Why Social Media Bans Risk Missing the Point – and What Actually Protects Children Online
By Mashood Ahmad, Founder & CEO, Gigabit IQ
Governments around the world are under growing pressure to “do something” about children’s online safety. From Australia’s under-16 social media ban to the UK’s Online Safety Act, policymakers are increasingly reaching for age limits, platform restrictions and mandatory age verification as headline solutions.
The intent is right. The problem is that intent and impact are not the same thing.
When we step back from the politics and look at the evidence, a more uncomfortable truth emerges: many online safety policies are structurally biased towards what is easiest to regulate, not necessarily what is most effective at reducing harm. In some cases, enforcement risks becoming performative, uneven, and potentially counterproductive.
That doesn’t make these policies malicious or misguided. But it does mean they are incomplete.
Harm Is Not App-Specific – It Is Feature-Driven
One of the most persistent misconceptions in online safety policy is the idea that risk lives on specific platforms. It doesn’t.
Risk lives in design features. Private messaging, open contact systems, live video and voice interaction, algorithmic recommendation engines, anonymity, disappearing content and location-based discovery are the mechanisms that consistently correlate with grooming, harassment, coercion and exploitation.
This is why banning or restricting a shortlist of large social media platforms rarely delivers the protection people expect. When one door closes, behaviour migrates. Children move to other apps, often smaller, less visible, and less regulated. Gaming platforms, group chat services, anonymous networks and emerging social apps frequently carry the same or higher risk features, yet remain outside the scope of headline regulation.
This pattern has been repeatedly documented by child safety researchers, including the Molly Rose Foundation, which has warned that platform bans risk displacing harm rather than reducing it.
Australia’s Social Media Ban Shows Why Platform Lists Don’t Equal Protection
One of the clearest examples of the limits of platform-based regulation is Australia’s under-16 social media ban. When the policy was announced, many parents understandably assumed it meant that social media, as a whole, would be blocked for children. In reality, the scope is far narrower — and that distinction matters.
According to the Australian Government’s eSafety Commissioner, the ban requires certain platforms to take “reasonable steps” to prevent under-16s from holding accounts, with significant fines for non-compliance. Platforms currently covered include Facebook, Instagram, Snapchat, Threads, TikTok, X (formerly Twitter), Reddit, Twitch, Kick and YouTube.
However, as explained in a BBC Bitesize explainer aimed at parents and young people, many services that children commonly use are not included in the ban. These include Discord, WhatsApp, Messenger, Roblox, Steam and Steam Chat, Pinterest, Google Classroom and YouTube Kids. The reason given is that these platforms are categorised primarily as messaging, gaming, education or professional services, rather than social media in the legal sense.
From a parental perspective, this creates a critical gap. A child who can no longer access Instagram or TikTok may still spend hours interacting socially through Discord servers, in-game chat, group messaging apps or other platforms that offer private communication, live voice, and user-generated content. The risks do not disappear simply because a small number of high-profile apps are restricted — they shift.
This is where the assumption that “everything is blocked” becomes dangerous. Policy lists can unintentionally create a false sense of security, particularly for parents who may not realise how much social interaction now takes place outside traditional social networks.
For families, the practical alternative is not to rely solely on government enforcement, which will always be limited by jurisdiction and platform definitions, but to use tools that work across all apps and devices. Solutions like Gigabit IQ’s FamilyGuard+ allow parents to block social media categories entirely, restrict access at specific times, and apply rules consistently across the home network. Crucially, these controls are not dependent on whether an app appears on a government list. Check out Gigabit IQ FamilyGuard+ in action
Using the Gigabit IQ app, parents can turn social media access on or off instantly, create age-appropriate profiles for children, and apply protections that remain in place even when new apps emerge or trends change. This shifts control back to the household, rather than leaving parents to interpret complex legislation or keep up with which platforms are currently in scope.
In practice, the safest approach is layered. Regulation can set expectations for platforms, but families still need behaviour-based controls that reflect how children actually use the internet today.
