, then, is “are school newsletters subject to CASL?”

The most safe answer is “yes.” But that’s not an entirely accurate answer. If you are very diligent about content and ensuring you’re always on the right side of not including CEMs (see below), it’s feasible to have a newsletter program that – by diligently avoiding CEMs entirely – is outside of CASL’s scope.

Law firm Borden Ladner Gervais prepared an overview for Colleges Ontario, vexingly not available on their site but available on some college sites, including that of Algonquin College.

It is very much a document that errs on the side of caution, and is very prescriptive; to understand it, it’s necessary to understand some of the basic premises of CASL.

All commercial messages are forbidden, and CASL creates exceptions to a general prohibition.

All commercial electronic messages (CEMs) are forbidden by default.

This isn’t a situation where they are allowed, with some prohibited: they are all forbidden, except under circumstances that the law lays out.

This might seem obvious but was kind of hard for me to wrap my head around. Going into this, I had the general sense that the law hews toward a “if it’s not forbidden in the law, it’s okay”, or as WR Lederman put it:

What is not forbidden is permitted, but certain things must be and are forbidden.2W R Lederman, The Nature and Problems of a Bill of Rights, 1959 37-1 Canadian Bar Review 4, 1959 CanLIIDocs 21, <>, retrieved on 2023-05-24

I kind of assumed it was like a sign at a park about dogs. “Dogs Welcome!” Generally speaking, you can bring your dog there. And then it specifies that some types of dogs, or certain breeds, are not allowed (“No Pit Bulls”, or “No Aggressive Dogs,” or “No Dogs Over 10 lbs.”). Dogs are permitted, generally speaking, and there are rules governing outliers.

CASL is actually like a sign that says no dogs allowed and then goes on to say “except these specific breeds” or “except dogs of a certain size”. CEMs fall under the “…but certain things must be and are forbidden.” end of Lederman’s sentence above.

The legislation carves out exceptions to a prohibition, rather than prohibiting elements of a broadly allowed behaviour.

CEMs are prohibited. Period. The only exceptions under which CEMs are allowed are those detailed in CASL.

All dogs are welcome (except certain dogs), vs. no dogs are allowed (except certain dogs). CASL keeps all the dogs out, but makes provisions for certain dogs being okay. I have tried to make a “who let the dogs out” joke here, but it’s just not coming together.

What is a CEM?

I’d recommend you open the Act in a new tab before continuing:

Before we get to how the Act defines a CEM, let’s hop through a couple of other definitions from Part 1 of the Act:

commercial activity: means any particular transaction, act or conduct or any regular course of conduct that is of a commercial character, whether or not the person who carries it out does so in the expectation of profit, other than any transaction, act or conduct that is carried out for the purposes of law enforcement, public safety, the protection of Canada, the conduct of international affairs or the defence of Canada.


electronic address: means an address used in connection with the transmission of an electronic message to

(a) an electronic mail account;

(b) an instant messaging account;

(c) a telephone account; or

(d) any similar account.


electronic message: electronic message: means a message sent by any means of telecommunication, including a text, sound, voice or image message.

Putting it all together for a definition of a CEM:


For the purposes of this Act, a commercial electronic message is an electronic message that, having regard to the content of the message, the hyperlinks in the message to content on a website or other database, or the contact information contained in the message, it would be reasonable to conclude has as its purpose, or one of its purposes, to encourage participation in a commercial activity, including an electronic message that

(a) offers to purchase, sell, barter or lease a product, goods, a service, land or an interest or right in land;

(b) offers to provide a business, investment or gaming opportunity;

(c) advertises or promotes anything referred to in paragraph (a) or (b); or

(d) promotes a person, including the public image of a person, as being a person who does anything referred to in any of paragraphs (a) to (c), or who intends to do so.

The law also extends the request for consent itself to be a commercial electronic message.

This is vexing for people who are permission-seeking, but makes perfect sense from a consumer standpoint: it closes a loophole of the permission-seeking being the ad. If they didn’t do this, “May we send you messages about CreamerSquirtz (a squeezable creamer container that will revolutionize how you put cream in your coffee, now on sale at your local grocer for $2.99, buy it today!)?” would be viable. Hence:


(3) An electronic message that contains a request for consent to send a message described in subsection (2) is also considered to be a commercial electronic message.

CASL regulates all electronic messages, not just email

While “Spam” is right there in the name, it’s not really just about email spam (or text spam). As defined above in 1(1), an electronic message is a message sent by any means of telecommunication.

There’s an implied element of directness in there: a billboard cannot be a CASL violation, for instance. It governs messages send to an “electronic address” (see above):

6 (1) It is prohibited to send or cause or permit to be sent to an electronic address a commercial electronic message unless

(a) the person to whom the message is sent has consented to receiving it, whether the consent is express or implied; and

(b) the message complies with subsection (2).

