What Did the FCC Change About VoIP Provider Requirements in July 2026?
On July 22, 2026, the FCC adopted a Further Notice of Proposed Rulemaking (WC Docket Nos. 24-213, 17-97) proposing new measures to strengthen the Robocall Mitigation Database, the federal registry that determines which voice service providers can connect to U.S. phone networks. Providers that fail to meet the proposed requirements would lose RMD access and be effectively disconnected from the network. For small businesses that depend on VoIP phone service, this means your provider’s compliance status directly affects whether your outbound and inbound calls continue to work.
Non-compliant providers get cut off. The FCC removed over 1,200 VoIP providers from the RMD in August 2025. The July 2026 FNPRM would make future requirements even stricter.
Your calls depend on your provider’s standing. If your VoIP provider is removed from the RMD, other carriers are required to stop accepting traffic from that provider. Your business calls stop going through.
This is not about robocalls you receive. The RMD rules target the providers themselves. Your business is affected only if your provider fails to comply, not because of anything you do.
What the FCC Voted On July 22
At its July 22, 2026 Open Meeting, the FCC adopted an FNPRM aimed at “materially strengthening the integrity of the United States voice ecosystem.” The proposal targets the Robocall Mitigation Database, which was established under the TRACED Act and currently requires every voice service provider in the United States to file a certification confirming its STIR/SHAKEN compliance status and robocall mitigation plan.
The FNPRM proposes additional measures to ensure that only legitimate, transparent, and accountable providers gain or maintain access to the RMD. While the specific proposals await Federal Register publication and a public comment period, the FCC’s stated intent is to close loopholes that bad actors have exploited to maintain RMD access despite non-compliance. This follows the FCC’s August 2025 enforcement sweep in which the Enforcement Bureau removed over 1,200 non-compliant VoIP providers from the database, effectively disconnecting them from U.S. phone networks. A bipartisan group of 51 state attorneys general subsequently launched Operation Robocall Roundup, sending warning letters to 37 additional providers.
For small businesses, the mechanics are straightforward: the FCC maintains a list of approved providers. If your VoIP provider is not on the list, other carriers must refuse to connect calls to and from that provider. Your business phone system only works if the provider behind it maintains its RMD standing.
Why Should Small Business Owners Care About RMD Compliance?
Most small business owners have never heard of the Robocall Mitigation Database, and they should not need to manage it directly. But they do need to understand that the FCC’s robocall enforcement framework now creates a direct operational risk for any business that uses a non-compliant VoIP provider.
The risk is simple. If your VoIP provider loses its RMD certification, downstream carriers are required to block all traffic from that provider. This means your outbound calls do not connect, your inbound calls do not arrive, and your business is unreachable until you switch to a compliant provider. There is no grace period for end users. When the FCC removed 1,200 providers in August 2025, their customers’ calls stopped working within two days.
The most common scenario we see at Phone Service Now is a business that chose a low-cost VoIP provider without checking compliance status, then experienced call quality issues, blocked calls, or “Spam Likely” labels that destroyed their answer rates. In many cases, the root cause was the provider’s non-compliance with STIR/SHAKEN or RMD filing requirements. The FCC’s July 2026 FNPRM is designed to remove these providers from the ecosystem entirely, which protects businesses that use compliant providers but creates disruption for those that do not.
How Do You Check If Your VoIP Provider Is Compliant?
The FCC maintains a public portal for the Robocall Mitigation Database at fcc.gov/ecfs. Any business can search for its VoIP provider by name to confirm that the provider has an active RMD filing with a current certification. The filing should show the provider’s STIR/SHAKEN implementation status (full, partial, or exempt with an approved extension), the date of the most recent certification, and the name and contact information of the person responsible for robocall mitigation.
If your provider does not appear in the database, or if its filing shows a deficiency, that is a serious red flag. The FCC has been progressively tightening enforcement, and providers that are not current in the RMD are at risk of removal in the next enforcement cycle.
Beyond the RMD filing, ask your provider directly whether they implement STIR/SHAKEN caller ID authentication on your outbound calls. STIR/SHAKEN signs each call with a digital certificate that proves the caller ID has not been spoofed. Providers that implement full STIR/SHAKEN sign calls with an A-level attestation, which gives your calls the highest trust rating in the network. Calls without STIR/SHAKEN attestation are increasingly flagged by carriers as potential spam, which means fewer of your business calls get answered.
| Compliance Check | What to Look For | Red Flag |
|---|---|---|
| RMD filing status | Active certification with current date | No filing, expired, or marked deficient |
| STIR/SHAKEN level | Full implementation with A-level attestation | Partial or no implementation |
| Robocall mitigation plan | Documented plan on file with FCC | No plan or generic boilerplate |
| Call attestation | Your calls carry verified caller ID | Calls display “Spam Likely” or no caller ID |
| Provider history | No FCC enforcement actions | Previous removal or warning from FCC |
If you are not sure whether your current VoIP provider meets these compliance requirements, or if your business calls are already being flagged as spam, our team can help you evaluate your options and switch to a compliant provider without downtime.
What Should You Do Right Now?
