Regulatory Watch

New laws, rules, guidance, enforcement actions and court decisions in privacy, AI and cybersecurity. Every item links to its primary source.

9Last 24 hours
34Last 7 days
21High or critical

Showing 14 of 214 developments

Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

ENISA releases 2026 Threat Landscape report highlighting AI-enabled cyber threats and supply‑chain risks

published EU

The report informs EU stakeholders of evolving cyber threats, emphasizing the need for heightened vigilance and resilience across digital services.

AI governance Cybersecurity NIS2
Moderate 52 · Sep 22, 2026 · ENISA news
Read the full brief →
Proposed Regulation ADTP BRIEF 📋

ADTP REGULATORY BRIEF

EU Commission proposes KIDS Act to impose age‑based restrictions and safety‑by‑design for children online

proposed EU

The KIDS Act aims to create EU‑wide, age‑based safeguards and design obligations to protect children’s privacy and safety online.

AI governance Children DSA
Moderate 55 · Sep 21, 2026 · Covington Inside Privacy
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

CNIL outlines its status, organization and sanction powers

published EU-FR

The notice details CNIL’s enforcement authority and the maximum GDPR fines, important for data protection compliance.

Cybersecurity Privacy
Moderate 48 · Sep 17, 2026 · CNIL (France)
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

NY Attorney General urges workers to file whistleblower complaints on unsafe AI development

announced US-NY

The guidance signals heightened enforcement focus on AI safety and data security in New York, prompting insider reporting.

AI governance Cybersecurity SHIELD Act
Moderate 57 · Sep 17, 2026 · New York Attorney General press releases
Read the full brief →
Framework Update ADTP BRIEF 🧩

ADTP REGULATORY BRIEF

EU AI Board discusses AI Act implementation and publishes Action Plan on cybersecurity and AI

published EU

The meeting signals EU progress on AI governance, linking AI Act enforcement with a new cybersecurity‑AI action plan.

AI governance Cybersecurity EU AI Act
Moderate 50 · Sep 17, 2026 · European Commission digital strategy news
Read the full brief →
Settlement ADTP BRIEF 🤝

ADTP REGULATORY BRIEF

Settlement codifies Meta's surveillance practices into law as states move to curb ALPR use

settled US

The piece highlights emerging legal and policy actions that affect privacy and surveillance technologies in the United States.

Cybersecurity Enforcement
Moderate 41 · Sep 16, 2026 · EFF updates
Read the full brief →
Proposed Bill ADTP BRIEF 📝

ADTP REGULATORY BRIEF

California legislature passes three AI employment bills pending Governor's signature

passed US-CA

These bills aim to curb AI-driven employment decisions and surveillance, enhancing employee protections and transparency.

AI governance Biometric
Moderate 45 · Sep 15, 2026 · Covington Inside Privacy
Read the full brief →
Investigation ADTP BRIEF 🔍

ADTP REGULATORY BRIEF

Police misuse ALPR data with frivolous reasons, EFF finds

announced US

The report reveals pervasive, undocumented ALPR searches that threaten privacy and civil liberties.

Cybersecurity Enforcement
Moderate 42 · Sep 14, 2026 · EFF updates
Read the full brief →
Final Regulation ADTP BRIEF 📜

ADTP REGULATORY BRIEF

EU Cyber Resilience Act reporting obligations take effect for manufacturers

in effect EU

The EU Cyber Resilience Act now imposes mandatory incident reporting duties on manufacturers, raising compliance requirements for product security.

Cybersecurity Privacy CRA
Moderate 49 · Sep 11, 2026 · Hunton Privacy & Cybersecurity Law Blog
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

ENISA launches Single Reporting Platform for Cyber Resilience Act reporting

announced EU

The SRP provides a single, EU‑wide tool for manufacturers to meet CRA reporting duties, enhancing coordinated cybersecurity risk management.

Cybersecurity Rules and guidance CRA
Moderate 50 · Sep 11, 2026 · ENISA news
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

CNIL guidance on data‑protection obligations under the electronic invoicing reform effective 1 Sept 2026

in effect EU-FR

Practitioners must align invoicing processes with GDPR, ISO‑27001, and eIDAS‑level authentication to avoid breaches and ensure lawful handling of personal data.

Cybersecurity Data governance
Moderate 48 · Sep 10, 2026 · CNIL (France)
Read the full brief →
Proposed Regulation ADTP BRIEF 📋

ADTP REGULATORY BRIEF

CNIL to examine draft deliberation on finance bill 2027 provisions for online platform content collection for tax purposes

proposed EU-FR

The CNIL's review could shape how personal data from online platforms is collected for fiscal purposes, impacting privacy and surveillance practices.

Cybersecurity Financial
Moderate 46 · Sep 10, 2026 · CNIL (France)
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

CNIL releases Volume 2 of “L’Agence Privacy” to educate adolescents on cybercrime and data privacy

published EU-FR

The publication provides a new pedagogical tool to improve privacy awareness among minors.

AI governance Children
Moderate 48 · Sep 10, 2026 · CNIL (France)
Read the full brief →
Enforcement Action ADTP BRIEF ⚖️

ADTP REGULATORY BRIEF

AEPD opens investigation into Ministry of Interior report listing journalists and political leanings

announced EU-ES

The investigation could impact how government bodies handle journalists' personal and political data under GDPR.

Cybersecurity Data governance
Moderate 44 · Sep 9, 2026 · AEPD (Spain) press releases
Read the full brief →
← Previous Page 3 of 4 Next →

Source: LiveThreat Regulatory Intelligence, analysed by ADTP. Briefs summarize the linked source and are not legal advice; the linked source is the authority. Dates appear only when the source states them.