On July 24, 2026, the U.S. Justice Department filed criminal charges against an American citizen for allegedly wiping his phone during a border search at Hartsfield-Jackson Atlanta International Airport. The defendant, Samuel Tunick, is accused of providing Customs and Border Protection agents with a passcode that triggered an automatic data wipe. This is the first known prosecution of its kind. The case centers on GrapheneOS, a privacy-focused operating system.
TL;DR: The U.S. Justice Department charged Atlanta activist Samuel Tunick after he allegedly gave border agents a GrapheneOS “duress PIN” that wiped his Pixel phone. Prosecutors claim this constituted obstruction, while digital rights groups call the prosecution an unprecedented attack on privacy tools. The case could set a major legal precedent.
Who Is Samuel Tunick and What Are the Charges?
Samuel Tunick is an Atlanta-area activist connected to the “Cop City” protest movement, a movement opposing the construction of a police training facility in Georgia. According to The Guardian, the U.S. government is prosecuting him after border authorities accused him of wiping his phone using a built-in security feature. The charges stem from an incident at Hartsfield-Jackson airport. Tunick denies the allegations.
Federal prosecutors argue that providing a passcode designed to erase data constitutes obstruction of justice. The Justice Department filed the charges on July 24, 2026, according to TechCrunch reporting. This is a novel legal theory. It tests whether using a built-in wipe function can trigger criminal liability.
The defendant faces legal consequences for allegedly using a feature designed to protect user privacy. According to Windows Forum, the case presents an unusually consequential legal question. Can a traveler face criminal charges for using a phone’s built-in security mechanism? Defense lawyers challenge the search itself as unlawful.
What Is GrapheneOS and How Does the Duress PIN Work?
GrapheneOS is an open-source, privacy-focused mobile operating system built on the Android Open Source Project. It is designed to run on Google Pixel hardware. According to TechSpot, the OS lets users enter a specific passcode to wipe the contents of the device. This feature is known as a duress PIN. The system operates independently of Google services.
The duress PIN functions as a dead man’s switch. When a user enters this alternate passcode instead of the real one, the operating system immediately and permanently erases all data. According to Android Authority, the encryption keys are destroyed, making recovery impossible. The phone then returns to factory settings. This happens silently.
GrapheneOS documents this feature as a standard security measure. Users configure it during device setup. The feature exists to protect individuals under coercion. If someone is forced to surrender their passcode, they can provide the duress PIN instead. The device wipes itself instantly.
What Happened During the Atlanta Airport Border Search?
Customs and Border Protection agents stopped Samuel Tunick at Hartsfield-Jackson Atlanta International Airport. During the inspection, agents demanded access to his mobile phone. According to Mezha.net, Tunick provided a passcode to the border authorities. The agents entered the code into the device.
The passcode was not the standard unlock code. It was the GrapheneOS duress PIN. Upon entry, the Pixel phone immediately initiated a complete data wipe. According to SC Media, the phone’s contents were erased during the border inspection. Agents got a password, but not the one they wanted.
This interaction triggered the federal prosecution. Prosecutors allege Tunick intentionally destroyed evidence. The defense maintains the search was unlawful. The clash at the airport now forms the basis of a federal criminal case.
Why Is This Prosecution Legally Unprecedented?
No prior U.S. case involves criminal charges for using a duress password at the border. According to SC Media, legal experts consider this the first prosecution of its kind. The Justice Department is testing a new legal boundary. They aim to link the use of a privacy feature to criminal obstruction.
Border searches of electronic devices fall under a specific legal framework. According to Gizmodo, the core question is whether wiping a phone in this context is even illegal. Privacy advocates argue that individuals have the right to secure their data. Criminalizing a built-in security feature represents a massive shift in policy. The outcome remains uncertain.
Defense attorneys are challenging the legality of the initial search. According to Windows Forum, the defense argues the border search itself was unconstitutional. If the search was unlawful, the subsequent wipe cannot be criminal. This legal tension makes the case highly unusual. It could reach higher courts.
How Does the Government Define Obstruction in This Case?