The FNPRM is not yet final, but the direction is clear and the enforcement precedent is set. These steps protect your business.
Search the Robocall Mitigation Database for your provider. Go to the FCC’s public portal and confirm your VoIP provider has an active, current RMD filing. If it does not, start evaluating alternatives immediately.
Ask your provider about their STIR/SHAKEN implementation. Request written confirmation that your outbound calls carry A-level attestation. If your provider cannot confirm this, your calls are likely being flagged by receiving carriers.
Check whether your calls display your business name correctly. If recipients see “Spam Likely,” “Scam Risk,” or no caller ID at all, the issue may be your provider’s STIR/SHAKEN compliance rather than your phone number reputation.
Review your call answer rates. If your outbound call answer rate has dropped in 2026, compare it against industry benchmarks. A provider compliance issue manifests as a sudden or gradual decline in the percentage of calls that connect or get answered.
Have a backup plan if your provider is removed. Getting a new VoIP number and porting your existing numbers to a compliant provider typically takes one to three business days. Knowing your options before a disruption occurs prevents downtime.
Monitor FCC announcements for the final rule. Once the FNPRM is published in the Federal Register, a comment period will open. The final rule will establish the specific requirements providers must meet to maintain RMD access.
Mistakes That Put Your Calls at Risk
One question we hear constantly from business owners who switch to Phone Service Now is why their previous provider’s calls were being blocked or labeled as spam. These are the mistakes that lead to that outcome.
Choosing a VoIP provider based on price alone. The lowest-cost providers are often the ones cutting corners on compliance. A provider that charges $8 per user per month may not be investing in STIR/SHAKEN infrastructure, RMD compliance, or call quality monitoring. The savings are not real if your calls do not connect.
Not checking compliance when you signed up. Most businesses evaluate VoIP providers on features, pricing, and ease of use. Almost none check the RMD filing status or STIR/SHAKEN implementation level before signing a contract. Adding this check to your evaluation process takes five minutes and prevents the single worst outcome: your business going dark because your provider got removed.
Assuming all VoIP providers are equally compliant. They are not. The FCC’s removal of 1,200 providers in August 2025 demonstrated that a significant portion of the VoIP market was non-compliant. The July 2026 FNPRM will raise the bar further. Providers that are borderline compliant today may not survive the next enforcement cycle.
Ignoring “Spam Likely” labels on your outbound calls. If customers tell you they see spam labels when you call, that is a signal your provider’s attestation is weak. The label is applied by the receiving carrier based on the trust level of the call’s authentication. A compliant provider with full STIR/SHAKEN implementation minimizes this risk.
Frequently Asked Questions
What is the Robocall Mitigation Database?
The Robocall Mitigation Database is a federal registry maintained by the FCC under the TRACED Act. Every voice service provider in the United States must file a certification confirming its STIR/SHAKEN compliance and robocall mitigation plan. Providers not listed in the RMD are prohibited from connecting to U.S. phone networks.
Can my business calls be blocked because of my provider?
Yes. If your VoIP provider is removed from the Robocall Mitigation Database, other carriers are required to stop accepting traffic from that provider. This means your outbound calls will not connect and inbound calls will not reach you. The block applies to the provider, not to your business directly, but the effect is the same.
What is STIR/SHAKEN and why does it matter?
STIR/SHAKEN is the FCC-mandated caller ID authentication framework that uses digital certificates to verify that the caller ID displayed on a call has not been spoofed. Providers that implement it fully sign calls with an A-level attestation, which tells receiving carriers the call is legitimate. Calls without attestation are increasingly flagged as potential spam.
How do I know if my provider has been removed from the RMD?
Search the FCC’s public Robocall Mitigation Database portal for your provider by name. If the provider does not appear or its filing is marked deficient, it may have been removed or is at risk of removal. You can also ask your provider directly for written confirmation of their current RMD status.
What happened in August 2025 with the 1,200 providers?
The FCC Enforcement Bureau removed over 1,200 non-compliant voice service providers from the RMD on August 25, 2025, after they failed to maintain accurate certifications despite repeated warnings. All downstream carriers were required to stop accepting traffic from those providers within two days, effectively disconnecting them from U.S. phone networks.
Will the July 2026 FNPRM change anything immediately?
No. The FNPRM is a proposal, not a final rule. It will be published in the Federal Register with a comment period before any new requirements take effect. However, the FCC’s enforcement of existing RMD rules continues regardless, meaning providers that are currently non-compliant remain at risk of removal under the current framework.
Next Steps
Start by checking the Robocall Mitigation Database for your current VoIP provider. If they are compliant and implement full STIR/SHAKEN, you are in good shape. If not, begin evaluating compliant alternatives now rather than waiting for the next enforcement action.
Phone Service Now maintains full STIR/SHAKEN implementation and an active RMD certification. If you need a compliant business phone system that ensures your calls connect and your caller ID is verified, our team can get you set up in one business day.
The FCC is making it harder for non-compliant VoIP providers to stay connected. Make sure your business phone service is on the right side of the rules. Talk to our team about getting set up with a compliant provider.