Any commercial message contaminates a non-commercial message

The content of school newsletters, at least where I work, is almost entirely non-commercial. Upcoming key exam dates, or an announcement that a club is looking for members, or summaries of recent news articles, don’t fall under the definition of a CEM.

But some things on the periphery do qualify, and that’s why understanding contamination is important.

Just like you can’t have a shop that stocks mostly soda pop and just a smidge of toxic waste, and think that’s okay because it’s mostly soda pop, you can’t have a “mostly” non-commercial message with a bit of commercial messaging.

The law is clear: all commercial messages are de facto forbidden. A school e-newsletter that’s 90% announcements but also 10% promoting a clothing sale that kicks back some profits to the school is considered a CEM – the latter contaminates the former, as it’s a commercial message.

There are no exceptions for non-profits or charities

Right back up to 1(1): “…whether or not the person who carries it out does so in the expectation of profit…”. Just because you’re a school – or a church, or a Scout troop, or whatnot – a CEM is a CEM is a CEM.

There is no “private right of action” (i.e. tort/lawsuits)

At one point, the federal government was going to introduce a “private right of action” – i.e. empowering lawsuits – over CASL violations. It was removed before the law finally came into full force, but it’s not impossible to see it being reintroduced.

Consent is implied if a recipient is in an existing business or non-business relationship

This is something I’m still actively poking at, because it feels like the mechanism under which school newsletters might work, but it also feels… tricky.

One of the challenges with CASL implementation – which we’ll see when we get into examining actual cases, especially those resulting in AMPs – is that there just isn’t that much jurisprudence in the “interesting” zones around the fringes of the flagrant examples of unsolicited, no-question-it’s-spam spam. Like many things in law, a Real Lawyer (and I am not one) can confidently say “the law says this” but it’s still ultimately up to the courts to decide how the law is applied when a use case is operating on the fringes.

I feel there’s a strong argument, when you look at s10 (9) and (10), that students at a university are in a business relationship with their school.

Implied consent — section 6
(9) Consent is implied for the purpose of section 6 only if (a) the person who sends the message, the person who causes it to be sent or the person who permits it to be sent has an existing business relationship or an existing non-business relationship with the person to whom it is sent (…)

Definition of existing business relationship
(10) In subsection (9),
existing business relationship means a business relationship between the person to whom the message is sent and any of the other persons referred to in that subsection — that is, any person who sent or caused or permitted to be sent the message — arising from
(a) the purchase or lease of a product, goods, a service3emphasis mine, land or an interest or right in land, within the two-year period immediately before the day on which the message was sent, by the person to whom the message is sent from any of those other persons (…)

On its face, it seems clearly arguable that a student is purchasing a service, or really a broad set of services, from a university. Money is exchanged, the student receives instruction and grades and so on.

To date, there hasn’t ever been anything that addresses this or is comfortably adjacent to it. So I personally feel confident that consent is implied when a student is paying a college or university for the services of education (or residence, or gym use, etc.) but it’s… fuzzy. I’ve got a lot of notes for a dive into this topic as its own thing, and hope to get to it.

This interestingly dovetails entirely with another area of active interest for me – the interweaving of FIPPA and PIPEDA on campuses, with for-profit PIPEDA eligible activity nested inside larger FIPPA-regulated structures, but that’s a whole ‘nother thing.

Coming up: actual numbers, 2018-present

Up soon… let’s look at the actual numbers of what CASL has done since it started taking recorded actions. There will be charts.

CASL at 10 – Terminology

This is part one of a multi-part series reviewing Canada’s Anti-Spam Legislation in practice since its introduction in 2014 and the beginnings of full enforcement in 2017. Crosslinks will be added as new parts go up.

CASL has been a subject of professional and personal interest to me for some time. I began working in higher ed marketing at around the same time as the legislation was introduced, and well in the groove when it came into full force. It made pretty much everyone in marketing — whether they were in for-profit, not-for-profit or charitable work — pretty anxious.

Almost 10 years later, it feels like a good time to see how it’s all playing out. I’ve been working on this at a fairly relaxed pace, so it’s conceivable that I might wrap this up for its 10th anniversary at this point.

Even as somebody who was passingly familiar with CASL for professional reasons going into this, I rapidly ran into a pretty fair-sized lexicon of terms and acronyms. Before we get into the meat of it, let’s get some acronyms and terms out of the way.

