News & Analysis as of

Data Protection Enforcement Actions Consent

DLA Piper

Italy: Marketing Privacy Consent – Is Double Opt-In Now Mandatory?

DLA Piper on

A recent and far-reaching decision by the Italian Data Protection Authority (Garante) has significantly altered the rules governing marketing privacy consent in Italy, introducing a potential obligation to adopt a double...more

Morrison & Foerster LLP

The New York Child Data Protection Act: What Businesses Need to Know About the Empire State’s New Teen Privacy Law

New York’s Child Data Protection Act (NYCDPA) has gone into effect, introducing sweeping new requirements for businesses that collect personal data from minors under 18. While New York has not yet joined the ranks of the...more

Dacheng

China’s First Judicial Decision on Cross-Border Personal Information Transfers: Clarification on Data Localization Requirement

Dacheng on

In August 2024, China Judgements Online published a ruling issued by the Guangzhou Internet Court on September 8, 2023, in a case widely regarded as China’s first judicial decision addressing cross-border personal information...more

Seyfarth Shaw LLP

CPPA Underscores That Businesses Own CCPA Compliance – Even When Privacy Management Tools Fail

Seyfarth Shaw LLP on

The California Privacy Protection Agency (“CPPA”) has made it abundantly clear: privacy compliance isn’t just about publishing the right disclosures – it’s about whether your systems actually work. On May 6, the agency fined...more

Hogan Lovells

Dutch DPA intensifies cookie enforcement – key takeaways

Hogan Lovells on

On 15 April 2025, the Dutch Data Protection Authority (DPA) issued warnings to 50 organisations, including online retailers, media companies, and insurers, for deploying misleading cookie banners or unlawfully placing...more

Stikeman Elliott LLP

Recent Biometrics Decisions from Québec’s Data Protection Authority: Five Key Takeaways

Stikeman Elliott LLP on

Two recent decisions by Québec’s data protection authority, the Commission d’accès à l’information (the “CAI”), should serve as cautionary tales for any business contemplating the deployment of biometric information...more

Wiley Rein LLP

What to Expect from New FTC Leadership on Digital Health Care

Wiley Rein LLP on

Digital health care companies have navigated a wave of new developments at the Federal Trade Commission (FTC) over the past few years. With new leadership in the Trump Administration, the FTC may be poised to change some of...more

Baker Donelson

Location Data Practices Targeted by California Lawmakers and Regulators

Baker Donelson on

In late February, California lawmakers introduced new legislation that would impose sweeping restrictions on the use of location and tracking data. Known as the California Location Data Act (CLDA), this legislation goes a...more

Bond Schoeneck & King PLLC

Honda Settlement for CCPA Violations Should Be A Warning to all Businesses

On March 12, 2025, the California Privacy Protection Agency (the Agency) announced a settlement with American Honda Motor Company, Inc. (Honda) for multiple violations of the California Consumer Privacy Act (CCPA),...more

Husch Blackwell LLP

CPPA Announces Its First CCPA Non-Data Broker Enforcement Action

Husch Blackwell LLP on

On March 12, 2025, the California Privacy Protection Agency (Agency) announced its first non-data broker enforcement action requiring a vehicle manufacturer to pay an administrative fine of $632,500 in connection with the...more

Morrison & Foerster LLP - Social Media

Just a Minor Threat: Online Safety Legislation Takes Off

The year 2025 is certain to be a watershed for social media legislation and litigation. As it continues to shape how we connect, share, and consume information, social media remains at the forefront of public discourse due to...more

Arnall Golden Gregory LLP

General Motors Settles With the FTC Over Unauthorized Collection and Sale of Driver Data

In the Federal Trade Commission’s (“FTC”) first action related to connected vehicle data, the agency announced that it reached a settlement with General Motors (“GM”) over GM’s unauthorized collection, use, and sale of driver...more

Vinson & Elkins LLP

Texas AG Targets Allstate in First Enforcement of Texas Data Privacy and Security Act

