Regulatory Watch
New laws, rules, guidance, enforcement actions and court decisions in privacy, AI and cybersecurity. Every item links to its primary source.
Showing 9 of 220 developments
ADTP REGULATORY BRIEF
NY Attorney General urges workers to file whistleblower complaints on unsafe AI development
The guidance signals heightened enforcement focus on AI safety and data security in New York, prompting insider reporting.
ADTP REGULATORY BRIEF
EPIC report: Data brokers sell personal data to Disney, GM, insurers and banks
The piece underscores the privacy risks of an underregulated data‑broker market that trades personal data without meaningful consent.
ADTP REGULATORY BRIEF
EPIC report finds companies hinder personal data access under state privacy laws
The report highlights enforcement challenges in state privacy regimes as companies resist data‑access requests.
ADTP REGULATORY BRIEF
EFF appoints former White House official Alexander Macgillivray to Board of Directors
Macgillivray's AI policy background may shape EFF's future work on AI governance and privacy rights.
ADTP REGULATORY BRIEF
Kenya publishes new guidance on cross‑border data transfers
The guidance signals stricter requirements for international data flows from Kenya, affecting multinational organisations’ transfer mechanisms and compliance programs.
ADTP REGULATORY BRIEF
EPIC senior counsel warns of privacy risks in unproven health technologies
Highlights privacy concerns in emerging health tech, urging companies to address trust and data protection.
ADTP REGULATORY BRIEF
Amazon Ring's 'Throw Away the Key Encryption' adds limited privacy but falls short of true end‑to‑end encryption
TAKE improves key handling but does not provide the full privacy protections of end‑to‑end encryption, leaving users vulnerable to law‑enforcement access.
ADTP REGULATORY BRIEF
EU Cyber Resilience Act reporting obligations take effect for manufacturers
The EU Cyber Resilience Act now imposes mandatory incident reporting duties on manufacturers, raising compliance requirements for product security.
ADTP REGULATORY BRIEF
ENISA launches Single Reporting Platform for Cyber Resilience Act reporting
The SRP provides a single, EU‑wide tool for manufacturers to meet CRA reporting duties, enhancing coordinated cybersecurity risk management.
Source: LiveThreat Regulatory Intelligence, analysed by ADTP. Briefs summarize the linked source and are not legal advice; the linked source is the authority. Dates appear only when the source states them.