Blog: Legal Requirements

Page 28

NY SHIELD Data Breach Notices

The Stop Hacks and Improve Electronic Data Security Act (SHIELD Act) requires all covered entities to provide a Data Breach Notice to New York residents in the event of a data breach that exposes their private information. The SHIELD Act contains specific rules about what to include in your Data Breach...

"Do Not Sell My Personal Information" Page

One of the most important aspects of the California Consumer Privacy Act (CCPA/CPRA) is consumers' "right to opt out" of the sale of their personal information. To help consumers exercise the right to opt out, the CCPA (CPRA) requires businesses to create a "Do Not Sell My Personal Information" page. If...

How the GDPR Affects Consent Under Canadian Privacy Laws

The European Union's General Data Protection Regulation (GDPR) has indirectly led to tighter rules in Canada for getting "meaningful consent." Federal and provincial regulators issued more explicit guidelines on making sure individuals really do understand the permission they give. Despite the GDPR connection, these guidelines involve domestic laws that Canadian...

India's Personal Data Protection Bill (PDPB)

Note: This bill has been withdrawn as of 2022. India's Personal Data Protection Bill (PDPB) is currently in draft form and set to be tabled in Parliament. The PDPB looks set to be one of the strictest and most comprehensive data privacy laws in the world. In fact, it's stricter in some...

Illinois Biometric Information Privacy Act

The Illinois Biometric Information Privacy Act (BIPA) regulates how companies collect, store, use, and share biometric information. In the past few years, several companies have been taken to court for allegedly violating the BIPA. The Illinois courts treat this law very seriously and are prepared to enforce it against non-Illinois companies. In...

Privacy Policy for Android Apps

If your Android app collects personal information (and it's highly likely that it does), you must create a legally compliant Privacy Policy. Google regularly penalizes developers that fail to maintain a Privacy Policy. A high-profile incident occurred in 2017 when Google threatened to permanently remove non-compliant apps from the Play Store....