Regulatory Watch

New laws, rules, guidance, enforcement actions and court decisions in privacy, AI and cybersecurity. Every item links to its primary source.

9Last 24 hours
31Last 7 days
21High or critical

Showing 13 of 214 developments

Proposed Bill ADTP BRIEF 📝

ADTP REGULATORY BRIEF

California Legislature passes SB 690 to limit pen register lawsuits under CIPA

passed US-CA

The bill removes private rights of action for website pen register claims, potentially affecting many pending lawsuits.

Legislation Privacy
Moderate 45 · Sep 14, 2026 · Covington Inside Privacy
Read the full brief →
Investigation ADTP BRIEF 🔍

ADTP REGULATORY BRIEF

Police misuse ALPR data with frivolous reasons, EFF finds

announced US

The report reveals pervasive, undocumented ALPR searches that threaten privacy and civil liberties.

Cybersecurity Enforcement
Moderate 42 · Sep 14, 2026 · EFF updates
Read the full brief →
Final Regulation ADTP BRIEF 📜

ADTP REGULATORY BRIEF

EU Cyber Resilience Act reporting obligations take effect for manufacturers

in effect EU

The EU Cyber Resilience Act now imposes mandatory incident reporting duties on manufacturers, raising compliance requirements for product security.

Cybersecurity Privacy CRA
Moderate 49 · Sep 11, 2026 · Hunton Privacy & Cybersecurity Law Blog
Read the full brief →
New Law ADTP BRIEF 🏛️

ADTP REGULATORY BRIEF

California AB 1709, a ban on social media for under‑16, signed into law

signed US-CA

The law restricts minors' access to social media and raises privacy and free‑speech concerns.

Children Data governance
Moderate 41 · Sep 10, 2026 · EFF updates
Read the full brief →
Fine ADTP BRIEF 💰

ADTP REGULATORY BRIEF

Dutch DPA fines Uber €824,990,000 for automated decisions affecting drivers

announced EU-NL

The fine underscores strict GDPR enforcement of automated decision‑making provisions.

AI governance Enforcement GDPR
Moderate 56 · Sep 10, 2026 · Hunton Privacy & Cybersecurity Law Blog
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

CNIL guidance on data‑protection obligations under the electronic invoicing reform effective 1 Sept 2026

in effect EU-FR

Practitioners must align invoicing processes with GDPR, ISO‑27001, and eIDAS‑level authentication to avoid breaches and ensure lawful handling of personal data.

Cybersecurity Data governance
Moderate 48 · Sep 10, 2026 · CNIL (France)
Read the full brief →
Proposed Regulation ADTP BRIEF 📋

ADTP REGULATORY BRIEF

CNIL to examine draft deliberation on finance bill 2027 provisions for online platform content collection for tax purposes

proposed EU-FR

The CNIL's review could shape how personal data from online platforms is collected for fiscal purposes, impacting privacy and surveillance practices.

Cybersecurity Financial
Moderate 46 · Sep 10, 2026 · CNIL (France)
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

CNIL releases Volume 2 of “L’Agence Privacy” to educate adolescents on cybercrime and data privacy

published EU-FR

The publication provides a new pedagogical tool to improve privacy awareness among minors.

AI governance Children
Moderate 48 · Sep 10, 2026 · CNIL (France)
Read the full brief →
Proposed Regulation ADTP BRIEF 📋

ADTP REGULATORY BRIEF

EU Commission proposes Article 88b for automated privacy signals in Digital Omnibus

proposed EU

The proposal could simplify consent by introducing automated privacy signals, reducing reliance on cookie banners across the EU.

Privacy Rules and guidance
Moderate 42 · Sep 10, 2026 · noyb
Read the full brief →
Enforcement Action ADTP BRIEF ⚖️

ADTP REGULATORY BRIEF

AEPD opens investigation into Ministry of Interior report listing journalists and political leanings

announced EU-ES

The investigation could impact how government bodies handle journalists' personal and political data under GDPR.

Cybersecurity Data governance
Moderate 44 · Sep 9, 2026 · AEPD (Spain) press releases
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

FTC rescinds 2021 Policy Statement on Breaches by Health Apps and Connected Devices

repealed US

The FTC's withdrawal of this guidance removes a previously stated compliance expectation for health app and IoT device developers.

Cybersecurity Health
Moderate 56 · Sep 9, 2026 · Federal Trade Commission press releases
Read the full brief →
Lawsuit Filed ADTP BRIEF 📂

ADTP REGULATORY BRIEF

EFF files FOIA lawsuit against CMS over AI-driven Medicare WISeR program

filed US

The case raises critical AI‑governance and health‑care transparency issues for Medicare beneficiaries.

AI governance Health
Moderate 42 · Sep 8, 2026 · EFF updates
Read the full brief →
Enforcement Action ADTP BRIEF ⚖️

ADTP REGULATORY BRIEF

Irish DPC welcomes court conviction of Brown Thomas for ePrivacy breaches

decided EU-IE

The enforcement action underscores the consequences of non‑compliance with ePrivacy rules for electronic marketing in Ireland.

Data governance Enforcement ePrivacy Directive
Moderate 49 · Sep 7, 2026 · Data Protection Commission (Ireland)
Read the full brief →
← Previous Page 6 of 9 Next →

Source: LiveThreat Regulatory Intelligence, analysed by ADTP. Briefs summarize the linked source and are not legal advice; the linked source is the authority. Dates appear only when the source states them.