• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to secondary sidebar

Alston & Bird Privacy, Cyber & Data Strategy Blog

  • Home
  • Services
  • Events
  • Contacts

Privacy

CalPrivacy Seeks Input on Reducing Friction in Privacy Rights Experience and Challenges with Opt-Out Preference Signals

March 16, 2026 By Maki DePalo and Hyun Jai Oh

On March 6, 2026, the California Privacy Protection Agency (CalPrivacy) published an Invitation for Preliminary Comments seeking public input on whether regulatory changes are needed in two related areas under the California Consumer Privacy Act (CCPA): (1) reducing friction in exercising privacy rights ; and (2) the operation and use of opt-out preference signals (OOPS). […]

Filed Under: AI Cybersecurity & Privacy, California Privacy & the CCPA Tagged With: California Consumer Privacy Act (CCPA), California Privacy Protection Agency (CPPA), California Privacy Rights Act (CPRA), Data Protection, Privacy, US State Law

CalPrivacy Goes to the Board with Digital Advertising-Focused Enforcement

March 9, 2026 By Cynthia Cole, Dorian Simmons and Anna von Spakovsky

On February 27, 2026, the California Privacy Protection Agency (“CalPrivacy”) issued an order (the “Order”) requiring a sports-focused media and technology company (the “Company”) to pay a $1.10 million administrative fine for violations of the California Consumer Privacy Act (“CCPA”). The action continues California regulators’ scrutiny of how companies deploy cookies, software development kits and […]

Filed Under: Adtech & Digital Tracking, Board Governance & Cyber Risk Management, California Privacy & the CCPA, Privacy & Cyber Regulatory Enforcement, Privacy & Cybersecurity Litigation Tagged With: Behavioral Tracking, California Consumer Privacy Act (CCPA), California Privacy Protection Agency (CPPA), California Privacy Rights Act (CPRA), Privacy, Regulatory Enforcement, US State Law

New Jersey Expands HIPAA-Based Exemptions Under Its Comprehensive Privacy Law

February 16, 2026 By Jennifer Everett, Dorian Simmons and Sara Pullen

On January 20, 2026, the New Jersey Governor signed Assembly Bill A5017 (“Amendment”), amending the New Jersey Data Protection Act (“NJDPA”). The Amendment exempts data that is not protected health information (“non-PHI”) from the NJDPA when it is handled by covered entities or business associates in accordance with the privacy and security requirements of the […]

Filed Under: Crisis & Data Breach Response, HIPAA/Health Information Privacy, Security & Breach Response Tagged With: Cybersecurity, Data Protection, Health Information Security, HIPAA, HITECH, Privacy, US State Law

California Attorney General Announces Investigative Sweep into “Surveillance Pricing”

January 29, 2026 By Daniel Felz, Dorian Simmons and Christian Seremetis

On January 28, 2026, California Attorney General (“AG”) Rob Bonta announced an investigative sweep targeting “surveillance pricing” practices among businesses in the retail, grocery, and hotel sectors. The investigation focuses on companies that use consumers’ personal information to set individualized prices. According to the AG’s press release, surveillance pricing practices could violate the California Consumer […]

Filed Under: Adtech & Digital Tracking, AI Cybersecurity & Privacy, Artificial Intelligence (AI), California Privacy & the CCPA, Consumer Protection/FTC, Privacy & Cyber Regulatory Enforcement, Privacy & Cybersecurity Litigation Tagged With: Antitrust, Artificial Intelligence, Behavioral Tracking, Big Data, California Consumer Privacy Act (CCPA), California Privacy Rights Act (CPRA), Privacy, Regulatory Enforcement, US State Law

Texas Court Blocks Smart TV Data Collection

January 5, 2026 By Jennifer Everett, David Keating and Lili Song

A Texas state court has issued a temporary restraining order  (“TRO”) blocking Hisense, a major Chinese smart TV manufacturer, from collecting data on the content viewers watch via Automatic Content Recognition (“ACR”) technology. Background The TRO follows lawsuits that Texas Attorney General (“AG”) Ken Paxton filed on December 15, 2025, against Hisense and four other […]

Filed Under: Privacy & Cyber Regulatory Enforcement, Privacy & Cybersecurity Litigation Tagged With: Behavioral Tracking, Data Protection, Privacy, US State Law

  • « Go to Previous Page
  • Page 1
  • Page 2
  • Page 3
  • Page 4
  • Interim pages omitted …
  • Page 11
  • Go to Next Page »

Primary Sidebar

This blog is a service of Alston & Bird’s Privacy, Cyber & Data Strategy team and focuses on key data privacy and data security issues.


Receive email notifications when new posts are added.

Receive email notifications when new posts are added.


RANSOMWARE FUSION CENTER
Click here to request access

THE DIGITAL DOWNLOAD
Click here to see the editions

PRIVACY & CYBER EVENTS
Click here to see upcoming and past events

PRIVACY & CYBER MAILINGS
Click here to sign up


Secondary Sidebar

Categories

Recent Posts

  • Produce the Prompts: A Court Says Expert AI Inputs Are Fair Game in Discovery
  • Louisiana Delays App Store Accountability Effective Date to July 2027
  • NYDFS Issues Frontier AI Advisory and Guidance for Heightened Cyber Threat Environment
  • California Puts Social Media’s Youth Feeds on Notice
  • European Commission Publishes Draft Guidelines on Classification of High-Risk AI Systems Under the EU AI Act
Copyright © 2026 · Alston & Bird · All Rights Reserved. Privacy.