Regulatory Watch

New laws, rules, guidance, enforcement actions and court decisions in privacy, AI and cybersecurity. Every item links to its primary source.

1Last 24 hours
31Last 7 days
22High or critical

Showing 11 of 220 developments

Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

EDPB adopts guidelines on GDPR fines and DSA interaction (17 Sep 2026)

published EU

The new EDPB guidance clarifies how authorities should levy fines and align DSA obligations with GDPR rules, impacting controllers, processors and digital platforms across the EU.

Privacy Rules and guidance DSA
Moderate 52 · Sep 23, 2026 · CNIL (France)
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

EU Commission hosts fifth roundtable on Digital Services Act implementation

published EU

The event signals ongoing EU regulator engagement with stakeholders to shape DSA enforcement and address AI and child‑safety risks online.

AI governance Children DSA
Moderate 54 · Sep 23, 2026 · European Commission digital strategy news
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

WBUR reports driver’s license data appearing on dark web, raising AI‑enabled fraud risks

announced US

The exposure of driver’s license images on the dark web creates new AI‑driven identity‑theft threats and endangers vulnerable individuals.

AI governance Biometric
Moderate 44 · Sep 22, 2026 · EPIC
Read the full brief →
Final Regulation ADTP BRIEF 📜

ADTP REGULATORY BRIEF

FCC adopts final rule clarifying TCPA “Revoke All” requirements

in effect US

The FCC’s clarification updates how businesses must handle consumer revocation of consent for TCPA‑covered communications.

Communications Privacy TCPA
Moderate 47 · Sep 22, 2026 · Hunton Privacy & Cybersecurity Law Blog
Read the full brief →
Fine ADTP BRIEF 💰

ADTP REGULATORY BRIEF

Spanish DPA fines Securitas Direct €100,000 for charging phone line for data subject rights

decided EU-ES

The enforcement underscores that charging fees for exercising GDPR data subject rights is prohibited.

Data governance Enforcement GDPR
Moderate 59 · Sep 22, 2026 · European Data Protection Board news
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

ENISA releases 2026 Threat Landscape report highlighting AI-enabled cyber threats and supply‑chain risks

published EU

The report informs EU stakeholders of evolving cyber threats, emphasizing the need for heightened vigilance and resilience across digital services.

AI governance Cybersecurity NIS2
Moderate 52 · Sep 22, 2026 · ENISA news
Read the full brief →
Court Ruling ADTP BRIEF 🔨

ADTP REGULATORY BRIEF

Supreme Court to decide VPPA consumer definition in Salazar v. Paramount Global

pending US

The ruling will determine how broadly the VPPA applies to digital video platforms and tracking technologies.

Litigation Privacy VPPA
Moderate 44 · Sep 21, 2026 · EPIC
Read the full brief →
Proposed Regulation ADTP BRIEF 📋

ADTP REGULATORY BRIEF

EU Commission proposes KIDS Act to impose age‑based restrictions and safety‑by‑design for children online

proposed EU

The KIDS Act aims to create EU‑wide, age‑based safeguards and design obligations to protect children’s privacy and safety online.

AI governance Children DSA
Moderate 55 · Sep 21, 2026 · Covington Inside Privacy
Read the full brief →
Proposed Regulation ADTP BRIEF 📋

ADTP REGULATORY BRIEF

EU proposes Article 88c/88bis to allow unrestricted AI use of personal data

proposed EU

If adopted, the proposal would dramatically weaken EU data‑protection rights by granting AI firms blanket access to personal data.

AI governance Data governance GDPR
Moderate 46 · Sep 21, 2026 · noyb
Read the full brief →
Proposed Regulation ADTP BRIEF 📋

ADTP REGULATORY BRIEF

EFF urges lawmakers to base AI cybersecurity rules on established best practices

proposed US

Linking AI cybersecurity law to established best practices could reduce lab breaches without stifling innovation.

AI governance Cybersecurity
Moderate 41 · Sep 18, 2026 · EFF updates
Read the full brief →
Regulatory Guidance ADTP BRIEF 🧭

ADTP REGULATORY BRIEF

CNIL outlines its status, organization and sanction powers

published EU-FR

The notice details CNIL’s enforcement authority and the maximum GDPR fines, important for data protection compliance.

Cybersecurity Privacy
Moderate 48 · Sep 17, 2026 · CNIL (France)
Read the full brief →
← Previous Page 5 of 10 Next →

Source: LiveThreat Regulatory Intelligence, analysed by ADTP. Briefs summarize the linked source and are not legal advice; the linked source is the authority. Dates appear only when the source states them.