Australia’s Social Media Ban: Blocked Apps, Allowed Apps and the Gaps Parents Should Know About
The table below shows why Australia’s ban, while significant, does not equate to comprehensive online protection for children.
| App / Platform | Status Under Australia’s Under-16 Rules | Why This Matters for Parents | What Parents Can Do Instead |
|---|---|---|---|
| Banned | Traditional social network, but declining use among teens; removal may push children elsewhere | Use network-level controls to block social media categories entirely or schedule access | |
| Banned | Image-led social pressure removed, but similar features exist elsewhere | Apply category-based filtering and age profiles rather than app-by-app policing | |
| Snapchat | Banned | Disappearing messages removed, but private messaging remains widespread | Restrict messaging and social categories at the network level |
| TikTok | Banned | Algorithmic content feeds blocked, but short-form video exists on other platforms | Enforce time-based access and content category controls |
| X (Twitter) | Banned | Limited youth use, symbolic impact more than practical | Focus controls on behaviour, not platform names |
| YouTube | Banned | Often assumed to be “everything video” — but YouTube Kids remains accessible | Apply safe-search enforcement and video category filtering |
| Banned | Public forums restricted, but anonymity still exists elsewhere | Use category-based blocking for forums and anonymous platforms | |
| Twitch | Banned | Live streaming restricted, but live chat persists on gaming platforms | Control gaming and live-interaction categories consistently |
| Kick | Banned | Niche streaming platform; low awareness among parents | Network-wide controls cover new or emerging platforms automatically |
| Discord | Not banned | Private servers, voice chat, large youth migration risk | Block or restrict messaging and community chat categories via the router |
| Not banned | Encrypted private messaging remains fully accessible | Set device or network-level messaging restrictions by profile | |
| Messenger | Not banned | Similar functionality to banned platforms, but excluded by definition | Apply social and messaging controls regardless of brand |
| Roblox | Not banned | Heavy under-13 use, in-game chat and social interaction | Control gaming categories, time limits and chat access |
| Steam / Steam Chat | Not banned | Voice and text chat embedded in gaming | Restrict gaming communications rather than games alone |
| Not banned | Visual discovery with limited moderation | Category filtering still applies | |
| YouTube Kids | Not banned | Assumed “safe” but still algorithm-driven | Combine platform tools with network-level safeguards |
| Emerging apps (e.g. Lemon8, Yope) | Not covered | Often under regulators’ radar; rapid youth adoption | Category-based controls protect against unknown future apps |
The Data Tells a More Complicated Story
Research by Thorn illustrates why focusing on platform popularity alone is misleading. Their survey data shows that while some platforms are used by smaller percentages of children, they are disproportionately associated with risky interactions, particularly messaging with unknown contacts.
Small percentages do not mean small risk. At population scale, even four or five percent daily usage can represent hundreds of thousands of children. More importantly, harm is not evenly distributed. It concentrates in private, low-visibility environments where moderation is weakest and adult oversight is hardest.
This finding aligns closely with UK evidence from Ofcom, which has repeatedly shown that children encounter harm not just on large social platforms, but across a fragmented ecosystem of apps, games and services.
Risk Migration Is Not a Theory – It Is an Outcome
Australia’s under-16 social media ban provides a real-world case study. Early reporting showed millions of underage accounts removed from major platforms. At the same time, download spikes were observed on alternative apps not covered by the ban.
This is not surprising. Children adapt quickly. Regulation moves slowly.
When policy targets named platforms, behaviour flows elsewhere. That elsewhere is often harder to see, harder to regulate, and harder for parents to understand. The result is a familiar “whack-a-mole” dynamic that gives the appearance of action while leaving the underlying risk architecture intact.
This is precisely why the Molly Rose Foundation has argued that bans risk becoming a substitute for deeper structural reform.
Age Verification Helps – But It Is Not a Safety System
Age verification has become the default policy response to online harm. Used well, it can reduce casual underage access and raise the barrier to entry. Used poorly, it introduces new privacy risks, shifts responsibility onto users, and creates a false sense of security.
Even robust age assurance cannot address what happens after access is granted. It doesn’tt prevent harm in private group chats. It does not stop algorithmic amplification, does not account for VPN use, and does nothing to prepare children for the moment restrictions lift.
Age verification is a tool. It is not a safety strategy.
The Regulatory Asymmetry No One Likes Talking About
There is another uncomfortable reality underpinning online safety enforcement. Regulators naturally focus on the platforms they can reach.
Large global technology companies have legal entities, compliance teams and assets within national jurisdictions. Smaller platforms, offshore services and decentralised networks often do not. This creates an unavoidable enforcement asymmetry.
In practice, this means compliance costs and fines are disproportionately borne by the largest platforms. Over time, this can start to resemble a selective financial burden rather than a comprehensive safety mechanism. That does not mean governments are acting in bad faith. It means the regulatory system is constrained by geography and jurisdiction.
The risk is that enforcement begins to correct liability more effectively than it corrects harm.