CRTC: The Canadian Radio-television and Telecommunications Commission. Responsible for broadcasting, Internet, and telephony in Canada. Very eager to point out that they “operate at arm’s length from the federal government” – it’s practically the tag line for the whole organization on their home page.1I can’t find any other federal commissions that do this. The Canadian Nuclear Safety Commission doesn’t do it, the Human Rights Commission doesn’t do it, the National Capital Commission doesn’t do it, the Truth and Reconciliation Commission didn’t do it… I could go on. I don’t want to sound conspiratorial out of the gate, but given how many criticisms the CRTC has seen for being connected to big telco companies, it’s interesting that the first words out of their virtual mouths are “we aren’t the government, guys!”

CASL: Canada’s Anti-Spam Legislation. The subject of these short essays. It was introduced in 2014, with a “transitional period” to July 1, 2017, when it came into full force.

CEM: Commercial electronic messages. Pretty much any electronic message (text, email) that promotes a product or service, with some clearly defined exceptions. We’ll unpack this more in the next post.

Investigative powers: Commission staff, who are persons designated by the Commission to conduct investigations, may use the following powers to investigate possible violations under CASL. These presumably lead to actions (see below).

  • Notice to Produce (NTP) – a notice served on a person requiring them to produce data, information or documents in their possession or control (additional information is available in section 17 of CASL);
  • Preservation Demand – a demand served on a telecommunications service provider requiring it to preserve transmission data in that is in or comes into its possession or control (additional information is available in section 15 of CASL); and
  • Search Warrant – a judicially pre-authorized warrant that authorizes designated persons to enter a place (business or dwelling-house) to examine, copy or remove documents or things (additional information is available in section 19 of CASL). 2Verbatim from the CASL FAQ at

Action types: measures that CASL / the CRTC uses to reinforce compliance with CASL (as well as Unsolicited Telecommunications Rules (UTR) and the Voter Contract Registry (VTR)). Particularly pertinent for CASL:

  • Citation: a letter outlining alleged violations and an “opportunity to clarify”. Other than publishing the citation 30 days after issuance (absent a valid defence), there don’t seem to be any follow-on penalties to a citation. There’s only been one citation in CASL history to date (Orange Link Inc., details not available online).
  • Notice of Violation: sets out alleged violations, and may include an AMP (see below).
  • Compliance and Enforcement Decision (“Decision”): official decisions following the review of a Notice of Violation, Notice to Produce or Preservation Demand.
  • Undertaking: an agreement between a violating entity and Commission staff defining compliance obligations; can also include a payment amount.
  • AMP: Administrative Monetary Penalty. These are part of a Notice of Violation; a civil penalty imposed by a regulator. They can be appealed to the commission – this gets important later.

In the next post, we’ll start looking more at the early days of CASL, its remit governing Commercial Electronic Messages (CEMs), and what exactly CASL is, and is not, meant to enforce. It wasn’t quite what I always assumed it was; this might be true for you as well.

Public statements, policy, and moral courage

Something terrible has happened.

In a 24/7 global news cycle, we are all capable — if not always actively engaged — with knowing what is wrong in the world. This means a lot in higher education, which combines international presences with institutional commitments to both recognizing diversity and treating students with empathy and support.

When members of our community are suffering, they look to their institutions for support and understanding, particularly in a public context. A statement in support of their plight means a lot: it shows that the institution sees them, that it cares, and that it is on their side. “We stand with ________ during the __________” messages can mean a lot to the people affected. Doubly so in a lot of ways in higher ed, where a school can be an intrinsic part of one’s identity, above and beyond just a place you show up and take classes. Community, support and spirit are a core part of the value offering of colleges and universities, and the corollary of that is that the demand for emotional buttressing may be greater than one might expect from, say, a favourite fast food restaurant, day job or leisure activity.

Knowing that: why in the world would you not provide your commmunity with leadership, comfort, and goodwill in a time of need?

And I want to be clear here that I’m talking about things that are unambiguous. Tsunami-level disasters. Decrying tyrannical governments or full-on Nazis. This isn’t “take a stand on a highly contentious issue” territory where the risk is that 50% of people will disagree with you: this is “vaccines are good, the Earth is round, ethnic cleansing is bad” issues where sane humans are entirely on board and you can afford to discount the weirdos.

But even in those cases where you’re making a public comment on a fully realized issue that 99% of humanity will back, there are reasons not to do it.

The first is that any comment on that isn’t completely in the ambit of your core mission represents a deliberate choice to make a purposeful statement. It therefore implies choices to not comment on other issues. Speaking out on Issue A is a positive act of support for Issue A, but can be read by people affected by Issue B — for which no statement has been made — as disinterest in what affects them.

I’m defining “core mission” here as (in a higher ed context) things that in the first order directly affect the school and its community; in the second order, things that affect its educational or research mandate, or have a profound impact on the industry/sector that the primary subject of teaching/research focuses on.

