Latest Publications

Share:

California Passes Generative AI “Training Transparency” Bill

On August 27, 2024, the California state legislature passed Assembly Bill 2013 and sent it to Governor Gavin Newsom for signature. If passed, AB 2013 would require companies that make generative AI systems and services...more

New York Attorney General Investigates Companies for Website Tags, Publishes Guidelines on Online Tracking Technologies

On July 30, 2024, the New York Attorney General Letitia James announced she had completed an investigation into the tracking technology practices of popular websites, and used this to create website privacy guides on online...more

NYDFS Issues Final Circular Letter Guidance on Use of AI in Insurance Underwriting and Pricing

On July 11, 2024, the New York Department of Financial Services (“NYDFS”) released Insurance Circular Letter No. 7, which establishes guidelines on the use of artificial intelligence systems (“AIS”) and external consumer data...more

New York Department of Financial Services Issues Final Guidance to Insurers on Using AI and External Consumer Data

Our Privacy, Cyber & Data Strategy Group analyzes important guidance from the NYDFS on how insurers use external consumer data and information sources and artificial intelligence systems....more

CISA and JCDC Conduct First-Ever Public-Private AI Security Incident Tabletop Exercise

On June 13, 2024, the Cybersecurity and Infrastructure Security Agency (CISA) collaborated with the Joint Cyber Defense Collaborative (JCDC) to hold the federal government’s first tabletop exercise for “AI security...more

Data Breach Notification Requirements Under the Safeguards Rule Now in Effect

For years, the Gramm-Leach-Bliley Act (GLBA) has required financial institutions to maintain reasonable safeguards for consumer data, but has only had limited breach-reporting requirements. To the extent financial...more

China Releases Updated Regulations on Permits Needed for Transferring Data out of China

On March 22, 2024, the Cyberspace Administration of China (CAC) published the Regulations on Promoting and Regulating Cross-border Data Flow (the “Regulations”), effective immediately. The Regulations supplement China data...more

More Guidance from HHS on Online Tracking Technologies but Questions Remain

Health and Human Services (“HHS”) released updated guidance yesterday on the use of online tracking technologies (like cookies, pixels, software development kits (SDKs), etc.) by HIPAA Covered Entities (the “Updated...more

White House Executive Order to Regulate Transactions Involving Sensitive Personal Data of Americans

The White House announced that President Biden will sign an executive order designed to protect sensitive data of U.S. persons from exploitation by identified countries of concern.  This executive order is expected to be...more

NYDFS Releases Circular Letter on Use of AI in Insurance Underwriting and Pricing

On January 17, 2024, the New York State Department of Financial Services (“NYDFS”) issued a proposed circular letter for comment regarding the “Use of Artificial Intelligence Systems and External Consumer Data and Information...more

EU’s Highest Court Issues Major AI Decision With Wide-Reaching Impact

On 7 December 2023, the Court of Justice of the European Union (CJEU) issued an important decision on how the GDPR governs AI-assisted decisions. The case arose in the financial services context, with the court holding that...more

Colorado AG Publishes Shortlist of Universal Opt-Out Mechanisms

On November 21, 2023, the Colorado Attorney General (the “AG”) published a shortlist of potential universal opt-out mechanisms (“UOOMs”) that the AG is considering recognizing as binding under the Colorado Privacy Act (the...more

New Final AI Regulation from Colorado Department of Insurance—Others Likely to Follow Suit

Our Privacy, Cyber & Data Strategy Group considers the nationwide repercussions of Colorado’s new regulation of insurers’ use of artificial intelligence models to prevent race-based discrimination....more

FTC Launches Investigation into Creator of ChatGPT

In mid-July, the Federal Trade Commission (FTC) reportedly opened an investigation into OpenAI, the maker of ChatGPT, sending the company an extensive Civil Investigative Demand (CID). While FTC investigations are normally...more

HHS and FTC Fire a Warning Shot at Healthcare Companies Using Online Tracking Technologies

On July 20, 2023, the Office for Civil Rights (“OCR”) of the U.S. Department of Health and Human Services (“HHS”), and the Federal Trade Commission (“FTC”) published a joint letter sent to approximately 130 hospital systems...more

Help! My Business Wants to Start Using ChatGPT!

Corporate legal departments are increasingly receiving requests from business clients to use ChatGPT or similar “generative AI” tools in their operations. These requests can be urgent, with business clients demanding...more

2022’s Unwelcome Trend of Lawsuits Challenging Website Technology Is Here to Stay

Nearly every website has some means of tracking user data to fix bugs and improve the user experience. The plaintiffs’ bar has been actively filing class actions alleging many of these technologies illegally collect user...more

AI Regulation in the U.S.: What’s Coming, and What Companies Need to Do in 2023

Artificial intelligence (AI) is expanding into more industries (often in surprising ways) and has inevitably caught the attention of federal and state regulators. Our Privacy, Cyber & Data Strategy Team summarizes the...more

California Privacy Protection Agency Publishes Updated CPRA Regulations

Yesterday, October 17, 2022, the California Privacy Protection Agency (“CPPA”) published its first set of Modified Proposed Regulations under the California Privacy Rights Act (“CPRA”).  The Modified Regulations have been...more

Germany’s Cyber Threat Landscape – Top 3 Lessons from the BKA Situation Report

Germany boasts one of the world’s largest, most sophisticated, and international economies. Companies doing business in Germany are thus an increasingly relevant target for cyberattacks....more

FTC Guidance Creates New Breach Notification Obligations

The Federal Trade Commission has issued new guidance under which consumers or companies should be notified of data breaches “regardless of whether a breach notification law applies.” Our Consumer Protection/FTC Team analyzes...more

Georgia Introduces Privacy Bill Stricter than CCPA – the Top 10 Issues

On January 26, 2022, the Georgia General Assembly introduced a bill titled the Georgia Computer Data Privacy Act (GCDPA). Despite its title, the GCDPA is not a “computer”-focused bill. It is instead is an omnibus privacy...more

Swiss Data Protection Regulator Is Latest to Outline Framework for Transferring Data to the SEC

Entities registered with the U.S. Securities & Exchange Commission (SEC) must maintain certain books and records and can be subject to the SEC’s examination, inspection, and enforcement authority. Responding to SEC requests...more

European Commission Publishes Long-Awaited New Standard Contractual Clauses

Today, the European Commission published finalized versions of new Standard Contractual Clauses (SCCs). The Commission has published two sets of clauses....more

79 Results
 / 
View per page
Page: of 4

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide