Skip to content

Menu

LexBlog, Inc. logo
NetworkSub-MenuBrowse by SubjectBrowse by PublisherJoin the NetworkGet StartedSubscribeSupportContact
Search
Close

Utah Sets Limits on Law Enforcement’s Ability to Gather Individuals’ Electronically Transmitted Data

By Sean C. Griffin on May 3, 2019
Email this postTweet this postLike this postShare this post on LinkedIn
Utah Image

Utah enacted a sweeping data privacy law that affects how employers and corporations respond to police demands for data. With this new law, Utah becomes the first state to protect electronic information individuals disclose to third parties.

Utah’s law requires a search warrant for a law enforcement agency conducting a criminal investigation or prosecution to obtain (i) location information, stored data, or transmitted data of an electronic device or (ii) electronic information or data transmitted by the owner of the electronic information or data to a remote computing processing center. The law further provides that any use of the information gathered must be related to the subject or objective of the warrant. 

Legally, Utah’s new law is an outgrowth of developing federal law in the area of data privacy. The “third party doctrine” provides that individuals have no reasonable expectation of privacy when they share their data with a third party. Court decisions over the last decade eroded this doctrine, however. In 2010, the Sixth Circuit held that the government may not compel a commercial ISP to turn over the contents of a subscriber’s emails without a warrant.  In 2012, the Supreme Court decided that installing a GPS tracking device on a vehicle and using the device to monitor the vehicle’s travels constituted a Fourth Amendment search. Two years later, the Supreme Court held that the police generally may not search digital information on a cellphone seized from an arrestee without a warrant. And last summer, the Supreme Court ruled that law enforcement could no longer access a person’s cell phone location data from a third-party provider without a warrant and invited legislatures to craft broader data privacy protections.

Practically, Utah’s action comes on the heels of a New York Times article detailing how Google allows law enforcement to access its Sensorvault database, which contains location records involving hundreds of millions of devices worldwide. According to the New York Times, Google opens its Sensorvault data from its users’ phones in response to warrants from law enforcement agencies around the country, without the individuals’ consent.

Businesses will need to reevaluate their procedures for responding to law enforcement data demands in the wake of the new warrant requirement in Utah. Other technologically sophisticated states, such as California or New York, may take the Utah legislature’s lead.

For more information, please email privacycompliance@dykema.com, and a team member – Cindy Motley or Sean Griffin – will promptly contact you.

To sign up for Dykema’s Privacy and Data Security Blog e-mail updates, please click here.


As part of our service to you, we regularly compile short reports on new and interesting developments and the issues the developments raise. Please recognize that these reports do not constitute legal advice and that we do not attempt to cover all such developments. Rules of certain state supreme courts may consider this advertising and require us to advise you of such designation. Your comments are always welcome. ©2019 Dykema Gossett PLLC.

Photo of Sean C. Griffin Sean C. Griffin

Sean C. Griffin is a Member in the Washington, D.C. office of Dykema. Sean focuses his practice on commercial litigation, with a specialty in cases involving allegations of breach of contract or fraud. His experience includes litigating cases in federal and state courts…

Sean C. Griffin is a Member in the Washington, D.C. office of Dykema. Sean focuses his practice on commercial litigation, with a specialty in cases involving allegations of breach of contract or fraud. His experience includes litigating cases in federal and state courts and arbitration panels around the country. He also responds to subpoenas investigating violations of federal or state laws, including the False Claims Act, the U.S. Foreign Corrupt Practices Act (FCPA), and securities laws. Additionally, he assists clients with data security and responding to data breaches and is an IAPP Certified Information Privacy Professional (CIPP/US).

After graduating from Columbia University School of Law, Sean clerked for the U.S. District Court for the District of Maryland. After his clerkship, he worked as a trial attorney at the U.S. Department of Justice, Civil Division, where he handled commercial litigation trials and appeals as well as government contract and construction litigation.

Read more about Sean C. GriffinEmail
Show more Show less
  • Posted in:
    Privacy and Cybersecurity
  • Blog:
    The Firewall
  • Organization:
    Dykema
  • Article: View Original Source

Call us at 1-800-913-0988 or email sales@lexblog.com.

Facebook LinkedIn Twitter RSS
The Library at LexBlog
  • About LexBlog
  • The Field We Built
  • Library at LexBlog
  • Our Beliefs
  • Our Team
  • Contact LexBlog
  • Disclaimer
  • Editorial Policy
  • Terms of Service
  • Get Started
  • Publishing Solutions
  • Compass
  • Submit a Request
  • Support Center
  • System Status
Copyright © 2026, LexBlog, Inc. All Rights Reserved.
Law blog design & platform by LexBlog LexBlog Logo