Regulatory Watch
New laws, rules, guidance, enforcement actions and court decisions in privacy, AI and cybersecurity. Every item links to its primary source.
Showing 11 of 220 developments
ADTP REGULATORY BRIEF
EDPB adopts guidelines on GDPR fines and DSA interaction (17 Sep 2026)
The new EDPB guidance clarifies how authorities should levy fines and align DSA obligations with GDPR rules, impacting controllers, processors and digital platforms across the EU.
ADTP REGULATORY BRIEF
EU Commission hosts fifth roundtable on Digital Services Act implementation
The event signals ongoing EU regulator engagement with stakeholders to shape DSA enforcement and address AI and child‑safety risks online.
ADTP REGULATORY BRIEF
WBUR reports driver’s license data appearing on dark web, raising AI‑enabled fraud risks
The exposure of driver’s license images on the dark web creates new AI‑driven identity‑theft threats and endangers vulnerable individuals.
ADTP REGULATORY BRIEF
FCC adopts final rule clarifying TCPA “Revoke All” requirements
The FCC’s clarification updates how businesses must handle consumer revocation of consent for TCPA‑covered communications.
ADTP REGULATORY BRIEF
Spanish DPA fines Securitas Direct €100,000 for charging phone line for data subject rights
The enforcement underscores that charging fees for exercising GDPR data subject rights is prohibited.
ADTP REGULATORY BRIEF
ENISA releases 2026 Threat Landscape report highlighting AI-enabled cyber threats and supply‑chain risks
The report informs EU stakeholders of evolving cyber threats, emphasizing the need for heightened vigilance and resilience across digital services.
ADTP REGULATORY BRIEF
Supreme Court to decide VPPA consumer definition in Salazar v. Paramount Global
The ruling will determine how broadly the VPPA applies to digital video platforms and tracking technologies.
ADTP REGULATORY BRIEF
EU Commission proposes KIDS Act to impose age‑based restrictions and safety‑by‑design for children online
The KIDS Act aims to create EU‑wide, age‑based safeguards and design obligations to protect children’s privacy and safety online.
ADTP REGULATORY BRIEF
EU proposes Article 88c/88bis to allow unrestricted AI use of personal data
If adopted, the proposal would dramatically weaken EU data‑protection rights by granting AI firms blanket access to personal data.
ADTP REGULATORY BRIEF
EFF urges lawmakers to base AI cybersecurity rules on established best practices
Linking AI cybersecurity law to established best practices could reduce lab breaches without stifling innovation.
ADTP REGULATORY BRIEF
CNIL outlines its status, organization and sanction powers
The notice details CNIL’s enforcement authority and the maximum GDPR fines, important for data protection compliance.
Source: LiveThreat Regulatory Intelligence, analysed by ADTP. Briefs summarize the linked source and are not legal advice; the linked source is the authority. Dates appear only when the source states them.