News & Analysis as of

Regulatory Requirements Data Protection Consent

Morgan Lewis

China’s New Standard on Sensitive Personal Information Goes Into Effect November 1

Morgan Lewis on

In a move to further bolster data privacy, China’s State Administration for Market Regulation and the Standardization Administration of China jointly issued a national standard, GB/T 45574-2025, Data Security Technology –...more

Blake, Cassels & Graydon LLP

Nouveau document du Commissariat à la protection de la vie privée sur le traitement des données biométriques dans le privé

Le 11 août 2025, le Commissariat à la protection de la vie privée du Canada (le « Commissariat ») a publié un document d’orientation (le « document d’orientation ») à l’intention des organisations du secteur privé au sujet de...more

Coblentz Patch Duffy & Bass

Updates to Children's Privacy Federal and State Laws

Over the past year, the Federal Trade Commission (FTC) has implemented significant updates to the Children’s Online Privacy Protection Act (COPPA) Rule meant to strengthen key protections for children’s privacy online. COPPA...more

Fox Rothschild LLP

Biometrics in Advertising: Consent Is Not Enough

Fox Rothschild LLP on

When using biometrics in advertising, consent is not enough. IAB Canada, a trade association for Canada’s interactive marketing and advertising industry, recently issued policy paper on using biometrics in digital...more

Baker Botts L.L.P.

Canada's Officer of the Privacy Commissioner Issues Guidance on Biometric Data Processing

Baker Botts L.L.P. on

On August 11, 2025, the Office of the Privacy Commissioner of Canada ("OPC") issued two sets of guidance for processing of individual's biometric data: one for federal institutions and one for private businesses. Below we...more

Osano

Server-Side Tracking: What Is It, and How Does It Impact Privacy Compliance?

Osano on

Tired of ad blockers, cookie deprecation, and opt-outs undermining your marketing efforts? You may be investigating server-side tracking as a way to grow your access to data.  Server-side tracking can be a great approach for...more

Baker Donelson

Impact on Companies with Online Services as Children's Data Protection Gains Ground in Colorado

Baker Donelson on

Companies offering online services take heed: effective October 1, 2025, Colorado's new children's data protection framework is sending a clear signal of where the future of privacy and social media regulation is headed...more

Troutman Amin LLP

ATTENTION ATTENTION: Minnesota’s Data Privacy Act Is Now Law As Of Today- July 31, 2025!

Troutman Amin LLP on

Starting today, July 31, 2025, the Minnesota Consumer Data Privacy Act (“MCDPA”) officially takes effect. Signed by Governor Tim Walz in May 2024, this act majorly affects how the personal data of Minnesota residents is...more

DLA Piper

Italy: Marketing Privacy Consent – Is Double Opt-In Now Mandatory?

DLA Piper on

A recent and far-reaching decision by the Italian Data Protection Authority (Garante) has significantly altered the rules governing marketing privacy consent in Italy, introducing a potential obligation to adopt a double...more

A&O Shearman

CNIL requests public comments on draft recommendations on the use of tracking pixels in emails

A&O Shearman on

On June 12 2025, the French supervisory authority (CNIL) requested public comments on the draft recommendations on the use of tracking pixels in emails (Draft Recommendations)....more

Morrison & Foerster LLP

The New York Child Data Protection Act: What Businesses Need to Know About the Empire State’s New Teen Privacy Law

New York’s Child Data Protection Act (NYCDPA) has gone into effect, introducing sweeping new requirements for businesses that collect personal data from minors under 18. While New York has not yet joined the ranks of the...more

Conyers

Bermuda SMS/MMS Marketing Guidance Note

Conyers on

Cross-border marketing of products or services by an overseas company (a body corporate incorporated outside of Bermuda) to customers in Bermuda could be construed as carrying on business in Bermuda and, if so, would be...more

