Skip to content

Menu

LexBlog, Inc. logo
NetworkSub-MenuBrowse by SubjectBrowse by PublisherJoin the NetworkGet StartedSubscribeSupportContact
Search
Close

Washington Likely Adopting New Privacy Law in the Likeness of the European Union’s General Data Protection Regulation

By David Rice on January 28, 2019
Email this postTweet this postLike this postShare this post on LinkedIn

Another state may join the movement towards adopting General Data Protection Regulation (GDPR)-like privacy protections. A new privacy bill was introduced in the Washington Legislature on January 17, 2019, called the Washington Privacy Act (SB 5376). The Act would give consumers rights that are similar to those under the GDPR, such as the right to access their data, to update and correct their data, to port their data, to request deletion of their data under some circumstances, to restrict processing, and to object to certain processing, including for direct marketing.

Some of the Act’s text is taken verbatim from the GDPR, including parts of the definitions of consent and processing, and the Act adopts GDPR terms such as “controller” and “processor.” As with the GDPR, the Act would require processors to comply with controller processing instructions, which must be incorporated into the parties’ contracts.

The Act would apply to companies that control or process the data of over 100,000 Washington residents or which control or process data of 25,000 Washington residents and also obtain over 50% of their gross revenue from the sale of personal information. There are also additional privacy notice disclosure requirements and special provisions and limitations for facial recognition technology. There would be no private right of action—enforcement would be through the Washington Attorney General.

This bill appears to have support of important members of the tech community and may move quickly. The bill text is available here.

Photo of David Rice David Rice

David is a business attorney and strategic adviser for clients ranging from major international corporations to startups. David regularly advises businesses regarding their collection, storage, and use of data, as well as on finding creative solutions to issues involved with running a successful…

David is a business attorney and strategic adviser for clients ranging from major international corporations to startups. David regularly advises businesses regarding their collection, storage, and use of data, as well as on finding creative solutions to issues involved with running a successful business. Many of David’s clients are in the online, mobile communications, and energy industries.

Read more about David RiceEmailDavid's Linkedin Profile
Show more Show less
  • Posted in:
    Privacy and Cybersecurity
  • Blog:
    Law Trends
  • Organization:
    Miller Nash Graham & Dunn LLP
  • Article: View Original Source

Call us at 1-800-913-0988 or email sales@lexblog.com.

Facebook LinkedIn Twitter RSS
The Library at LexBlog
  • About LexBlog
  • The Field We Built
  • Library at LexBlog
  • Our Beliefs
  • Our Team
  • Contact LexBlog
  • Disclaimer
  • Editorial Policy
  • Terms of Service
  • Get Started
  • Publishing Solutions
  • Compass
  • Submit a Request
  • Support Center
  • System Status
Copyright © 2026, LexBlog, Inc. All Rights Reserved.
Law blog design & platform by LexBlog LexBlog Logo