I’m never sure if diagramming things is helpful, or just opens me up for trouble by oversimplifying some pretty complex and nuanced stuff.

Once you’ve commented on Issue A, subsequent calls for more statements are harder to resist, because there’s now a legitimate area for complaint: if you support this part of the community, why don’t you equally support this other part?

Once you’ve broken the “speak on subjects outside of the core mission” seal, there are three paths:

  1. Rare statements based on what the administration feels is important, but without a formal policy or guidelines on when a statement should be issued.
  2. More statements — either on demand whenever a concern is raised or proactively when something that might affect the community is noticed.
  3. Development of a policy or guidelines that clearly identify what circumstances should generate a statement of support, with statements only issued when the policy supports it.

The first is the default; it’s the status quo, and frankly, it’s… probably fine? I haven’t noticed our institutions crumbling to dust around us. Issues with this approach manifest themselves chiefly in planning — it’s hard to know when the call will be made, and what kind of a statement and what kind of distribution will be desirable. The other is the spectre of bias and resulting reputational risk: why did you speak up to support group A and not group B? Why do you care about issue Y and not issue Z?

These play out internally, for the most part. There’s an ever-present risk of getting a black eye on social media over supporting A but not B. Since there’s already commenting on A, and no policy in place, it’s a legitimate question, which makes public criticism more pointed. That leads to a temptation to just speak on Issue B as well. And over time, this can lead to…

The second path — lots of statements, without a clear policy on why and when they’re being issued. This is the least good option; the more an insitution diverts itself to talking about things fundamentally unrelated to its core mission, the more it is diluting its own message and purpose. Which, in at least the case of higher education, are things that are also worthy of support: research, education. There’s also a question of what message this sends internally — if the institution we’re looking to for stability and support is constantly reminding us of crises and tragedy, even through support messages, what does that do to people who want safety and steadiness in the world? This is almost an inevitable path to…

The third path — policy. Which provides clarity, but ultimately opens the institution up to the same criticisms as the first path, with the additional disadvantage that somebody has actually sat down and tried to write out a formula that quantifies human suffering. Does one measure the “statement-worthiness” of an issue by deaths? By trauma? By the percentage of the community it affects? Who drafts it? Who approves it? How and where is it published to refer to, and who handles complaints about the policy? On its face, “write policy” seems like a straightforward path, but it’s a fraught one.

Ultimately the three paths are two: infrequent/frequent ad hoc statements, or a single policy-driven approach.

And that brings us to moral courage.

Two flavours of it.

The first is sticking to the “official statements in our area of expertise” guns. No matter what happens in the world, in scope or scale, you just adhere to the non-policy of speaking only on issues that affect your core mission.

The second is feeling moved to comment on something outside your remit, knowing this may lead to accusations of unfairness, difficult-to-navigate conversations about statements on other issues, and public pressure from people pro- and anti- whatever you are commenting on… and doing it anyway.

Both represent a kind of fortitude; both are about a willingness to have hard conversations about difficult topics, and possibly suffer some public lambasting regardless on where you fall on the issues.

The first gives you an easy response (if sometimes tough conversations) to requests for statements. The second leads to challenging responses to the same questions — but is also for something.

My own thinking on this has been, frankly, muddy. I feel like I’ve been slowly sloughing through the practical, moral, and logistical issues around public statements for years, and have been very slow in coming to a conclusion that people with a stronger moral compass than I have probably would get to a lot quicker:

Some things are worth the risk.

The institution-only statement path is one that is simple and easy to follow. It’s driven by clarity, but also, it could be argued, by fear: we don’t want to deal with the risk of these other conversations about fairness; we are anxious about being driven down paths where we have to publicly navigate questions about what and who we support, and why.

As a naturally risk-averse person, I fully identify with the anxiety.

Which is why I’ve come to appreciate the statement-makers more of late: I don’t think they’re ignorant of the risks above (although they may not have ever articulated them like this). I think they are just okay with them.

I’m very slowly reversing gears on a long tradition of counsel to just stick to the institutional mission and not colour outside the lines. I think — if the risks are known, and accepted — it’s more courageous to take the risky statement route than not.

This is possibly a very long walk to cover a very short distance, but hopefully it lands with somebody who’s going through the same slow slog I’ve been undergoing for the last few years.

Catching up with CASL

(insert castle-themed pun here)

Busy times here, with work picking up a tremendous amount of steam on the undergraduate recruitment front, Homecoming around the corner and some new members being added to the Engineering marcomms unit this week.