Vinson & Elkins LLP on

On January 13, 2025, Texas Attorney General Ken Paxton (“Texas AG”) filed the first-ever enforcement action under the Texas Data Privacy and Security Act (“TDPSA”) against insurance company Allstate and its subsidiary, Arity...more

Miller Canfield

More Than Child's Play: $520 Million FTC Settlement Signals Risks for Digital Platforms

Miller Canfield on

For years, one of the world’s most popular online video games, Fortnite, profited from in-game purchases (or “microtransactions”) that, according to the Federal Trade Commission (“FTC”), were unlawful and deceptive. Although...more

Alston & Bird

Texas AG Files Complaint Against Major Insurance Company Regarding Data Practices

Alston & Bird on

The Texas Office of the Attorney General recently has become increasingly interested in the practices of organizations who collect and utilize consumer data. On January 13, 2025, the Attorney General of Texas, Ken Paxton,...more

Sheppard Mullin Richter & Hampton LLP

Colorado Rolls Out Updated Privacy Rules Ahead of 2025 CPA Amendments

The Colorado AG’s office adopted draft amendments to the Colorado Privacy Act rules last month. The adopted draft reflected input from the public to AG’s September 2024 version and addresses three key issues. First, on...more

Pillsbury - Consumer Protection Dispatch

GDPR Enforcement: Lessons from Recent Data Privacy Penalties

Recent decisions by the French data protection authority (CNIL) have highlighted the importance of GDPR compliance, particularly in the areas of data retention, consent for processing sensitive personal data, and marketing...more

Venable LLP

Enhanced Child and Teen Privacy Laws Should Put Businesses on Alert

Venable LLP on

Developments in child and teen privacy legislation have continued at a rapid pace in 2024, with laws poised to impact ever more companies. Chief among these is the federal Children's Online Privacy Protection Act (COPPA),...more

Robinson+Cole Data Privacy + Security Insider

FCC Fines Wireless Carriers $200M for Sharing Location Data with Third Parties

The Federal Communications Commission (FCC) has announced that it has levied almost $200 million in fines against “the nation’s largest wireless carriers for illegally sharing access to customers’ location information without...more

Bradley Arant Boult Cummings LLP

Privacy Moves to the East Coast: Virginia Set to Enact Comprehensive Consumer Data Protection Law

Virginia is primed to become the next U.S. state to pass comprehensive data-privacy legislation with striking similarities to the California Consumers Privacy Act (CCPA), the California Privacy Rights Act (CPRA), and the...more

White & Case LLP

GDPR Guide to National Implementation: Croatia - A practical guide to national GDPR compliance requirements across the EEA

White & Case LLP on

Q1/ Applicable legislation - (a) Have the requirements of the GDPR been addressed by introducing a new law, or by updating existing legislation? New legislation has been passed. ...more

White & Case LLP

GDPR Guide to National Implementation - A practical guide to national GDPR compliance requirements across the EEA

White & Case LLP on

Foreword - European data protection laws have made significant strides in the last two decades. Privacy and data protection laws have undergone dramatic changes over the last 20 years, in a race to keep up with technology....more

Foley Hoag LLP - Security, Privacy and the...

Move over, CCPA? New York Considers Sweeping Data Privacy Law

New York’s state legislature is considering a new data privacy law that would set the standard for data privacy in the U.S. The New York Privacy Act (the “NYPA” or the “Act”), which is currently being considered by the state...more

Akin Gump Strauss Hauer & Feld LLP

A Year of GDPR: Five Recommendations to Help Limit Regulatory Scrutiny

A year ago, on May 25, 2018, the European Union’s General Data Protection Regulation (GDPR) came into force. With its extraterritorial scope and detailed requirements, the GDPR aimed to change the approach to personal data...more

Latham & Watkins LLP

What Companies Can Learn From CNIL’s Privacy Consent Cases on Targeted Marketing

Latham & Watkins LLP on

The closure of four cases involving targeted advertising provides lessons for navigating compliance standards under the GDPR. The recent closure of cases brought by the French Data Protection Authority (CNIL) against four...more

27 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide