The EU Data Act, which became effective on September 12, 2025, imposes new requirements on providers of “data processing services”, a category that includes Infrastructure as a Service (IaaS), Platform as a service (PaaS), and Software as a Service
Cyber Law Monitor
Cyber Law Monitor, published by Cozen O'Connor, focuses on legal developments and regulatory issues related to cybersecurity, data privacy, artificial intelligence, and cloud computing. The blog covers topics such as compliance with emerging data protection laws like the EU Data Act and the Colorado AI Act, cybersecurity best practices for AI-powered technologies including robotics, and enforcement mechanisms under new AI regulations. It also addresses challenges around data portability, vendor lock-in, biometric data privacy, and consumer protection in the context of evolving digital and AI-driven environments. The blog provides insights into both U.S. and EU regulatory landscapes affecting technology providers and users.
Latest from Cyber Law Monitor
Cybersecurity Best Practices for AI-Powered Robotics Under State and Federal Privacy Laws
As robotics technology rapidly advances in connection with the use of artificial intelligence (AI), the collection, processing, and storage of personal information—including biometric data—will become increasingly common. Many providers of AI-powered robotics will be subject to U.S. state comprehensive privacy…
Should We Expect New Regulations on Data Privacy and Consumer Protection?
The EU AI Act: Part Four – Low Risk AI Systems and Enforcement
This is part four of our examination of the European Union’s new artificial intelligence law, the (“EU AI Act”). In part one, we introduced the scope of the EU AI Act and discussed what types of AI systems are…
Understanding the Colorado AI Act
The EU AI Act: Part Three – General-Purpose Models
This is part three of our examination of the European Union’s new artificial intelligence law (the “EU AI Act”). In part one, we introduced the scope of the EU AI Act and discussed what types of AI systems are…
Maryland’s New Approach to Data Minimization Creates Unique Compliance Issues
On May 9, 2024, Governor Wes Moore signed the Maryland Online Data Privacy Act (MODPA) making Maryland the seventeenth state to enact a comprehensive data privacy law. The law takes effect October 1, 2025, but it does not apply to…
The EU AI Act: Part Two – High-Risk AI Systems
This is part two of our examination of the European Union’s new artificial intelligence law, the (“EU AI Act”). In part one, we introduced the scope of the EU AI Act and discussed what types of AI systems are…
The European Union Artificial Intelligence Act: Part One – Scope and Prohibited Systems
Biden Administration’s Voluntary AI Safety Agreement
The Biden administration announced that it brokered a voluntary agreement with several of the biggest technology and artificial intelligence (AI) companies. The agreement, available here, has the companies taking a number of actions intended to encourage safe, secure, and…


