On May 27, the Connecticut governor signed SB 4, an omnibus privacy law, followed a week later by two clean-up bills, HB 2222 and HB 5563 (collectively “SB 4”). SB 4, among other things, amends the Connecticut Data Privacy Act
Inside Privacy
Updates on developments in data privacy and cybersecurity
Inside Privacy, published by Covington & Burling LLP, focuses on legal developments and regulatory issues related to data privacy and cybersecurity. The blog covers topics such as GDPR enforcement actions, data breach investigations, privacy compliance strategies, and the intersection of privacy law with emerging technologies like artificial intelligence. It also addresses regulatory updates from authorities worldwide, including the European Commission and national data protection agencies. The blog provides analysis of privacy-related litigation, enforcement trends, and guidance on managing privacy risks in various sectors, including technology, healthcare, and advertising.
Latest from Inside Privacy - Page 6
Connecticut Enacts Genetic Privacy Law
States continue to enact laws regulating genetic data. Since our last update, the Connecticut governor has signed SB 4, an omnibus privacy law which contains provisions regulating direct-to-consumer (“DTC”) genetic testing companies. You can read our full analysis…
CISA Releases Guidance on the Careful Adoption of Agentic AI Services
Earlier this month, the Cybersecurity & Infrastructure Security Agency (CISA), in collaboration with the National Security Agency and other international partners, released guidance for organizations on adopting agentic artificial intelligence systems (i.e., systems composed of one or more agents that…
FTC and DOJ Continue Focus on Consumer Reviews Rule with Complaint Against Premium Home Service
On May 11, 2026, the Department of Justice, acting on notification from the Federal Trade Commission, and the Illinois Attorney General, filed a complaint against “Premium Home Service” and its owner for alleged violations of Section 5 of the FTC…
CISA Announces Revised Schedule of Town Halls for CIRCIA Rulemaking
On May 26, 2026, the Cybersecurity & Infrastructure Security Agency (“CISA”), announced a revised schedule of virtual town halls as part of its rulemaking implementing the Cyber Incident Reporting for Critical Infrastructure Act of 2022 (“CIRCIA”). These town halls were…
FTC Settles with Shutterstock Over Subscription Practices
On May 13, 2026, the Federal Trade Commission (“FTC”) announced that Shutterstock, Inc. had agreed to a $35 million settlement resolving allegations that the company engaged in unfair and deceptive subscription practices. The FTC asserted claims under Section 5 of…
EU AI Act Update: Timeline Relief, Targeted Simplification, and New Prohibitions
On 7 May 2026, negotiators from the Council of the European Union, the European Parliament, and the European Commission reached a provisional agreement on the terms of the Digital Omnibus on AI, marking the first set of amendments to the…
Maryland Enacts Law on Personalized Food Pricing
On April 28, 2026, Maryland Governor Moore signed HB 895 (the Protection From Predatory Pricing Act) into law, which will impose limitations on the use of personalized pricing in the food retail and grocery delivery context. The law will go…
Italian DPA Publishes Guidelines on Email Tracking Pixels
On April 17, 2026, the Italian data protection authority (the “Garante”) published Provision No. 284 setting out guidelines on the use of “tracking pixels” in emails (the “Guidelines”). This publication closely follows the recommendation issued by the French data protection…
EU Sets the Clock on Age Verification: Rollout Urged by End‑2026
The European Commission has set a clear timeline for rolling out age verification across the EU:
- by June 30, 2026, Member States are encouraged to submit implementation plans; and
- by December 31, 2026, at least one EU‑compliant age verification solution
…