Regulatory Watch
New laws, rules, guidance, enforcement actions and court decisions in privacy, AI and cybersecurity. Every item links to its primary source.
Showing 14 of 214 developments
ADTP REGULATORY BRIEF
CNIL guidance on data‑protection obligations under the electronic invoicing reform effective 1 Sept 2026
Practitioners must align invoicing processes with GDPR, ISO‑27001, and eIDAS‑level authentication to avoid breaches and ensure lawful handling of personal data.
ADTP REGULATORY BRIEF
CNIL to examine draft deliberation on finance bill 2027 provisions for online platform content collection for tax purposes
The CNIL's review could shape how personal data from online platforms is collected for fiscal purposes, impacting privacy and surveillance practices.
ADTP REGULATORY BRIEF
CNIL releases Volume 2 of “L’Agence Privacy” to educate adolescents on cybercrime and data privacy
The publication provides a new pedagogical tool to improve privacy awareness among minors.
ADTP REGULATORY BRIEF
EFF blog outlines digital sovereignty and its impact on privacy, data control and security
Understanding digital sovereignty is crucial for shaping privacy‑friendly policies and reducing dependence on dominant tech platforms.
ADTP REGULATORY BRIEF
EFF Announces 2026 Award Winners: Access Now, 7amleh, DeFlock, New Media Rights
The award highlights key groups advancing privacy, digital rights, and surveillance accountability worldwide.
ADTP REGULATORY BRIEF
AEPD opens investigation into Ministry of Interior report listing journalists and political leanings
The investigation could impact how government bodies handle journalists' personal and political data under GDPR.
ADTP REGULATORY BRIEF
Data Protection Commission issues €645,000 fine and compliance orders against HSE
The enforcement action underscores GDPR accountability for health data custodians in Ireland.
ADTP REGULATORY BRIEF
AEPD to host data‑protection session at XX Jornadas STIC on 24 Nov 2026
The AEPD’s participation highlights the growing relevance of privacy and data‑protection in AI‑driven cybersecurity discussions.
ADTP REGULATORY BRIEF
EFF and The Trevor Project advise LGBTQ+ individuals to revise shared information for online safety
The guidance helps LGBTQ+ individuals reduce exposure to doxxing and outing risks by improving personal data control and security practices.
ADTP REGULATORY BRIEF
French Constitutional Council strikes down law banning social media for under‑15s
The ruling blocks a privacy‑invasive age‑verification regime and sets a precedent for similar restrictions in Europe.
ADTP REGULATORY BRIEF
PDPC publishes Advisory Guidelines on Personal Data in Generative AI at Singapore Data Festival
The new PDPC guidance updates consent and notification requirements for AI, shaping how organizations handle personal and biometric data in Singapore.
ADTP REGULATORY BRIEF
EFF and civil groups urge Nottinghamshire Police to halt live facial recognition rollout
The call highlights privacy and civil‑rights risks of deploying live facial recognition in public spaces, especially for minors.
ADTP REGULATORY BRIEF
US federal age‑verification proposals KIDS Act and KOSA face privacy criticism over ZKP use
Proposed age‑verification laws in the US and EU are criticized for privacy and security risks associated with ZKP‑based systems.
ADTP REGULATORY BRIEF
ENISA releases NIS360 report showing improved cybersecurity maturity of EU critical sectors
The report tracks implementation of the NIS2 Directive and helps policymakers prioritize resources to boost cyber resilience across the EU.
Source: LiveThreat Regulatory Intelligence, analysed by ADTP. Briefs summarize the linked source and are not legal advice; the linked source is the authority. Dates appear only when the source states them.