The VPN Blind Spot
One of the most glaring gaps in current online safety policy is circumvention. VPNs and proxies are widely available, aggressively marketed, and easily used by children to bypass age restrictions, geo-blocks and content controls.
Despite this, there is almost no coherent policy discussion about how VPN use by minors should be mitigated. Platforms are not required to address it. Regulators rarely mention it. Parents are left to discover the issue after controls have already failed.
This is not a fringe problem. It is a structural weakness in any safety system that relies solely on platform-level enforcement.
Why Layered, Behaviour-Based Protection Works Better
If the past decade has taught us anything, it is that safety systems must be resilient to imperfect enforcement and imperfect behaviour.
Effective protection does not depend on knowing which app a child is using today. It depends on addressing risky behaviours wherever they appear. That means focusing on categories, patterns and access routes rather than chasing brand names.
This is where network-level controls become essential. When protection operates at the household network layer, rules apply across devices and across apps. Social media, messaging, gaming and anonymous services can be managed consistently. Time-based access, age-appropriate filtering and anti-circumvention measures such as VPN blocking work regardless of which platform is currently popular.
This approach complements regulation rather than competing with it. It accepts that regulators cannot police the entire internet and that parents need tools that work in the real world, not just on paper.
Where Gigabit IQ Fits Into the Picture
At Gigabit IQ, our approach to online safety is deliberately pragmatic. We do not attempt to replace regulation or platform responsibility. We fill the gap regulation cannot reach.
Through FamilyGuard+, Gigabit IQ provides network-level parental controls that allow families to manage online behaviour rather than chase individual apps. This includes category-based filtering, per-child profiles, scheduled access, enforced safe search, and critically, controls that reduce common bypass techniques such as VPN use.
This layered model aligns closely with the evidence emerging from researchers, regulators and charities. It reflects the reality that children’s digital lives are multi-platform, multi-device and constantly evolving. Crucially, this approach allows parents to manage access to apps such as Discord, WhatsApp and emerging platforms that children often migrate to, and it works over any broadband connection, not just Gigabit IQ’s own network.
A More Honest Conversation About Online Safety
A Call for Digital Seatbelts, Not Just Digital Rules
None of this is an argument against regulation. Strong platform duties, age-appropriate design and enforcement all matter. But we need to be honest about what regulation can and cannot do on its own.
When policy prioritises visibility over risk, it can become symbolic rather than effective. If enforcement cannot scale across a global internet, protection becomes uneven by design. And when circumvention is ignored, controls fail silently in the real world.
That is why Gigabit IQ is calling for a more practical, layered approach to online safety — one that recognises the role of digital seatbelts at the network level. Just as seatbelts don’t replace road laws but make everyday journeys safer, network-level parental controls don’t replace platform regulation; they reinforce it where it matters most: in the home.
Under the UK’s Online Safety Act, platforms are rightly being asked to assess and mitigate risk. But ISPs sit at a unique and largely untapped point in the ecosystem. We already deliver connectivity into homes. We already manage routers, networks and security. With the right expectations and incentives, ISPs can provide families with default, opt-in, easy-to-use parental controls that work across all apps, devices and future trends — not just the platforms named in legislation today.
This should not be left to chance, awareness campaigns or technical confidence. Parents should not need to understand every new app, loophole or VPN workaround to keep their children safe. Just as modern vehicles are expected to include basic safety features as standard, modern broadband should include accessible online safety protections by design.
At Gigabit IQ, we believe this is the next logical step in online safety: Not banning childhood, Not outsourcing responsibility entirely to parents or platforms…, But embedding protection into the infrastructure families rely on every day.
If we are serious about protecting children online, digital seatbelts should not be optional extras. They should be part of the online journey we are all expected to travel.
When policy prioritises visibility over risk, it can become symbolic rather than effective. If enforcement cannot scale across the internet, protection becomes uneven by design. And when circumvention is ignored, controls fail silently in the real world.
Protecting children online requires a layered approach that recognises behavioural reality. Platform responsibility, regulatory oversight and household-level controls must work together. Remove any one layer, and the system inevitably weakens.
The goal should not be to keep children offline, but to equip them, and their families, with safeguards that work wherever the internet goes next.
That is where real protection begins, and why we believe at Gigabit IQ for ISP’s to support parents with parental controls,
Take a moment to explore our other blogs in this series on online safety, parental controls and digital wellbeing.
Enough Is Enough: Why We Must Protect Children from Social Media Harms