Conyers

Bermuda Emarketing Guidance Note

Conyers on

Cross-border marketing of products or services by an overseas company (a body corporate incorporated outside of Bermuda) to customers in Bermuda could be construed as carrying on business in Bermuda and, if so, would be...more

DLA Piper

EU: Brussels Court of Appeal Rules on IAB Europe and the TC String – Implications for GDPR Compliance

DLA Piper on

On 14 May 2025, the Brussels Court of Appeal (Market Court) delivered the long-awaited judgement in the case concerning the Transparency & Consent Framework (“TCF”) (case no. 2022/AR/292). The Court largely upheld the...more

Hogan Lovells

India publishes consent management rules under Digital Personal Data Protection Act

Hogan Lovells on

India’s Ministry of Electronics and Information Technology (MeitY) released in June 2025 a Business Requirement Document for Consent Management Under the DPDP Act, 2023 (BRD). The BRD, while not legally binding, provides...more

Venable LLP

Connecticut Signals an Increased Focus on Biometric Data Compliance

Venable LLP on

In April, the Office of the Connecticut Attorney General (OAG) released an updated enforcement report under the Connecticut Data Privacy Act (CTDPA) to highlight privacy enforcement actions taken in 2024....more

A&O Shearman

Navigating consent: emerging trends in children's data privacy across APAC

A&O Shearman on

The Asia-Pacific (APAC) region has experienced a significant increase in internet usage among children, fueled by widespread access to smartphones, affordable data plans, and digital platforms. While this digital...more

Dacheng

China’s First Judicial Decision on Cross-Border Personal Information Transfers: Clarification on Data Localization Requirement

Dacheng on

In August 2024, China Judgements Online published a ruling issued by the Guangzhou Internet Court on September 8, 2023, in a case widely regarded as China’s first judicial decision addressing cross-border personal information...more

Seyfarth Shaw LLP

CPPA Underscores That Businesses Own CCPA Compliance – Even When Privacy Management Tools Fail

Seyfarth Shaw LLP on

The California Privacy Protection Agency (“CPPA”) has made it abundantly clear: privacy compliance isn’t just about publishing the right disclosures – it’s about whether your systems actually work. On May 6, the agency fined...more

A&O Shearman

CNIL launches public consultation on draft recommendations relating to multi-terminal consent

A&O Shearman on

On April 24 2025, the French supervisory authority (CNIL) issued a draft recommendation to address challenges in collecting user consent for cookies and trackers across multiple devices (the Draft Recommendation). The new...more

Osano

3 Ways GRC Pros Can Manage Privacy Risk (and Still Have Time to Sleep, Eat, and Relax)

Osano on

Governance, risk, and compliance (GRC) can feel like thankless work at times. You can’t ship risk mitigation to market. It's not usually reflected on your balance sheet. Only especially canny investors notice the absence of...more

Blake, Cassels & Graydon LLP

Digital Identity Verification Best Practices for Canadian Financial Services

Many financial services businesses are subject to legal or regulatory obligations that require them to verify the identity of their customers. Although innovative technological tools, including those using artificial...more

Alston & Bird

Arkansas Enacts Children and Teens’ Online Privacy Protection Act

Alston & Bird on

On April 21, 2025, Arkansas Governor Sarah Huckabee Sanders signed into law the Arkansas Children and Teens’ Online Privacy Protection Act (Act), which will become effective on July 1, 2026. It draws inspiration from the...more

Osano

How to Shift Data Privacy Left

Osano on

The 1:10:100 rule—coined in 1992 by George Labovitz and Yu Sang Chang, the rule describes how much bad data costs. Preventing the creation of bad data at its source costs $1. Remediating bad data costs $10. Doing nothing...more

A&O Shearman

ICO reports findings of children's data protection in financial services

A&O Shearman on

The Information Commissioner's Office (ICO) has published its report alongside a press release following a review into the gathering and use of children's data in financial services, particularly from services supplying them...more

40 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide