ServicesHow It WorksIndustriesResultsInsightsReactivate My List
Do Not Call Rules

What are the damages for a TCPA violation?

Back to InsightsWhat are the damages for a TCPA violation?

What are the damages for a TCPA violation?

Key Facts

  • A single TCPA violation carries a base statutory damage of $500 per call or text under Section 227(b)(3), regardless of intent, as courts apply strict liability to autodialed communications according to Burr & Forman.
  • Willful TCPA violations treble damages to $1,500 per violation when courts find conduct like continued calling after opt-out requests or ignoring prior warnings per Plura AI analysis.
  • Section 227(c)(5) Do Not Call registry violations treat $500 as a ceiling, not a floor, allowing courts to award as little as $1 per violation or even $0 in some cases as noted by Roth Jackson.
  • A Georgia trial court once awarded $459 million in TCPA damages, illustrating how uncapped per-violation damages scale rapidly in class actions reported by Burr & Forman.
  • The FCC can impose forfeiture penalties up to $23,727 per violation, while the FTC may assess civil penalties of $53,088 per violation under the Telemarketing Sales Rule per Plura AI.
  • Approximately 35 million U.S. phone numbers are disconnected and reassigned annually, and consent attaches to the person—not the number—creating accidental TCPA exposure for businesses that skip the FCC's Reassigned Numbers Database according to Plura AI.
  • The FCC's new Opt-Out Rule effective April 11, 2025 requires businesses to honor revocation requests within 10 business days—down from 30—and apply a single opt-out across all channels and platforms per BCLP analysis.

The Financial Exposure of a Single TCPA Violation

A single TCPA violation can trigger immediate financial exposure that many service businesses underestimate. Under the statute, the base statutory damage is $500 per call or text, regardless of intent, as courts apply strict liability to autodialed communications under Section 227(b)(3). This means even an accidental call to a number on the Do Not Call registry or a text sent without proper prior express consent can result in $500 in damages per incident. For businesses running reactivation campaigns through approved scripts and human oversight—like those managed by CallMyCustomers—this baseline risk underscores why consent verification and list hygiene are non-negotiable first steps.

Willfulness transforms this exposure dramatically, trebling damages to $1,500 per violation when courts find conduct like continued calling after opt-out requests or ignoring prior warnings. Evidence of willfulness includes lacking consent-tracking systems or failing to scrub against the Do Not Call list, which courts view as reckless disregard rather than mere mistake. While genuine compliance programs may prevent trebling, the $500 base liability remains intact, creating a floor that scales quickly with volume. A campaign of just 1,000 improperly dialed numbers could therefore expose a business to $500,000 in base damages—or $1.5 million if willfulness is proven.

Critically, not all TCPA violations carry the same damage floor. Section 227(b)(3) violations—which cover autodialed calls and texts—mandate a minimum $500 per violation. However, Section 227(c)(5) violations, which pertain to the Do Not Call registry, treat $500 as a ceiling, allowing courts to award as little as $1 per violation or even $0 in some cases. This distinction significantly impacts risk assessment, especially for businesses relying on manual outreach where autodialer claims may be harder to prove. Understanding these nuances is essential for service businesses using automated outreach tools, as the same call could trigger vastly different liability depending on how it’s classified under the TCPA’s sections. Proper segmentation, consent tracking, and immediate opt-out honoring remain the most effective defenses against accumulating per-violation exposure.

  • Base statutory damages: $500 per violation under TCPA Section 227(b)(3)
  • Willful violations: Trebled to $1,500 per violation
  • Section 227(c)(5) Do Not Call violations: $500 is a ceiling, not a floor
For service businesses using approved, permission-based outreach—where every message is client-reviewed and opt-outs are honored instantly—this level of granular compliance transforms TCPA risk from a theoretical threat into a manageable operational standard. By anchoring campaigns in explicit consent and real-time list hygiene, businesses protect themselves not just from penalties, but from the erosion of customer trust that costly violations inevitably cause.