A placeholder here to say that I am chipping away at something I’m pretty happy with — an analysis of CASL undertakings and decisions since they started publishing them in 2018. This started as something fairly work-related around the parameters of what qualifies as a CEM (commercial electronic message) and specific rules around subscription/unsubscription when a business relationship is ongoing or renewed, but it’s turning into something a bit more interesting.

Stay tuned, basically.

Dramatis Personae in legal decisions

Now that the Master’s is done (surreal!) and I’ve had a few months of watching dumb horror movies, reading comics and playing various flavours of Magic: The Gathering online, I’m starting to poke at self-directed legal research again.

I’m starting with picking up my rejected original premise for my Master’s — puffery is fascinating, by God, and I will not be deterred from poking at it with a big dumb stick even if no serious legal academic on the planet thinks it’s worth doing.

But — as somebody who is eminently easily distracted — I almost immediately got detoured into interesting turns of phrases in some of the cases I was reading in CanLII where puffery is mentioned.

One of these,

Alcamo v. Walt, 2022 ONSC 1913 (CanLII)1 is a riveting read in and of itself. But I was immediately struck by the use of the phrase Dramatis Personae, which I’d never seen in a legal decision before, to establish the various parties in the case. A quick search of CanLII later, and there are only 49 decisions in the database (which only reaches back to the early 2000s, but still, it’s 18+ years and 3,000,000+ decisions) that use that specific string.

What are they, and who are they by? There’s only a trickle before 2008, and then they start occurring more frequently…


Fantl v. Transamerica Life Canada, 2008 CanLII 17304 (ON SC)2
Perell J


Alberta (Child, Youth and Family Enhancement Act, Director) v. Z.G., 2010 ABPC 7 (CanLII)3
A.H. Lefever

Steinhoff (Re), 2010 IIROC 8 (CanLII)4
Getz, Lay, Treatro

Galustian v. Skylink Group of Companies Inc., 2010 ONCA 645 (CanLII)5
Watt JA


R. v. Bayani, 2011 ONSC 5225 (CanLII)6
R. Clark J


T.F. (Re), 2012 ABPC 5 (CanLII)7
Steven E. Lipton

McSherry v. Zimmer GMBH, 2012 ONSC 4113 (CanLII)8
Perell J

Arora v. Whirlpool Canada LP, 2012 ONSC 4642 (CanLII)9
Perell J


Sekhon v. Aerocar Limousine Services Co-Operative Ltd., 2013 ONSC 542 (CanLII)10
Perell J

D.J. (Re), 2013 ABPC 99 (CanLII)11
Steven E. Lipton


R v Fast, 2014 SKQB 84 (CanLII)12
Danyliuk J
“This case is about unscrupulous business practices, criminal schemes to make money, greed, and human nature.” — hot dang I like it when the justices get a little Grishamy in their headnotes.

Fontaine v. Canada (Attorney General), 2014 ONSC 4585 (CanLII)13
Perell J


R v. Beauchamp, 2015 ONCA 260 (CanLII)14
Cronk, Blair and Watt JJ.A.


Pev International Research & Development Incorporated (Re), 2016 NSUARB 88 (CanLII)15
Roberta J. Clarke, Q.C., Member

Kowalyshyn v Valeant Pharmaceuticals International, Inc., 2016 ONSC 3819 (CanLII)16
Perell J

Dhudwal v. Canada (Citizenship and Immigration), 2016 FC 1124 (CanLII)17
Mr. Justice Harrington


907687 Ontario Inc. (International Institute of Travel) v. 1472359 Ontario Ltd (IBT College of Business Travel & Tourism Technology), 2017 FC 969 (CanLII)18
Fothergill J


4075447 Canada Inc v Pacrim Developments Inc, 2018 ABQB 358 (CanLII)19
Robertson AR QC

Hallman Construction Ltd. v Cambridge (City), 2018 CanLII 70303 (ON LPAT) [Local Planning Appeal Tribunal]20
Swinkin, Douglas – Tribunal members


Fortress Carlyle Peter St. Inc. v. Ricki’s Construction and Painting Inc, 2019 ONSC 1507 (CanLII)21
Perell J

Signature Realty Inc. o/a Royal Lepage Signature Realty v. Fallico, 2020 ONSC 1117 (CanLII)22
Perell J

Children’s Aid Society of Algoma v. L.G., 2020 ONCJ 297 (CanLII)23
Kukurin J


Peters v. SNC-Lavalin Group Inc., 2021 ONSC 5021 (CanLII)24
Perell J

Barkley v. Tier 1 Capital Management Inc., 2022 ONSC 175 (CanLII)25
Perell J


Fehr v. Gribilas, 2022 ONSC 275 (CanLII)26
Perell J

Riha v. A. Wilford Professional Corporation, 2022 ONSC 1110 (CanLII)27
Perell J

Alcamo v. Walt, 2022 ONSC 1913 (CanLII)28
Perell J

Park Lawn Corp. v. Kahu Capital Partners Ltd., 2022 ONSC 3341 (CanLII)29
Perell J

Raponi v. Olympia Trust Company, 2022 ONSC 4481 (CanLII)30
Perell J

The attentive reader will notice a trend — Perell J, whose Alcamo decision got me on this groove in the first place, holds the strong plurality for the use of the phrase. It also seems to come up in Alberta more than anywhere else after Ontario (on review, it looks like almost all ON, several AB and a single SK use).