The Justice Department defines Tunick’s actions as intentional obstruction. Prosecutors assert that providing the duress PIN was an active attempt to destroy evidence. They do not distinguish between a standard factory reset and a security-triggered wipe. The intent is the focus. Did Tunick want to destroy evidence?
Federal law prohibits the destruction of evidence to impede an investigation. According to TechCrunch, prosecutors are applying this standard to the use of an operating system feature. The government views the duress PIN as a tool for concealment. They argue the border search constituted an official proceeding.
This interpretation alarms digital rights organizations. If successful, the prosecution could criminalize the use of encryption itself. According to The Guardian, civil liberties groups express deep concern over the government’s effort to prosecute an activist over a phone operating system. The case redefines digital obstruction.
How Does GrapheneOS Implement the Duress PIN Feature?
GrapheneOS ships with a built-in duress PIN feature designed for coercive situations where users may be forced to unlock their devices. The feature works by allowing users to configure a secondary passcode that, when entered, immediately triggers a factory reset of the device, permanently destroying all encryption keys and user data. This is not a hidden folder or a decoy profile. The wipe is irreversible.
The duress PIN operates at the hardware encryption level. When a user enters the configured duress code instead of their real PIN, GrapheneOS initiates a cryptographic wipe of the secure element storage where encryption keys reside. The operating system overwrites the hardware-backed keystorage, making forensic recovery of any prior data effectively impossible. The phone then boots to a fresh installation state, showing no trace of the previous user data or applications.
GrapheneOS runs exclusively on Google Pixel hardware because it relies on specific Titan security chip features integral to the Pixel platform. The duress PIN feature has been part of GrapheneOS for several years and is documented publicly in the project’s official feature set. It was designed for journalists, activists, and ordinary users in high-risk environments. Now it sits at the center of a federal prosecution.
What Charges Does Samuel Tunick Face in Federal Court?
Samuel Tunick faces federal charges stemming from his alleged use of the GrapheneOS duress PIN during a border search at Hartsfield-Jackson Atlanta International Airport. According to court proceedings reported by multiple outlets including The Verge and TechCrunch, the Justice Department has charged Tunick in what legal experts describe as the first known prosecution of its kind in the United States. The charges assert that providing a passcode that triggers a data wipe constitutes obstruction of a federal investigation.
The prosecution argues that Tunick knowingly and willfully provided CBP officers a passcode designed to destroy evidence rather than grant access. Tunick, described in The Guardian as an Atlanta-area activist connected to the Cop City protest movement, has denied the government’s allegations. His defense team maintains that the underlying border search was unlawful and that any action taken with the device falls within protected behavior. The case is being heard in a federal court in Atlanta.
This is legally untested territory. No prior U.S. case has criminally charged someone for using a manufacturer-provided security feature during a border inspection. Defense attorneys have signaled they will challenge both the legality of the search and the application of obstruction statutes to a built-in wipe function. The outcome could establish precedent for how digital self-help tools are treated under federal law.
What Are the Broader Implications for Digital Privacy Rights?
The Tunick case raises questions that extend far beyond a single phone wipe at one airport checkpoint. Privacy advocates and legal scholars are watching closely because a conviction would effectively criminalize the use of a widely available security feature designed to protect user data. The Electronic Frontier Foundation and similar organizations have long argued that border searches of electronic devices infringe on constitutional protections against unreasonable searches and seizures.
A successful prosecution could set a precedent where any attempt to deny authorities access to encrypted data becomes itself a criminal act. This would affect not only GrapheneOS users but anyone using built-in encryption or wipe features available on mainstream devices. Apple, Google, and other manufacturers offer remote wipe capabilities and biometric lockout features that serve similar protective purposes. Where does the line fall between using a feature and obstructing justice?
The case also intersects with First Amendment concerns. Tunick’s connection to political activism, as reported by The Guardian, suggests that border searches may be used to target individuals based on their political associations. If activating a privacy feature during a search becomes criminal, activists and journalists may face heightened legal risk when traveling internationally. Civil liberties groups warn this creates a chilling effect on free expression and association.
How Have Privacy and Security Communities Responded?
The privacy and security communities have reacted with concern to the Tunick prosecution. GrapheneOS developers have not commented extensively on the specific case, but the project’s documentation continues to describe the duress PIN as a legitimate safety feature for users facing coercion. Security researchers note that similar functionality exists across many platforms and has been recommended by privacy advocates for years.
