Product1 distinct publisher3 min readUpdated
Internal CBP and DHS files obtained by WIRED describe more than a decade of officers and contractors querying government systems to track exes and relatives. The logging worked; the consequences did not.
The Product Desk · Product desk

Compiled by The Product DeskSomething wrong?How this is made
A control has to do three things: notice the act, tie it to a person, and cost that person something. The files described by WIRED clear the first two comfortably. Queries were recorded, attached to named employees and contractors, and still retrievable years later when a reporter filed FOIA requests with CBP's Office of Professional Responsibility and the DHS Inspector General [1]. The audit trail functioned exactly as designed. What it produced was paperwork.
The volume is worth sitting with as arithmetic rather than adjective. Hundreds of allegations across a span of more than a decade [2][3] works out to something on the order of seventeen to twenty recorded allegations a year as a floor [15], and that floor counts only the ones a complainant raised, an investigator opened, and a records office kept. Nobody discovers a query rate this way. They discover a complaint rate.
The categories inside it are ordinary in the worst way. Officers looking up romantic interests and monitoring family members [4]. An officer accused of pulling information out of trusted-traveler applications to ask people out [7], which turns an expedited-screening program into a contact list. Border-crossing data handed to someone in the middle of a heated divorce [8]. One officer allegedly using government systems to reach a flight attendant [6]. The same access path also shows up carrying intelligence to suspected smugglers and drug-trafficking organisations [5], and the logging regime treats that query and the divorce query identically: it writes both down.
Then there is the outlier. A DHS employee is alleged to have used ad-tech-derived location data to track several coworkers' phones, described as the first known internal abuse case involving DHS use of commercially sourced mobile location data [9]. Read that as a boundary rather than a scandal. Query logs cover the systems an agency runs. Data an agency buys arrives with whatever handling the vendor contract specifies, and the files as described cannot tell us whether this is the first time it happened or the first time someone noticed.
On what happened to the people involved, the source is thinner than the source's own confidence suggests. Techdirt asserts that most officers are permitted to resign rather than face discipline or criminal charges [10], and that contractors who abuse access move to other jobs in the same industry because surveillance vendors are equally uninterested in punishing it [11]. That is characterisation, not a tabulation of dispositions, and the excerpt offers no case-by-case outcomes. But it is the load-bearing question, because a resignation ends the personnel record and leaves the log entry as the only artefact.
Meanwhile the current wave of coverage about tech-enabled stalking by police is aimed at Flock Safety, a comparatively recent arrival [13]. The federal database problem has a decade of internal documentation behind it [3] and produced, on this evidence, a well-maintained archive of things somebody already did.
Follow any of these and your For You feed starts watching them — no settings page required.
Ranked by verification strength, evidence, and original report placement.
Internal records obtained by WIRED through FOIA requests to CBP's Office of Professional Responsibility and the DHS Office of Inspector General show CBP employees and contractors accused of abusing sensitive government databases for reasons unrelated to their jobs.
The records contain hundreds of allegations of misuse of law enforcement databases.
The records reveal alleged database abuse by CBP employees spanning more than a decade.
Allegations include federal agents querying data to look up romantic interests, monitor family members, and expose personal information.
In some cases, CBP employees and contractors were accused of providing intelligence to suspected smugglers or drug-trafficking organizations.
In one case, a CBP officer allegedly used government databases to contact a flight attendant.
Evidence-backed comparisons of source perspectives and observed adoption signals. Read the methodology
Which Builder, Operator, and Investor concerns the observed source mix emphasized—not a truth score.
Evidence, demonstrated adoption, hype gap, incentives, and confidence are assessed independently, each on its own current evidence. How these are measured.
Strong underlying provenance, thin secondhand reporting
The factual core traces to internal CBP OPR and DHS OIG records obtained under FOIA, which is high-grade provenance, but the cluster contains one commentary outlet quoting another publication's summary. No primary document text, no substantiation or disposition counts, and no agency response are present, and the outlet's own accountability claims about resignations and vendor behaviour carry no citation.
Sustained institutional use with documented insider abuse
Adoption here is the real-world operation of these federal data systems and the commercial location data feeding them. The FOIA disclosure shows continuous querying by employees and contractors across more than a decade at one agency, plus a first documented internal case using ad-tech-derived location data. What is missing is scale: no workforce size, query volume or per-year figures, so usage breadth cannot be sized.
Documented findings extended by unsourced conclusions
The reported findings are stated accurately, but the piece stretches them into categorical claims - that most officers resign unpunished, that surveillance vendors tolerate abuse, and that oversight will be redirected at critics - none of which the cluster evidences. The headline framing that logs 'caught every one' also overstates what detection records can establish, since the documents cover only detected conduct.
Advocacy commentary aggregating another outlet's scoop
The single publisher is an opinion-led technology policy site with a long-standing editorial position on police and surveillance misconduct, and it is repackaging another outlet's investigation rather than reporting the documents. That combination gives a clear incentive toward the strongest available framing, visible in the political forecast and the Flock Safety aside; there is no disclosed commercial stake in any named vendor.
Core facts likely, interpretation unverified
Confidence in the documented spine - FOIA records, hundreds of allegations, more than a decade, specific case examples including the ad-tech location tracking - is reasonably high because it is attributed to identified agency records. Confidence in the cluster as a whole is held down by single-publisher coverage, absence of primary text or agency comment, and several unevidenced interpretive claims.
product
ICE Buys A Camera For Every Officer, And A Release Rule That Defaults To No1 distinct publisher
security
A retail-theft bill would wire loss prevention into ICE, and security teams own the plumbing1 distinct publisher
security
NPS Bought Flock. Internal Paper Says License Plate Reader; Public Statement Says Traffic Counts1 distinct publisher
build
Flock's OS Investigate starts the search before there is a suspect1 distinct publisher
Distinct publishers with included, body-backed reporting in this cluster.
1 article · August 21, 2026