
What are the damages for a TCPA violation?
Key Facts
- A single TCPA violation carries a base statutory damage of $500 per call or text under Section 227(b)(3), regardless of intent, as courts apply strict liability to autodialed communications according to Burr & Forman.
- Willful TCPA violations treble damages to $1,500 per violation when courts find conduct like continued calling after opt-out requests or ignoring prior warnings per Plura AI analysis.
- Section 227(c)(5) Do Not Call registry violations treat $500 as a ceiling, not a floor, allowing courts to award as little as $1 per violation or even $0 in some cases as noted by Roth Jackson.
- A Georgia trial court once awarded $459 million in TCPA damages, illustrating how uncapped per-violation damages scale rapidly in class actions reported by Burr & Forman.
- The FCC can impose forfeiture penalties up to $23,727 per violation, while the FTC may assess civil penalties of $53,088 per violation under the Telemarketing Sales Rule per Plura AI.
- Approximately 35 million U.S. phone numbers are disconnected and reassigned annually, and consent attaches to the person—not the number—creating accidental TCPA exposure for businesses that skip the FCC's Reassigned Numbers Database according to Plura AI.
- The FCC's new Opt-Out Rule effective April 11, 2025 requires businesses to honor revocation requests within 10 business days—down from 30—and apply a single opt-out across all channels and platforms per BCLP analysis.
The Financial Exposure of a Single TCPA Violation
A single TCPA violation can trigger immediate financial exposure that many service businesses underestimate. Under the statute, the base statutory damage is $500 per call or text, regardless of intent, as courts apply strict liability to autodialed communications under Section 227(b)(3). This means even an accidental call to a number on the Do Not Call registry or a text sent without proper prior express consent can result in $500 in damages per incident. For businesses running reactivation campaigns through approved scripts and human oversight—like those managed by CallMyCustomers—this baseline risk underscores why consent verification and list hygiene are non-negotiable first steps.
Willfulness transforms this exposure dramatically, trebling damages to $1,500 per violation when courts find conduct like continued calling after opt-out requests or ignoring prior warnings. Evidence of willfulness includes lacking consent-tracking systems or failing to scrub against the Do Not Call list, which courts view as reckless disregard rather than mere mistake. While genuine compliance programs may prevent trebling, the $500 base liability remains intact, creating a floor that scales quickly with volume. A campaign of just 1,000 improperly dialed numbers could therefore expose a business to $500,000 in base damages—or $1.5 million if willfulness is proven.
Critically, not all TCPA violations carry the same damage floor. Section 227(b)(3) violations—which cover autodialed calls and texts—mandate a minimum $500 per violation. However, Section 227(c)(5) violations, which pertain to the Do Not Call registry, treat $500 as a ceiling, allowing courts to award as little as $1 per violation or even $0 in some cases. This distinction significantly impacts risk assessment, especially for businesses relying on manual outreach where autodialer claims may be harder to prove. Understanding these nuances is essential for service businesses using automated outreach tools, as the same call could trigger vastly different liability depending on how it’s classified under the TCPA’s sections. Proper segmentation, consent tracking, and immediate opt-out honoring remain the most effective defenses against accumulating per-violation exposure.
- Base statutory damages: $500 per violation under TCPA Section 227(b)(3)
- Willful violations: Trebled to $1,500 per violation
- Section 227(c)(5) Do Not Call violations: $500 is a ceiling, not a floor
How Class Actions and Regulatory Penalties Multiply TCPA Risk
TCPA violations carry uncapped financial exposure because damages are assessed per call or text, with no statutory ceiling on total liability. This structure creates extreme risk in class actions, where even modest per-violation amounts scale rapidly across large plaintiff classes. For example, a Georgia trial court once awarded $459 million in TCPA damages, illustrating how quickly exposure accumulates in litigation involving hundreds of thousands of communications. Theoretical models show a single text blast to 500,000 non-consenting recipients could trigger $750 million in trebled damages at the willful rate of $1,500 per violation.
Beyond private litigation, regulatory penalties layer additional costs onto each violation. The FCC can impose forfeitures of up to $23,727 per violation, while the FTC may assess civil penalties of $53,088 per violation under the Telemarketing Sales Rule. These government fines operate independently of—and in addition to—any damages awarded in civil suits, meaning a single unlawful call or text could theoretically generate over $76,000 in combined penalties before private damages are even considered. This multi-pathway liability significantly amplifies the financial stakes for businesses engaged in telemarketing or text-based outreach.
- Base statutory damages for private litigants start at $500 per violation, trebling to $1,500 for willful and knowing conduct
- FCC forfeiture penalties reach up to $23,727 per violation after inflation adjustments
- FTC TSR civil penalties amount to $53,088 per violation as of 2025
For businesses like CallMyCustomers that manage customer reactivation campaigns, this multiplicative risk underscores why compliance isn’t optional—it’s foundational. Honoring opt-out requests within the 10-business-day window mandated by the FCC’s new rule, maintaining verified consent records, and screening numbers against the FCC’s Reassigned Numbers Database aren’t just best practices; they’re essential controls against exposure that can escalate from thousands to millions—or even hundreds of millions—of dollars in liability. The uncapped nature of TCPA damages means there is no predictable upper limit to what a single compliance failure might cost.
