The distinction that the legislation makes is that if an electronic service provider does not have the capability to decrypt your data, because your device has encrypted the data on your phone and they don't have the key, so to speak, then the legislation can't force it, because the supplier or the provider does not have the capability to do it. There's a distinction based on where the data is encrypted.
