Skip to content
Apatheia Labs
All audits

Audit

CISA and misinformation governance

Paul StephenApatheia LabsAugust 21, 2026 · 2 min read

Frame

The Cybersecurity and Infrastructure Security Agency (CISA), a DHS component established in 2018, holds statutory responsibility for critical infrastructure protection and election security. Between 2020 and 2022, CISA's activities drew congressional scrutiny over its engagement with social media platforms and civil-society organizations on mis-, dis-, and malinformation (MDM) related to elections and other matters. House Judiciary Committee, House Oversight Committee, and Senate Homeland Security Committee hearings (2022–2023) examined CISA's role. This analysis reconstructs what the public record establishes and what remains contested.

This is a signed analysis from contemporaneous public reporting. It does not claim access to internal coordination records or classified materials.

What the record shows

CISA's authorizing statute assigns responsibility for securing critical infrastructure, including election infrastructure. The record shows CISA interpreted its election-security mandate to include addressing threats to election-related information. CISA officials testified that disinformation campaigns targeting public confidence in election systems represented a security concern. The agency engaged in coordination activities with social media companies, state and local officials, and civil-society organizations. These coordination efforts were publicly acknowledged. CISA worked with the Election Integrity Partnership and other entities that monitored and flagged social media content.

CISA materials introduced the MDM framework (misinformation, disinformation, malinformation). The record shows CISA applied this framework beyond election security to COVID-19 information and critical infrastructure narratives. Whether this expansion was within statutory authority remained contested.

What remains contested

The central dispute concerned whether CISA's activities constituted legitimate election-security coordination or impermissible government involvement in content moderation. Critics argued that government flagging of content, even if framed as voluntary, created pressure for platforms to suppress speech. Defenders maintained that information sharing about foreign threats was legitimate security work and that platforms retained independent judgment.

Questions arose about whether CISA's MDM activities extended beyond its statutory mandate. The agency's enabling statute authorizes critical infrastructure protection and election security but does not explicitly mention misinformation or content coordination. Whether these activities could be derived from the statutory charge remained debated.

The record did not establish comprehensive data on flagging volumes, content types, platform responses, or outcomes. Whether CISA's coordination focused on foreign operations or extended to domestic political speech remained contested.

Limits

The record did not establish whether CISA explicitly directed platforms to remove specific content. Coordination, information sharing, and flagging were documented, but whether these constituted direction or advisory activity remained disputed. The record did not determine whether platforms felt compelled to act on CISA referrals. The constitutional questions raised remained subject to ongoing litigation.

Sources

Congressional testimony before the House Judiciary Committee, House Oversight Committee, and Senate Homeland Security Committee examining CISA activities (2022–2023). CISA official statements and publicly released materials. This is a signed analysis from contemporaneous public reporting. It does not claim access to sealed materials, internal coordination records, or unpublished platform communications.

About the author

Paul Stephen

Founder, Apatheia Labs

Evidence-governed research publication — Prosoche applied in the open.

All audits

Method

This audit applies Prosoche — specifically its adversarial-scrutiny mode, the operation for reading a contested record against the grain. The method is documented at /methodology, and the mode in full — the nine-phase procedure, the eight-type contradiction taxonomy, and the CASCADE propagation trace — at /methodology/reference.

Follow

New work, in your reader

New essays and audits publish to RSS — no inbox, no list. Point your reader at the feed and they arrive as they land.

Subscribe via RSS

Published by Apatheia Labs. All rights reserved. Quote freely with attribution; redistribute with permission.