Recent Regulatory Changes Increasing Compliance Burden (Effective 2025-2026)
The compliance landscape shifted again in April 2025, and businesses running reactivation campaigns face a tighter window and broader obligations. The FCC's new Opt-Out Rule now requires companies to honor revocation requests within 10 business days — down from 30 — and a single consumer opt-out must apply across every channel and platform you use. BCLP notes the burden falls on the business to prove an opt-out request was unreasonable, while Carlton Fields warns that non-compliance invites hefty fines and legal challenges.
Reassigned numbers compound the risk. Roughly 35 million U.S. phone numbers are disconnected and made available for reassignment each year, and consent attaches to the person — not the number. Plura AI explains that prior consent does not transfer when a number changes hands, creating accidental TCPA exposure for any outreach that skips the FCC's Reassigned Numbers Database. For reactivation campaigns pulling from older lists, this gap is a direct line to statutory damages.
- Honor every opt-out within 10 business days across calls, texts, and email
- Apply a single revocation to all future communications on all platforms
- Send only one clarification message within five minutes of the request
- Scrub contact lists against the Reassigned Numbers Database before every campaign
- Document consent and opt-out records for at least four years
CallMyCustomers builds these controls into every reactivation campaign — lists are reviewed and segmented before outreach, opt-outs are processed in real time, and reassigned-number checks are standard. The owner approves every script and offer before a single message goes out, so compliance isn't an afterthought.
Practical Compliance Steps for Service Businesses Running Reactivation Campaigns
The difference between a $500 mistake and a $1,500 one often comes down to what you did after someone said stop. Courts tie the trebled damage tier to conduct like continued calling after an opt-out request, according to legal analysis of TCPA penalties — which means your compliance systems matter as much as your consent.
Process opt-outs in real time, not on a schedule. The FCC's new Opt-Out Rule, effective April 11, 2025, requires businesses to honor revocation requests within 10 business days, and a single opt-out must now apply across all channels and platforms, per BCLP's analysis of the new rules. Waiting a month to scrub a list is no longer defensible. This is why CallMyCustomers honors opt-outs immediately — a "STOP" reply ends outreach on the spot, not at the end of the campaign.
Keep consent records for at least four years. The TCPA's statute of limitations is four years, and courts have declined to treble damages where businesses could show genuine compliance programs and consent-tracking systems, even if a good-faith mistake occurred. For a service business running reactivation outreach, that means documenting where each customer's number came from — a booked job, a signed quote, a membership form — before the first call goes out.
Screen for reassigned numbers before every campaign. Approximately 35 million numbers are disconnected and made available for reassignment annually in the U.S., and consent attaches to the person, not the phone. That old customer list may contain numbers now belonging to strangers — and calling them counts as a violation. Checking the FCC's Reassigned Numbers Database turns an unknowing $500-per-call exposure into a managed risk.
Beyond tooling, your internal protocols need to cover the full picture:
- Route every opt-out — text, email, or verbal on a call — into one suppression list applied across all campaigns.
- Have whoever runs outreach approve every script and offer before sending, so nothing goes out unreviewed.
- Allow one clarification message within five minutes of an opt-out request, as the new rules permit — then stop completely.
- Log the date, time, and channel of every consent and every revocation.
The burden of proof sits with you: under the new rules, it is the business's burden to demonstrate why an opt-out request was not reasonable. Build the paper trail before you need it, and reactivation becomes the second revenue engine it should be — not a courtroom exhibit.
Ready to turn past customers into booked work without the compliance headaches? Get a free list review from CallMyCustomers — you'll see what your list can produce, approve every message, and keep full control while we run the outreach.
Frequently Asked Questions
What is the base statutory damage for a single TCPA violation involving an autodialed call or text?
How much can damages increase if a TCPA violation is found to be willful?
Do all TCPA violations carry a $500 minimum damage amount?
What additional penalties can businesses face beyond private TCPA damages?
How quickly must businesses honor opt-out requests under the FCC's new rule effective 2025?
Why is checking the Reassigned Numbers Database important for TCPA compliance?
Turning Compliance Into Your Competitive Advantage
TCPA violations aren't just legal risks—they're financial landmines that can scale from $500 per call to hundreds of millions in class actions, especially when willfulness triggers trebled damages or regulatory penalties layer on top. The real danger lies in the uncapped liability per communication, where a single oversight—like calling a reassigned number or delaying an opt-out—can expose your business to devastating costs. But here's the opportunity: businesses that treat compliance as a core operational discipline, not an afterthought, transform risk into resilience. By honoring opt-outs in real time, scrubbing for reassigned numbers, and maintaining four-year consent records, you protect not only your bottom line but also the trust that fuels repeat revenue. For service businesses relying on reactivation campaigns, this level of rigor turns past customers into booked work without the compliance headaches. Ready to see what your list can produce while staying fully protected? Get a free list review from CallMyCustomers—you’ll approve every message, keep full control, and let us run the outreach the right way.