Regulatory Watch
New laws, rules, guidance, enforcement actions and court decisions in privacy, AI and cybersecurity. Every item links to its primary source.
Showing 24 of 214 developments
ADTP REGULATORY BRIEF
ENISA releases 2026 Threat Landscape report highlighting AI-enabled cyber threats and supply‑chain risks
The report informs EU stakeholders of evolving cyber threats, emphasizing the need for heightened vigilance and resilience across digital services.
ADTP REGULATORY BRIEF
D.C. Circuit urged to vacate FAA drone restriction that criminalized recording immigration agents
The outcome could restore First Amendment protections for journalists using drones to document government actions.
ADTP REGULATORY BRIEF
EU Commission proposes KIDS Act to impose age‑based restrictions and safety‑by‑design for children online
The KIDS Act aims to create EU‑wide, age‑based safeguards and design obligations to protect children’s privacy and safety online.
ADTP REGULATORY BRIEF
California Gov. Newsom issues executive order on AI governance and safety
The order signals California’s intent to address immediate AI harms through reporting, oversight, and careful cybersecurity regulation.
ADTP REGULATORY BRIEF
How to limit Siri AI access in iOS 27
The article explains how iOS 27’s Siri AI expands data access and provides step‑by‑step controls for users to protect their privacy.
ADTP REGULATORY BRIEF
EFF warns that cloud TEEs undermine end‑to‑end encryption in messaging apps
The article highlights a privacy risk where AI features offload encrypted messages to cloud TEEs, weakening end‑to‑end encryption protections.
ADTP REGULATORY BRIEF
EFF urges lawmakers to base AI cybersecurity rules on established best practices
Linking AI cybersecurity law to established best practices could reduce lab breaches without stifling innovation.
ADTP REGULATORY BRIEF
CNIL outlines its status, organization and sanction powers
The notice details CNIL’s enforcement authority and the maximum GDPR fines, important for data protection compliance.
ADTP REGULATORY BRIEF
NY Attorney General urges workers to file whistleblower complaints on unsafe AI development
The guidance signals heightened enforcement focus on AI safety and data security in New York, prompting insider reporting.
ADTP REGULATORY BRIEF
EU AI Board discusses AI Act implementation and publishes Action Plan on cybersecurity and AI
The meeting signals EU progress on AI governance, linking AI Act enforcement with a new cybersecurity‑AI action plan.
ADTP REGULATORY BRIEF
Settlement codifies Meta's surveillance practices into law as states move to curb ALPR use
The piece highlights emerging legal and policy actions that affect privacy and surveillance technologies in the United States.
ADTP REGULATORY BRIEF
California legislature passes three AI employment bills pending Governor's signature
These bills aim to curb AI-driven employment decisions and surveillance, enhancing employee protections and transparency.
ADTP REGULATORY BRIEF
Police misuse ALPR data with frivolous reasons, EFF finds
The report reveals pervasive, undocumented ALPR searches that threaten privacy and civil liberties.
ADTP REGULATORY BRIEF
California Governor signs AB 2071 and AB 2298 to add digital literacy and cybersecurity to school curricula
The new laws mandate digital literacy and cybersecurity instruction for students, addressing online safety and privacy.
ADTP REGULATORY BRIEF
Amazon Ring's 'Throw Away the Key Encryption' adds limited privacy but falls short of true end‑to‑end encryption
TAKE improves key handling but does not provide the full privacy protections of end‑to‑end encryption, leaving users vulnerable to law‑enforcement access.
ADTP REGULATORY BRIEF
Cameras capture alleged vandal in Morristown SafetyStick pilot
The incident highlights privacy concerns around pilot surveillance deployments and the need for community oversight.
ADTP REGULATORY BRIEF
EU Cyber Resilience Act reporting obligations take effect for manufacturers
The EU Cyber Resilience Act now imposes mandatory incident reporting duties on manufacturers, raising compliance requirements for product security.
ADTP REGULATORY BRIEF
ENISA launches Single Reporting Platform for Cyber Resilience Act reporting
The SRP provides a single, EU‑wide tool for manufacturers to meet CRA reporting duties, enhancing coordinated cybersecurity risk management.
ADTP REGULATORY BRIEF
CNIL guidance on data‑protection obligations under the electronic invoicing reform effective 1 Sept 2026
Practitioners must align invoicing processes with GDPR, ISO‑27001, and eIDAS‑level authentication to avoid breaches and ensure lawful handling of personal data.
ADTP REGULATORY BRIEF
CNIL to examine draft deliberation on finance bill 2027 provisions for online platform content collection for tax purposes
The CNIL's review could shape how personal data from online platforms is collected for fiscal purposes, impacting privacy and surveillance practices.
ADTP REGULATORY BRIEF
CNIL releases Volume 2 of “L’Agence Privacy” to educate adolescents on cybercrime and data privacy
The publication provides a new pedagogical tool to improve privacy awareness among minors.
ADTP REGULATORY BRIEF
EFF blog outlines digital sovereignty and its impact on privacy, data control and security
Understanding digital sovereignty is crucial for shaping privacy‑friendly policies and reducing dependence on dominant tech platforms.
ADTP REGULATORY BRIEF
EFF Announces 2026 Award Winners: Access Now, 7amleh, DeFlock, New Media Rights
The award highlights key groups advancing privacy, digital rights, and surveillance accountability worldwide.
ADTP REGULATORY BRIEF
AEPD opens investigation into Ministry of Interior report listing journalists and political leanings
The investigation could impact how government bodies handle journalists' personal and political data under GDPR.
Source: LiveThreat Regulatory Intelligence, analysed by ADTP. Briefs summarize the linked source and are not legal advice; the linked source is the authority. Dates appear only when the source states them.