On Perell J’s frequent use, it occurred to me that I’m not a lawyer and will not be one; I’ll never appear before Justice Perell in court as a lawyer (and hopefully not in other contexts). I’m not a full-time legal academic. I’m just a curious person with a lot of intersecting interests in law. So I don’t really have to worry about my reputation or what he thinks of me.

So I emailed him to ask why this turn of phrase? Because I find it accessible, engaging, and even narratively strong. But it also feels a bit flip, and even cynical, to position the people on both sides of a legal dispute as “actors”. It’s a curious phrase, and it made me curious.

If he writes back, and is inclined to give me permission to share his thoughts on the use of the phrase, I’ll update here. If not, so it goes — a passing observation.

Update: he wrote back! About two days after I emailed, actually.

A really nice note from Justice Perell but without permission to reproduce, so to paraphrase, it’s not intended to be cheeky, but a recognition that litigation is inherently dramatic as something grounded in dispute, with dramatis personae a useful term of art to introduce not only litigants but all others involved in the story.

It was gratifying, and a bit thrilling, to hear back. Dramatis personae!

The most savage takedown in ag fair history

I’m mainly just posting this so I can share this image in a discussion about agricultural fair dominance over at MetaFilter.

What’s going on here? It seems that there was one entrant in the Peanut Butter Cookie category, and the panel of judges awarded it second place.

Let that sink in for a second. What it means.

It means that — in the opinion of the Kingston fair judges — the absence of a cookie is a superior option to this cookie. That if somebody presented this cookie to them and said “do you want this cookie?” the answer would not be a polite “no thank you”, but a dead-eyed glare and “I abjure this cookie” delivered in a monotone.

They could have just given the only entrant first prize. By default. If there’s a single racer in the race, they win the race. If there’s one apple in the bowl, it’s the best apple in the bowl. This is how these things generally go.

But this was a deep ontological choice to award nothingness a higher status than this cookie. The judges, in their wisdom, effectively told poor Yvonne Brownlee that she had created the anti-cookie, a cookie that inverts the very idea of cookiehood.

This feels harsh. Maybe the judges were having a bad day.

But I think of this cookie more often than I expected when I first saw it. A reminder that the only option can still be rejected, that just because there’s only one path ahead of you there’s still another option: reject the premise.

So — whatever the merits or flaws of this peanut butter cookie — I respect and appreciate that you went in there swingin’, Yvonne. Thank you, and thank your cookie.

A note on puffery

Not much time for blogging these days as I struggle to edit my LLM thesis (I’ve discovered through the process of pursuing the Master’s in Law that a 25-year career in journalism and marketing gives one a rich sense of strategy, narrative and storytelling purpose, but is in some ways antithetical to writing for legal academia).

I do still hang out on MetaFilter quite a bit, though, and since somebody brought up the famous Pepsi Harrier case on there the other day, wrote up a quick bit on puffery, partly in response to an earlier “all advertisers are liars amirite?” comment.

It’s not comprehensive, but it has potato chips in it:

Hey, puffery!

I got into my LLM (Master’s in Law) program wanting to use puffery as my general topic for exploration, but my thesis supervisor felt it was “settled” law in the sense that it just kind of… works, generally, and there isn’t an urgent problem to be addressed.

As advil says above, it’s not “advertisers get to lie because people know advertisers lie”, the general principle is oriented more around the idea of reasonable personhood*, and the idea that you can state something so outrageous that a reasonable person would not believe it.

This is why there are no court cases where people are suing Skittles because they bought and opened a bag of Skittles and a unicorn did not run into the room and touch their couch with its horn and turn it into Skittles like in the ad. It’s why a pizza joint on the radio can say they have the best slice in town without having to present 40 pages of quantitative data first defining “best” in the context of pizza and then what exactly makes their pizza “the best.”

But there’s a thin edge to puffery; recent examples include an attempted class action suit because Hawaiian potato chips are not made in Hawaii, or an attempted class action suit that TGI Fridays potato skin chips are not made from potato skins but seasoned like the restaurant’s potato skin dish.