Coverage from outlets like Boing Boing and Gizmodo has framed the prosecution as an alarming expansion of government power over digital tools. The headline from Boing Boing captured the irony succinctly: agents got the password they demanded, but it was not the password they wanted. Legal analysts writing for tech publications have questioned whether criminalizing the use of a security feature is constitutionally sustainable given existing precedents on compelled decryption.
The case has also drawn attention from the broader cybersecurity community. Professionals who recommend tools like GrapheneOS to clients are now reconsidering how they advise users about border encounters. Some privacy guides already recommend powering off devices before crossing borders. This case adds a new dimension to that advice. The discussion has spread across forums and social platforms, with many users expressing alarm that a documented security feature could trigger federal charges.
Frequently Asked Questions
What is GrapheneOS and how does the duress PIN work?
GrapheneOS is an open-source, privacy-focused mobile operating system built on the Android Open Source Project and designed to run on Google Pixel hardware. The duress PIN is a secondary passcode users configure in advance. When entered at the lock screen, it triggers an immediate cryptographic wipe of all device data by destroying the hardware-backed encryption keys stored in the Pixel’s Titan security chip. The phone then resets to a factory state with no recoverable trace of prior data. The feature is publicly documented and has been part of GrapheneOS for years.
Has anyone been prosecuted before for using a duress password?
According to reporting from TechCrunch, The Verge, and SC Media, the case against Samuel Tunick is believed to be the first known U.S. prosecution where an individual faces criminal charges for allegedly using a built-in duress or wipe password during a federal border search. Legal experts cited by Windows Forum and Mezha describe the prosecution as novel and untested, with no clear prior precedent in U.S. courts. No prior case law was identified where obstruction charges were applied to a manufacturer-provided device wipe feature.
What device was involved in the Tunick case?
The device at the center of the prosecution was a Google Pixel phone running GrapheneOS, as confirmed by reporting from Android Authority and TechSpot. GrapheneOS is compatible only with Google Pixel hardware because it depends on the Titan security chip integrated into Pixel devices for hardware-backed encryption features. The duress PIN function operates by overwriting encryption keys stored in this secure element, making the wipe irreversible and forensically complete. The phone reportedly reset to a fresh installation state when the duress code was entered during the CBP inspection.
What are the potential legal consequences Samuel Tunick faces?
The specific charges and potential sentence Tunick faces have not been fully detailed in public reporting, but the Justice Department is pursuing federal obstruction charges related to the alleged data wipe. As reported by The Guardian and Gizmodo, defense lawyers are challenging both the charges and the legality of the underlying border search. The case remains active in federal court in Atlanta. A conviction could establish precedent making the use of wipe features during any law enforcement encounter potentially criminal, affecting users of GrapheneOS and similar privacy tools nationwide.
Summary
The prosecution of Samuel Tunick marks a significant moment in the ongoing tension between digital privacy rights and law enforcement authority at U.S. borders. Key takeaways from this case include:
First-of-its-kind prosecution: The Justice Department has charged an American citizen for allegedly using a GrapheneOS duress PIN to wipe a phone during a border search, a case legal experts call unprecedented in the United States.
Security feature under legal scrutiny: The duress PIN is a documented, manufacturer-supported security function designed to protect users under coercion. Criminalizing its use raises questions about whether individuals can be punished for deploying tools designed to safeguard their own data.
Activist dimension: Tunick’s reported connection to the Cop City protest movement has drawn additional attention from civil liberties groups concerned about politically motivated border searches and the targeting of activists through digital surveillance tools.
Broader chilling effect: A conviction could set precedent affecting anyone using privacy-enhancing technologies, from GrapheneOS users to individuals relying on built-in remote wipe features on mainstream devices from Apple and Google.
Legal precedent in flux: With no prior case law on point, the outcome will likely shape how courts interpret the intersection of encryption rights, obstruction statutes, and constitutional protections against compelled self-incrimination for years to come.
For more analysis on privacy tools and digital rights, follow the ongoing coverage at gikiewicz.com.