Regulatory Watch

New laws, rules, guidance, enforcement actions and court decisions in privacy, AI and cybersecurity. Every item links to its primary source.

14Last 24 hours
36Last 7 days
21High or critical

Showing 10 of 214 developments

Fine ADTP BRIEF 💰

ADTP REGULATORY BRIEF

Italian DPA fines security firm €39,000 for employee data violations

in effect EU-IT

The enforcement highlights the GDPR’s strict requirements for employee data access and transparent processing of location data.

Data governance Employee GDPR
Moderate 59 · Oct 9, 2026 · European Data Protection Board news
Read the full brief →
Dpa Action ADTP BRIEF ⚖️

ADTP REGULATORY BRIEF

Italian DPA fines IQVIA €7 million for unlawful processing of patients’ health data

decided EU-IT

The fine highlights enforcement of GDPR obligations for health data controllers and underscores the need for proper legal bases, transparency, and impact assessments.

Cybersecurity Data governance GDPR
High 72 · Oct 9, 2026 · European Data Protection Board news
Read the full brief →
Fine ADTP BRIEF 💰

ADTP REGULATORY BRIEF

Italian DPA fines Emirates €180,000 for health data infringements

decided EU-IT

The enforcement highlights GDPR obligations for clear information and proportionate retention of health data in the aviation sector.

Data governance Enforcement GDPR
High 66 · Oct 9, 2026 · European Data Protection Board news
Read the full brief →
Fine ADTP BRIEF 💰

ADTP REGULATORY BRIEF

Italian DPA fines BBVA €5.508 million for ignoring customer objection to direct marketing

in effect EU-IT

The fine underscores the obligation of controllers to promptly respect data subject objections and implement effective technical measures.

Data governance Enforcement GDPR
High 63 · Oct 9, 2026 · European Data Protection Board news
Read the full brief →
Proposed Regulation ADTP BRIEF 📋

ADTP REGULATORY BRIEF

CNIL examines draft deliberation authorizing BIG DATA SANTE to process personal data for anonymized medical research (ONCOVAL)

proposed EU-FR

If approved, the authorization would enable a French company to process health‑related personal data for research, shaping data‑privacy practices in the health sector.

AI governance Data governance
Moderate 53 · Oct 8, 2026 · CNIL (France)
Read the full brief →
Enforcement Action ADTP BRIEF ⚖️

ADTP REGULATORY BRIEF

CNIL closes injunction against FRANCE TRAVAIL after compliance with data security measures

decided EU-FR

The closure shows that timely remediation of GDPR security deficiencies can halt additional penalties.

Cybersecurity Data governance
Moderate 42 · Oct 8, 2026 · CNIL (France)
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

AEPD publishes second issue of scientific journal “Privacy, Innovation and Technology”

published EU-ES

The publication provides expert analysis of GDPR challenges and AI governance, helping practitioners anticipate regulatory impacts of emerging technologies.

AI governance Children
Moderate 53 · Oct 8, 2026 · AEPD (Spain) press releases
Read the full brief →
Enforcement Action ADTP BRIEF ⚖️

ADTP REGULATORY BRIEF

AEPD issues warnings to two Spanish municipalities over AI‑enabled video surveillance projects

published EU-ES

The action highlights the need for data‑protection‑by‑design and proportionality when deploying AI‑driven video surveillance in the public sector.

AI governance Biometric
High 66 · Oct 6, 2026 · AEPD (Spain) press releases
Read the full brief →
Framework Update ADTP BRIEF 🧩

ADTP REGULATORY BRIEF

Future of Privacy Forum urges standardized privacy benchmarks for frontier AI systems

announced WORLD

Standardized privacy benchmarks would give concrete, comparable metrics for AI developers and deployers, supporting better privacy protection and regulatory oversight.

AI governance Cybersecurity
Low 39 · Oct 5, 2026 · Future of Privacy Forum
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

CNIL explains when data‑breach victims can claim compensation under the GDPR

published EU-FR

Understanding the CNIL’s guidance helps data‑controllers and processors assess liability and prepare for potential court‑ordered damages.

Cybersecurity Data governance
Moderate 44 · Oct 2, 2026 · CNIL (France)
Read the full brief →
Page 1 of 2 Next →

Source: LiveThreat Regulatory Intelligence, analysed by ADTP. Briefs summarize the linked source and are not legal advice; the linked source is the authority. Dates appear only when the source states them.