(I swear puffery is not all potato chip law, I just found the Hawaiian thing while struggling to recall the TGIF thing).

Like howfar says, its roots are in contract law (like the Pepsi example above, or pretty much any time an end consumer brings suit) but legal issues over puffery often cross over into competition law or advertising regulatory bodies where companies will go after each other because they feel another company’s puffery is edging over into falsehood instead of easily recognizable exaggeration.

I regret not being allowed to pursue it as an LLM topic, but (as I have learned, slowly and with great pain) good legal writing tends to be more about an imminent problem in law that requires an urgent solution and some ideas on how to address it, and not just pointing at weird stuff and going “hey, that sure is weird.” Puffery is weird! But it’s not a problem that the courts traditionally have a problem dealing with; it comes down to some judgment calls among the judiciary and sometimes judges get things wrong, but on the whole it’s a pretty understood area that’s relatively easy to navigate.

*but “reasonable personhood” is an amazing topic for exploration, because immense amounts of law rely on this vague cultural idea of “the man on the Clapham bus”, and it’s only in the last couple of decades that people have started to really look at that and go “wow, that’s a super colonial, neurotypical, able-bodied framing that kind of sucks.” If you want a great read on the subject, Rethinking the Reasonable Person is a dynamite monograph by Mayo Moran that meticulously unpacks so much that is horribly wrong with how reasonable personhood is constructed.

Robot Rock: software-generated works and copyright

I wrote this blog post to answer a colleague’s question about copyright for the music for the Microsoft Photos app.

He followed up to ask:

What if the music was created by a machine? The specifics of the track changes based on the time you set for the audio. So the music you end up using is compiled by the machine and not a person. Does that make a difference?

Once again, I am not a lawyer and this is not legal advice.

Software is copyright protected (the code is considered ‘writing’ in the same way that a novel is writing (you can’t copyright a process, but you can copyright how you describe it, which is kind of what code is considered)). So there are two possibilities here:

  • The software is creating the music from scratch: it’s programmed with an understanding of scales, chords and instruments. In this case, copyright in what it produces might be the copyright of the software author (see further down); or
  • The software is a lot simpler and is merely truncating or time-shifting music “stems,” which were written by a human, and all the software is doing is looping/speeding up/slowing down (chopping and screwing, as the kids say). In which case I think the copyright would reside with the music author. 

I suspect Photos is the latter, and copyright in this instance is with whoever wrote the tunes that Photos is using, regardless of how Photos is messing with the music when you’re playing with it.

Making things worse, music copyright also breaks down into author, performer, and performance copyright elements; I’m really talking about the authorship question here, but performance rights would also depend on whether this ia a modified piece of existing performed music (it’s chopping and screwing an MP3) or if the music is generated by the software. Music copyright is just the worst.

Pertinent to Ingenuity Labs, though: there’s no AI/art jurisprudence in Canada, but literally a few weeks ago the U.S. Copyright Review Board refused to grant copyright to a “true” AI-generated piece of visual art: Paradise Lost: Art Created by AI Is Ineligible for Copyright Protection | McDermott Will & Emery – JDSupra. The US is not Canada, but it’s a common law jurisdiction like Canada and a very influential one, so barring any radical departures elsewhere in the Commonwealth it would likely be what courts here would hew to.

This is where I don’t know as much as I could — I don’t know what distinguishes an “AI” from “normal” software. The decision here is based on there being no human involved in the actual creation; humans being assisted by AI in the creation of works would still hold copyright in those works.

So even in the first example above (a piece of software generating something), I don’t know at what point it’s an “AI”, or when it’s “just software” and the software author would hold copyright.

I also don’t know where the threshold of “AI” and “human assisted” is: depending on the thought and complexity you have to put into the AI for it to generate something, you might cross a legal barrier where on one side you’re a human that’s putting enough creative complexity into the system that you’re still the author; on the other side it’s just the AI at work.

Per the US decision above, a human has to be at the origin of the work for there to be copyright in it: the AI can’t be an author (nor can an AI perform ‘work for hire’ (which is again not a thing in Canada, exactly) since it is not capable of meaningfully entering a contract).

While this is all fun to unpack, ultimately the prior thing holds — if there’s no specific term-of-service language granting you a non-exclusive license to use the asset, it’s just not safe to use.

Microsoft Photos, Music, and Copyright

A colleague asked me for my opinion on the use of music provided within the Microsoft Photos app (bundled with Windows 10/11) the other day, and what I thought was a simple question turned kind of complicated.

Let’s start off by saying I’m not a lawyer and this is not legal advice. And my knowledge of copyright law is that of a punter who’s taken some classes, not somebody who actually works daily in the field and knows it inside and out. I know more than the average person, but I’m neither a copyright lawyer or an academic.

