{
  "id": "OPS-180",
  "slug": "ops-180",
  "title": "Approved samples do not license prohibited content",
  "statement": "Prohibited content must not appear in live traffic regardless of what the approved samples showed.",
  "rationale": "Approval is granted against the samples, and operators read it as approval of the campaign — so a programme whose samples were clean starts sending content the category prohibits, on the basis that the campaign was approved. Carriers scan live traffic, and a violation there is enforced against the account rather than the campaign.",
  "layer": "OPERATIONAL",
  "layerSlug": "operational",
  "object": "live message content",
  "severity": "BLOCKING",
  "detectability": [
    "UNDETECTABLE_PRE_SUBMISSION"
  ],
  "failureClass": "HARD_STOP",
  "authorities": [
    "T-Mobile",
    "AT&T",
    "CTIA",
    "TCR"
  ],
  "applicabilityText": "Applies to every 10DLC registration.",
  "universal": true,
  "remediation": "Apply the prohibited-content rules to every template before it goes live, not only to the ones submitted for registration. Treat the registered samples as examples of a standard rather than as the extent of it.",
  "notes": "Live content we never see. What the user has to put in place is a review step on new templates — the MESSAGE_CONTENT prohibited-content family states the categories, and this rule is the reminder that approval did not exempt anything from them.",
  "phase": "post",
  "automated": false,
  "attestation": {
    "question": "Is there a review step that applies the prohibited-content rules to new templates, not just to the ones submitted for registration?",
    "howToCheck": [
      "Find the step. Approval was granted against the samples, and operators read it as approval of the campaign.",
      "Apply the MESSAGE_CONTENT prohibited-content categories to every template before it goes live.",
      "Treat the registered samples as examples of a standard rather than as the extent of it."
    ],
    "failureLooksLike": "A programme whose samples were clean starts sending content the category prohibits, on the basis that the campaign was approved. Carriers scan live traffic and enforce against the account rather than the campaign."
  },
  "url": "https://ekas.io/rules/10dlc/operational/ops-180/",
  "markdown": "https://ekas.io/rules/10dlc/operational/ops-180.md",
  "registry": "https://ekas.io/rules/10dlc/",
  "updated": "2026-07-25",
  "licence": "CC BY 4.0 — https://creativecommons.org/licenses/by/4.0/"
}