How Class Actions and Regulatory Penalties Multiply TCPA Risk

TCPA violations carry uncapped financial exposure because damages are assessed per call or text, with no statutory ceiling on total liability. This structure creates extreme risk in class actions, where even modest per-violation amounts scale rapidly across large plaintiff classes. For example, a Georgia trial court once awarded $459 million in TCPA damages, illustrating how quickly exposure accumulates in litigation involving hundreds of thousands of communications. Theoretical models show a single text blast to 500,000 non-consenting recipients could trigger $750 million in trebled damages at the willful rate of $1,500 per violation.

Beyond private litigation, regulatory penalties layer additional costs onto each violation. The FCC can impose forfeitures of up to $23,727 per violation, while the FTC may assess civil penalties of $53,088 per violation under the Telemarketing Sales Rule. These government fines operate independently of—and in addition to—any damages awarded in civil suits, meaning a single unlawful call or text could theoretically generate over $76,000 in combined penalties before private damages are even considered. This multi-pathway liability significantly amplifies the financial stakes for businesses engaged in telemarketing or text-based outreach.

  • Base statutory damages for private litigants start at $500 per violation, trebling to $1,500 for willful and knowing conduct
  • FCC forfeiture penalties reach up to $23,727 per violation after inflation adjustments
  • FTC TSR civil penalties amount to $53,088 per violation as of 2025

For businesses like CallMyCustomers that manage customer reactivation campaigns, this multiplicative risk underscores why compliance isn’t optional—it’s foundational. Honoring opt-out requests within the 10-business-day window mandated by the FCC’s new rule, maintaining verified consent records, and screening numbers against the FCC’s Reassigned Numbers Database aren’t just best practices; they’re essential controls against exposure that can escalate from thousands to millions—or even hundreds of millions—of dollars in liability. The uncapped nature of TCPA damages means there is no predictable upper limit to what a single compliance failure might cost.

Recent Regulatory Changes Increasing Compliance Burden (Effective 2025-2026)

The compliance landscape shifted again in April 2025, and businesses running reactivation campaigns face a tighter window and broader obligations. The FCC's new Opt-Out Rule now requires companies to honor revocation requests within 10 business days — down from 30 — and a single consumer opt-out must apply across every channel and platform you use. BCLP notes the burden falls on the business to prove an opt-out request was unreasonable, while Carlton Fields warns that non-compliance invites hefty fines and legal challenges.

Reassigned numbers compound the risk. Roughly 35 million U.S. phone numbers are disconnected and made available for reassignment each year, and consent attaches to the person — not the number. Plura AI explains that prior consent does not transfer when a number changes hands, creating accidental TCPA exposure for any outreach that skips the FCC's Reassigned Numbers Database. For reactivation campaigns pulling from older lists, this gap is a direct line to statutory damages.

  • Honor every opt-out within 10 business days across calls, texts, and email
  • Apply a single revocation to all future communications on all platforms
  • Send only one clarification message within five minutes of the request
  • Scrub contact lists against the Reassigned Numbers Database before every campaign
  • Document consent and opt-out records for at least four years

CallMyCustomers builds these controls into every reactivation campaign — lists are reviewed and segmented before outreach, opt-outs are processed in real time, and reassigned-number checks are standard. The owner approves every script and offer before a single message goes out, so compliance isn't an afterthought.

Practical Compliance Steps for Service Businesses Running Reactivation Campaigns

The difference between a $500 mistake and a $1,500 one often comes down to what you did after someone said stop. Courts tie the trebled damage tier to conduct like continued calling after an opt-out request, according to legal analysis of TCPA penalties — which means your compliance systems matter as much as your consent.

Process opt-outs in real time, not on a schedule. The FCC's new Opt-Out Rule, effective April 11, 2025, requires businesses to honor revocation requests within 10 business days, and a single opt-out must now apply across all channels and platforms, per BCLP's analysis of the new rules. Waiting a month to scrub a list is no longer defensible. This is why CallMyCustomers honors opt-outs immediately — a "STOP" reply ends outreach on the spot, not at the end of the campaign.

Keep consent records for at least four years. The TCPA's statute of limitations is four years, and courts have declined to treble damages where businesses could show genuine compliance programs and consent-tracking systems, even if a good-faith mistake occurred. For a service business running reactivation outreach, that means documenting where each customer's number came from — a booked job, a signed quote, a membership form — before the first call goes out.