To the best of my knowledge, then:

Can you use the background music provided by Microsoft as part of the Windows-bundled Photos app in your public-facing productions?

The quick answer — the safe answer — is “no.”

As a general rule, if you cannot find language that specifically talks about non-exclusive licensing and allows you to use bundled assets in public-facing work, it’s not a good idea to do it.

There are no shortage of people on the Microsoft (and other) forums asking this exact question about the rights to music bundled with Windows default apps:

From these threads, we can get down into the tremendously unhelpful copyright agreements that Microsoft provides to end users:

This page covers copyright in general, but does not include any information on copyright (or use or licensing) of content that Microsoft provides through its software. If you’re looking for more pretty useless information about copyright and the use of MS products, they have you covered:

As a point of contrast, here’s a quick example of a similar service that does have some language that seems to make it possible to use their assets.

YouTube makes their copyright conditions clear for the “YouTube Audio Library” — right in the banner image for the Library. It’s not great for accessibility, but the language is right there!

You can also find some copyright information at As it says there,

“Music and sound effects from the YouTube Audio Library are copyright-safe. The Audio Library is found exclusively in YouTube Studio.”

“Copyright-safe” is not a term found in either Canadian or US copyright law, so it’s annoyingly vague to try to guess what it means, exactly. But at least it’s somewhat clear; they also include parameters in the description of each track, such as:

“You’re free to use this song and monetize your video, but you must include the following in your video description:
Be sure to attribute the artist.
Music ⓒ – Audionautix”

This is similar to a lot of creative commons language, and is easy to understand and follow. There might be something in there a copyright lawyer could pick apart, but it’s solid footing.

Not so with Microsoft Photos. You’re at sea about whether or not you can use the music they put right there in your hands and encourage you to adopt for your projects.

On its face, this feels wrong… right?

If you’re being given the music with the software, and the software is supposed to let you create photo galleries and movies that you can share, it only stands to reason that you’re allowed to use that music.

While this is probably the case — it’s hard to imagine Microsoft going after people who do this, for PR reasons, if nothing else — that’s still not the law.

Essentially, somebody made that music, and somebody owns the copyright for the music.

It might be an individual, or it might be a company or a client they work for. The law is a bit different in Canada and the US about how “work for hire” functions.

But any way you slice it — somebody owns the copyright to the music, and unless there is something in writing that attributes to you the right to use the music… you don’t have the right to use the music. There is no such thing as an “implied” license. Some cursory poking around at sublicenses doesn’t show much in this space; this isn’t extensive research, and again, there may be experts who know more about this than I do at present, but there’s certainly no obvious and accessible jurisprudence granting exemptions for copyright infringement because a piece of software made it easy or convenient to infringe.

And underneath the surface, there’s not a lot of transparency about where the music in the Photos app comes from. Maybe somebody at Microsoft composed and recorded and produced it, and Microsoft owns it all, lock stock and barrel.

But maybe somebody has licensed it to Microsoft, and that license might change or expire, which means the sublicense (which, I want to be clear, DOES NOT EXIST, we’re just playing around here) that Microsoft grants to the Photos app user would then also expire.

TLDR: if you can’t find up-front and easy-to-understand language in an app or software’s terms of use that explicitly tells you how you can and can’t use assets that come with the app — best not to use them. The chance of a negative outcome might be low, but you’re sailing in uncharted waters.

Beware the plug-in!

A quick note about something, er, noteworthy: those in the public sector should be aware of a recent IPC decision regarding the Halton School Board and its use of browser plugins without adequate vetting and consent.

Higher ed is more my jam than primary or high school, and minors factor less prominently in that space, but still worth observing that the Information and Privacy Commissioner has called Halton School Board on the carpet for the use of browser plugins for educational purposes.

Colleges and universities normally have fairly strong authorization-to-operate processes, and most major software and SAAS is vetted and reviewed by both IT teams and counsel to be sure it’s up to snuff. But this exposes an interesting area of vulnerability that we don’t often think of; institutions may be recommending or even mandating bolt-ons to services that have not been evaluated and collect information in ways that contravene MFIPPA, FIPPA or your privacy legislation of choice.

As I type this, I’m eyeing Zotero and the Zotero browser extension icon in front of me with some suspicion. I’m sure it’s kosher, but as a tool strongly recommended (but not mandated!) for my graduate studies, how has it been vetted? What information is it collecting? And if the rubber hits the road, what’s my institution’s responsibility in encouraging me to adopt it?

Whether minors being watched out for by their guardians or adults looking out for their own interests, there’s an interesting wedge of privacy concerns here that I suspect are underbaked when we look at building cutting-edge pedagogical processes for students.