Regulatory Watch
New laws, rules, guidance, enforcement actions and court decisions in privacy, AI and cybersecurity. Every item links to its primary source.
Showing 24 of 214 developments
ADTP REGULATORY BRIEF
HHS modifies ORR Unaccompanied Children system of records, effective Oct 28, 2026
The update alters how child protection data is shared, impacting privacy and information handling for vulnerable minors.
ADTP REGULATORY BRIEF
DoD updates SORN for DON Child and Youth Program to align with cybersecurity policies
The notice updates how children's health and personal data are handled, adding cybersecurity safeguards and expanded uses.
ADTP REGULATORY BRIEF
Peace Corps announces new CRM system of records (PC 38) effective Oct 26, 2026
The notice establishes a new Privacy Act system of records for handling personal data of Peace Corps applicants and volunteers.
ADTP REGULATORY BRIEF
CMS re-establishes matching program with Treasury's Do Not Pay Working System under Privacy Act
The program expands data sharing for fraud prevention, raising privacy and security considerations for covered entities.
ADTP REGULATORY BRIEF
DraftKings uses AI to target losing gamblers with online behavioral advertising
The article highlights how AI‑powered ad targeting by DraftKings amplifies harms to problem gamblers, underscoring privacy and consumer‑protection concerns.
ADTP REGULATORY BRIEF
Senate Judiciary Subcommittee holds hearing on Flock Safety AI surveillance network
The hearing spotlights growing privacy and security risks of AI‑driven license‑plate and facial‑recognition surveillance used by police.
ADTP REGULATORY BRIEF
State bills propose exemption for biometric data converted to irreversible mathematical representations
The trend could reshape biometric privacy safeguards by carving out a carve‑out for transformed biometric data.
ADTP REGULATORY BRIEF
FTC seeks public comment on updating impersonation rule for platforms
The proposed rule change could impose new obligations on online platforms to curb impersonation scams, impacting privacy and security practices.
ADTP REGULATORY BRIEF
CNIL examines draft decree creating SI-Mandoline personal data system for protection of adults
The agenda signals upcoming regulatory actions affecting personal data processing for adult legal protection and related professional obligations in France.
ADTP REGULATORY BRIEF
CNIL closes injunction against SOLOCAL MARKETING SERVICES
The decision underscores CNIL's enforcement of GDPR consent requirements for commercial prospecting and the accountability of controllers for partner‑collected data.
ADTP REGULATORY BRIEF
NY AG secures $2.3M settlement and reforms from Labcorp after data breach
The settlement forces Labcorp to adopt stronger data‑security and vendor‑risk controls, aiming to protect millions of consumers’ sensitive health information.
ADTP REGULATORY BRIEF
NY Attorney General urges Congress to enact AI safety legislation
The call highlights growing AI safety risks and pushes for federal regulation to protect public safety and national security.
ADTP REGULATORY BRIEF
SBA seeks comments on modified matching program under Privacy Act
SBA is updating its data‑matching program and inviting feedback, which may affect how personal data are shared between agencies.
ADTP REGULATORY BRIEF
Paramount urges SCOTUS to reject video privacy claim
The Supreme Court case could shape how video service providers handle consumer viewing data and contextual advertising.
ADTP REGULATORY BRIEF
Paramount asks SCOTUS to reject video privacy lawsuit
The case could shape how video service providers handle user viewing data and tracking technologies under U.S. privacy law.
ADTP REGULATORY BRIEF
EPIC asks U.S. District Judge to declare DHS actions unlawful
The filing highlights a privacy challenge to DHS practices that may affect civil liberties.
ADTP REGULATORY BRIEF
Supreme Court hears digital‑privacy case involving Paramount and targeted advertising
The outcome may define whether online video platforms must use privacy‑preserving methods instead of targeted advertising.
ADTP REGULATORY BRIEF
Spanish Data Protection Agency issues warning to company over AI-driven resume screening
The AEPD’s warning highlights GDPR compliance requirements for AI use in recruitment, emphasizing transparency, human control, and risk assessment.
ADTP REGULATORY BRIEF
EPIC files amicus brief urging Third Circuit to uphold Pennsylvania’s Internet Sharing Ban on voter data
The filing highlights the importance of state voter‑data privacy protections in the context of ongoing appellate litigation.
ADTP REGULATORY BRIEF
California SB 1119 signed into law regulating AI chatbots for minors
California’s new chatbot law sets mandatory safeguards for AI interactions with children, marking a key regulatory step in AI governance.
ADTP REGULATORY BRIEF
European Commission proposes EU KIDS Act to strengthen online child protections
The proposal could reshape how online platforms handle children's personal data across the EU.
ADTP REGULATORY BRIEF
Irish Data Protection Commission fines Google €403 million for GDPR violations over location data
The fine underscores strict enforcement of GDPR obligations for large tech firms handling location data.
ADTP REGULATORY BRIEF
EDPB adopts guidelines on GDPR fines and DSA interaction (17 Sep 2026)
The new EDPB guidance clarifies how authorities should levy fines and align DSA obligations with GDPR rules, impacting controllers, processors and digital platforms across the EU.
ADTP REGULATORY BRIEF
EU Commission hosts fifth roundtable on Digital Services Act implementation
The event signals ongoing EU regulator engagement with stakeholders to shape DSA enforcement and address AI and child‑safety risks online.
Source: LiveThreat Regulatory Intelligence, analysed by ADTP. Briefs summarize the linked source and are not legal advice; the linked source is the authority. Dates appear only when the source states them.