Perkins on Privacy
Perkins on Privacy
Perkins on Privacy keeps you informed about the latest developments in privacy and data security law. Our insights are provided by Perkins Coie's Privacy & Security practice, recognized by Chambers as a leading firm in the field.
AI Governance—Key Takeaways From the 2026 IAPP Global Summit
AI dominated the conversation at the IAPP Summit 2026, as it has in the last several years.
This post distills themes about AI governance from across the summit into practical guidance for businesses navigating high-stakes AI compliance questions.
State Privacy Enforcers Discuss Collaboration and Enforcement Priorities: Key Takeaways From IAPP Global Summit 2026
At the 2026 IAPP Global Summit in Washington, D.C., a panel titled “State Collaboration on Privacy” brought together state privacy enforcers to discuss how they are working together and what businesses should expect.
The panelists were:
Where Privacy Is Headed Next: Key Takeaways From the 2026 IAPP Global Privacy Summit
Privacy law doesn’t stand still, and neither do the regulators shaping it.
Litigation Update: Washington’s Commercial Electronic Mail Act
Since 2023, Washington courts have seen more than 25 cases filed for alleged violations of Washington’s Commercial Electronic Mail Act (CEMA).
This Article outlines recent litigation trends and key takeaways following a Washington Supreme Court decision regarding CEMA’s reach.
Privacy Law Recap 2025—State Enforcement
While 2025 saw no new state comprehensive privacy laws enacted, state enforcement activity accelerated—individually and collaboratively—reflecting trends likely to intensify in 2026.
Key enforcement focus areas included youth privacy and online safety, consumer rights, and data brokers/data sales. This post discusses highlights from 2025 and looks at expected trends in 2026.
NetChoice Challenge of Maryland Kids Code Moves Forward: Motion To Dismiss Denied
On November 24, 2025, trade association NetChoice secured a win in its constitutional challenge to Maryland's Age-Appropriate Design Code Act (Kids Code or Act) when the U.S. District Court for the District of Maryland denied a motion to dismiss.
SEC Dismisses Cyber Disclosure Case Against SolarWinds and CISO
Key Takeaways
- The SEC’s agreement with defendants to dismiss, with prejudice, its case against SolarWinds Corporation (SolarWinds) and its chief information security officer (CISO) signals a retreat from aggressive, novel enforcement theories in cybersecurity disclosure cases.
- Although technical cybersecurity violations without investor harm
Preparing for the California Cyber Audit Regulations
On September 23, 2025, the California Privacy Protection Agency confirmed that their cyber audit regulations will at long last go into effect on January 1, 2026.
You can be forgiven for losing track since these were first proposed in September 2023, but now is the time to start considering how they will apply to your company and budgeting for that impact.
2025 Breach Notification Law Update
State Updates, Security Mandates, and the Federal Regulatory Horizon
“A New Era of Privacy Enforcement”: CPPA Signals Intensified Oversight while Advancing New Regulations
150 consumer complaints per week. A consortium of privacy regulators. “Hundreds of open investigations.”
Are You Ready for October 1? Maryland’s Data Privacy Law Sets New Standards For Compliance
The Maryland Online Data Privacy Act (MODPA) is just around the corner, and businesses should consider preparing to address novel compliance obligations that also rank among the most stringent to date.
California, Colorado, and Connecticut Launch Multi-State Investigative Sweep Focusing on Global Privacy Control
In a major move signaling the growing power of multi-state cooperation on privacy enforcement, the California Privacy Protection Agency (CPPA), alongside the Attorneys General of California, Colorado, and Connecticut (collectively, the “Coalition”), announced an investigative sweep targeting businesses that fail to honor
Privacy in Focus: California’s Legislative Session Closes with Major Changes
California’s legislature has once again taken center stage in the national privacy conversation, passing a flurry of privacy bills during a marathon session that stretched into the night of September 12.
CPPA Approves Cybersecurity, Automated Decisionmaking, and Risk Assessment Regulations
After years of drafting, discussions, and debates, the California Privacy Protection Agency (CPPA) Board reached a significant milestone in its efforts to bring to fruition regulations that have been in discussion by the CPPA Board for several years.
Mid-Year Recap: State Consumer Privacy Laws
With 2025 more than half over and many state legislatures adjourned for the year, we look back at significant legislative developments concerning state comprehensive consumer privacy laws.