Screen for reassigned numbers before every campaign. Approximately 35 million numbers are disconnected and made available for reassignment annually in the U.S., and consent attaches to the person, not the phone. That old customer list may contain numbers now belonging to strangers — and calling them counts as a violation. Checking the FCC's Reassigned Numbers Database turns an unknowing $500-per-call exposure into a managed risk.

Beyond tooling, your internal protocols need to cover the full picture:

  • Route every opt-out — text, email, or verbal on a call — into one suppression list applied across all campaigns.
  • Have whoever runs outreach approve every script and offer before sending, so nothing goes out unreviewed.
  • Allow one clarification message within five minutes of an opt-out request, as the new rules permit — then stop completely.
  • Log the date, time, and channel of every consent and every revocation.

The burden of proof sits with you: under the new rules, it is the business's burden to demonstrate why an opt-out request was not reasonable. Build the paper trail before you need it, and reactivation becomes the second revenue engine it should be — not a courtroom exhibit.

Ready to turn past customers into booked work without the compliance headaches? Get a free list review from CallMyCustomers — you'll see what your list can produce, approve every message, and keep full control while we run the outreach.

Frequently Asked Questions

What is the base statutory damage for a single TCPA violation involving an autodialed call or text?
The base statutory damage for a single TCPA violation under Section 227(b)(3) is $500 per call or text, regardless of intent, as the statute applies strict liability to autodialed communications. This is confirmed by legal analysis of TCPA penalties.
How much can damages increase if a TCPA violation is found to be willful?
If a TCPA violation is deemed willful, damages are trebled from $500 to $1,500 per violation. Courts tie this trebling to conduct like continued calling after opt-out requests or ignoring prior warnings, not merely knowing the law. Legal experts confirm willfulness triggers the $1,500 tier.
Do all TCPA violations carry a $500 minimum damage amount?
No—only Section 227(b)(3) violations (autodialed calls/texts) mandate a $500 floor. Section 227(c)(5) violations (Do Not Call registry) treat $500 as a ceiling, allowing courts to award as little as $1 or even $0 per violation. This distinction is critical for risk assessment.
What additional penalties can businesses face beyond private TCPA damages?
Beyond private damages, the FCC can impose forfeitures up to $23,727 per violation, and the FTC may assess civil penalties of $53,088 per violation under the Telemarketing Sales Rule. These government fines operate independently and in addition to any civil damages awarded. These penalty amounts are current as of 2025.
How quickly must businesses honor opt-out requests under the FCC's new rule effective 2025?
Under the FCC's new Opt-Out Rule effective April 11, 2025, businesses must honor opt-out requests within 10 business days—down from 30—and apply a single revocation across all channels and platforms. This shortened window increases compliance urgency.
Why is checking the Reassigned Numbers Database important for TCPA compliance?
Consent under the TCPA attaches to the person, not the phone number, so prior consent does not transfer when a number is reassigned. With ~35 million U.S. numbers disconnected and made available for reassignment yearly, failing to screen lists against the FCC's Reassigned Numbers Database can result in accidental TCPA violations. This creates significant exposure for businesses using outdated contact lists.

Turning Compliance Into Your Competitive Advantage

TCPA violations aren't just legal risks—they're financial landmines that can scale from $500 per call to hundreds of millions in class actions, especially when willfulness triggers trebled damages or regulatory penalties layer on top. The real danger lies in the uncapped liability per communication, where a single oversight—like calling a reassigned number or delaying an opt-out—can expose your business to devastating costs. But here's the opportunity: businesses that treat compliance as a core operational discipline, not an afterthought, transform risk into resilience. By honoring opt-outs in real time, scrubbing for reassigned numbers, and maintaining four-year consent records, you protect not only your bottom line but also the trust that fuels repeat revenue. For service businesses relying on reactivation campaigns, this level of rigor turns past customers into booked work without the compliance headaches. Ready to see what your list can produce while staying fully protected? Get a free list review from CallMyCustomers—you’ll approve every message, keep full control, and let us run the outreach the right way.

Stay in the Loop