DE Under 3: Court Held That Workday Was an “Agent” to Employers Licensing its AI Applicant Screening Tools
Business Associates Here, There, and Everywhere: When Does Your Service Provider Really Need to Sign a HIPAA Business Associate Agreement?
In House Counsel: How To Measure the Effectiveness of Your Staffing Strategy
Sitting with the C-Suite: Identifying Opportunities to Leverage Human Capital
The CCPA for the Land Title Industry: Service Providers and Sale of Data Under the CCPA
Podcast - Risk Management: Troubleshooting & Problem Solving
Cybersecurity in the investment management industry
FCPA Compliance and Ethics Report-Episode 157-Training of Third Parties Under the FCPA
Special Report: The Hot-ish Swag at LegalTech New York 2015
Two recent high profile settlements signal that the Federal Trade Commission (“FTC”) will continue to aggressively enforce violations of the Children’s Online Privacy Protection Act (“COPPA”). In a particularly high-profile...more
The “companionship services” exemption to Fair Labor Standards Act (FLSA) minimum wage and overtime requirements would again be available to third-party agencies that employ home caregivers and live-in domestic service...more
Katten's Privacy, Data and Cybersecurity Quick Clicks is a monthly newsletter highlighting the latest news and legal developments involving privacy, data and cybersecurity issues across the globe....more
On August 21, 2025, the Consumer Financial Protection Bureau filed an enforcement action in connection with Chapter 11 bankruptcy proceedings for a fintech (the "Fintech") acting primarily as a third-party service provider...more
A September 18 deadline is fast approaching for certain voice service providers to comply with expanded STIR/SHAKEN requirements approved last year by the Federal Communications Commission (FCC). The FCC’s Eighth Report...more
On May 16, 2024, the SEC, under former Chair Gary Gensler, adopted sweeping amendments to Regulation S-P, which governs the privacy and data security of nonpublic consumer personal and financial information for a broad range...more
On July 1, 2025, California Attorney General Rob Bonta announced the largest CCPA settlement to date, which included a $1.55 million penalty against Healthline Media LLC. This settlement sends a clear message to businesses...more
Over a year after his office’s last privacy enforcement action, on July 1, 2025, California Attorney General Rob Bonta (AG) announced a new California Consumer Privacy Act (CCPA) settlement with Healthline Media LLC...more
On July 1, 2025, the Office of Inspector General (OIG) of the U.S. Department of Health and Human Services issued Advisory Opinion No. 25-08, concluding that a medical device manufacturer’s proposed payment to access a...more
On July 1, the California Attorney General (CA AG) announced a $1.55 million settlement – the largest penalty issued under the California Consumer Privacy Act (CCPA) to date – with Healthline, an online health and wellness...more
On 12 March 2025, the California Privacy Protection Agency (CPPA) settled with an automaker that allegedly violated various aspects of the California Consumer Privacy Act (CCPA). This first-of-its-kind settlement for the...more
Clark Hill’s Financial Services and Regulatory Compliance Group has authored a whitepaper for debt settlement companies considering engaging a third-party payment processor for managing accounts and handling financial...more
The Departments of Labor, Health and Human Services, and the Treasury, with the Office of Personnel Management (the “Departments”) jointly released FAQs About Consolidated Appropriations Act, 2021 Implementation Part 69...more
In a divided party-line vote, the FTC recently charged Guardian Service Industries, Inc. (Guardian), a New York City-area building services contractor, with violating Section 1 of the Sherman Act and Section 5 of the Federal...more
The U.S. Department of Justice (DOJ) announced in a Nov. 12, 2024, press release that an ophthalmology practice with offices located in West Central Florida (the Provider) entered into an approximately $1.3 million settlement...more
In the first part of this blog post, we looked into the OCR and FTC’s focus on third-party tracking technologies. We also reviewed the AHA Lawsuit and its impact for the use of tracking technologies. In this blog post, we...more
The Federal Trade Commission (FTC) has been actively flexing its authority as a privacy regulator in recent months. The agency has been especially focused on identifying data practices it views to be “unfair”, thereby...more
On August 8, the CFPB filed a proposed order to resolve its 2021 lawsuit (previously discussed here) against a California-based software company and its CEO for their role in helping credit repair businesses charge illegal...more
A recently announced settlement with online alcohol addiction treatment service Monument Inc. demonstrates the Federal Trade Commission’s (FTC) continued focus on the use and disclosure of health data. The proposed settlement...more
On April 25, 2024, the FTC announced that it filed a suit against a Washington-based third-party bill payment company and two of its chief executives for engaging in allegedly deceptive and misleading practices in...more
On February 21, 2024, California Attorney General Rob Bonta ("Cal AG") announced that his office reached a settlement with DoorDash, the food delivery service company, for violating the California Consumer Privacy Act...more
On February 1, the Federal Trade Commission (FTC or “the Commission”) announced that it had reached a settlement with Blackbaud, a software company, resolving claims related to a 2020 data breach that resulted in the...more
On January 9, 2024, the California Department of Financial Protection and Innovation (DFPI) announced that it entered into a consent order with a Delaware fintech company that provided California consumers with access...more
On December 19, 2023, the Federal Trade Commission (FTC) announced an enforcement action against the retail pharmacy Rite Aid for unfair practices associated with its use of a facial recognition technology (FRT) surveillance...more
On September 28, 2023, the Department of Justice (DOJ) launched a civil suit against a benchmarking service provider that signals a crack-down on benchmarking involving the exchange of competitively sensitive information. ...more