{"id":2077,"date":"2024-01-23T16:30:00","date_gmt":"2024-01-23T22:30:00","guid":{"rendered":"https:\/\/trustarc.com\/?post_type=resource&#038;p=2077"},"modified":"2025-05-08T13:27:28","modified_gmt":"2025-05-08T18:27:28","slug":"fast-moving-ai-and-privacy-regulations","status":"publish","type":"resource","link":"https:\/\/trustarc.com\/resource\/fast-moving-ai-and-privacy-regulations\/","title":{"rendered":"Stay on Top of Fast-Moving AI and Privacy Regulations"},"content":{"rendered":"\t\t<section id=\"block_6400d8ae2f0383e9b43ec7e1382a932c\" class=\"resource-intro intro-simple\">\n\t\t\t<div class=\"container\">\n\t\t\t\t\t\t\t\t\t<strong class=\"sub-title block uppercase\">Articles<\/strong>\n\t\t\t\t\t\t\t\t\t\t<h1>Stay on Top of Fast-Moving AI and Privacy Regulations<\/h1>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\n\n\t<section id=\"block_f7b944a55fda5d29dca606db281fca91\" class=\"columns-content\">\n\t\t<div class=\"container\">\n\t\t\t<div class=\"left\">\n\t\t\t\t\t\t\t<\/div>\n\t\t\t<div class=\"middle\">\n\t\t\t\t<div class=\"content\">\n\t\t\t\t\t<p>The AI governance landscape is shifting \u2014 fast. From US Senate bills and executive orders to emerging guidelines and best practices, regulatory entities across the globe are making moves to shape the way organizations handle AI and privacy.<\/p>\n<p>With Nymity Research, you can access all the latest global regulatory information, vetted by more than 20 in-house legal experts.<\/p>\n<p>There are 200+ references on AI in Nymity Research. Check out a few of our favorites that we have made publicly free below:<\/p>\n<h3>FTC Highlights Scope of Enforcement Powers (Jan 2024)<\/h3>\n<p>Model-as-a-service AI companies who develop and host models to third-party businesses will be subject to FTC enforcements for confidentiality and privacy violations where its AI models unlawfully obtain and process customer personal data, companies fail to deliver on commitments made to its customers (e.g. disclosing customer\u2019s sensitive health data to advertising companies despite its promise against this, as stated within a privacy policy), and AI models are used for deceptive practices that may violate anti-trust and consumer protection laws.<\/p>\n<p><a href=\"https:\/\/insights.nymity.com\/reference\/public\/37A080B7-0E1F-4D1A-9946-AB02803106CB?utm_source=web-resource&amp;utm_medium=blog&amp;utm_campaign=ai-and-privacy\" target=\"_blank\" rel=\"noopener\">Read the research<\/a><\/p>\n<h3>FTC Banning AI-Based Technology After Lack of Consumer Safeguards (Jan 2024)<\/h3>\n<p>A retailer deployed AI-based facial recognition technologies (\u201cFRTs\u201d) in its stores without implementing safeguards to detect false positive matches on consumers who were believed to have committed criminal activities, and failed to verify the accuracy of its FRTs. The Company is prohibited from using FRTs for five years, must delete (and notify its third-parties to delete) any images and videos of its consumers collected from its FRTs, and must notify consumers when their biometric information will be enrolled into a database used to operate a biometric security or surveillance system.<\/p>\n<p><a href=\"https:\/\/insights.nymity.com\/reference\/public\/c0a504bf-52bb-41fb-8c3c-cd99f7968535?utm_source=web-resource&amp;utm_medium=blog&amp;utm_campaign=ai-and-privacy\" target=\"_blank\" rel=\"noopener\">Read the research<\/a><\/p>\n<h3>US Senate Proposes Bill to Boost Accountability and Transparency Requirements (Nov 2023)<\/h3>\n<p>If passed, the Artificial Intelligence Research Innovation and Accountability Act will require organizations to submit a transparency report detailing the design and safety plans of high-impact AI systems (i.e., an AI system that makes decisions that could impact the opportunities of individuals, such as their right to access housing), provide a transparency notice to inform its users that they are interacting with AI-generated content, and conduct and submit a risk management assessment report on critical-impact AI systems (e.g., the report shall contain the structure and capabilities of the AI system, and a description about how organizations assess <a href=\"\/solutions\/ai-risk\/\">AI risks<\/a>).<\/p>\n<p><a href=\"https:\/\/insights.nymity.com\/search\/reference\/public\/c441cfee-ece4-4023-aaf2-3a5773fd2303?utm_source=web-resource&amp;utm_medium=blog&amp;utm_campaign=ai-and-privacy\" target=\"_blank\" rel=\"noopener\">Read the research<\/a><\/p>\n<h3>DPA Hamburg\u2019s Checklist on the Use of LMM-Based Chatbots (Nov 2023)<\/h3>\n<p>The checklist provides general guidance for companies that use large language model-based chatbots, such as through the use of generative AI. Notable practices include to document internal guidelines and train employees on permissible uses for such tools, provide employees with professional accounts (do not have them create their own personal account), ensure that no personal data is transmitted to the chatbot where the AI provider is permitted to use the data for its own purposes, and avoid entries that relate to specific individuals (including entries that may allow conclusions to be drawn).<\/p>\n<p><a href=\"https:\/\/insights.nymity.com\/search\/reference\/public\/ebbad44a-9d9d-472a-a04a-c36c2e35cd27?utm_source=web-resource&amp;utm_medium=blog&amp;utm_campaign=ai-and-privacy\" target=\"_blank\" rel=\"noopener\">Read the research<\/a><\/p>\n<blockquote><p><b>How mature is your AI risk management?<\/b><\/p>\n<p><a href=\"https:\/\/trustarc.com\/ai-quiz\/\"><b>Take the quiz.<\/b><\/a><\/p><\/blockquote>\n<h3>Automated Decisions: California CPPA Drafts Regulatory Framework for Businesses (Nov 2023)<\/h3>\n<p>Businesses who use automated decision making technologies (ADMT) shall provide consumers with a Pre-use Notice disclosing its use of ADMT, consumers rights to opt-out of the businesses\u2019 ADMT (e.g. where ADMT are used to make decisions that produce legal effects) and consumers ability to access information about the businesses\u2019 use of ADMT (e.g. the processing parameters of the ADMT). Businesses using ADMT to profile a minor must obtain verifiable consent from a parent or guardian of the child, and shall inform the parent about their rights to opt-out.<\/p>\n<p><a href=\"https:\/\/insights.nymity.com\/search\/reference\/public\/c1a683e7-944b-43ea-951f-1ca50d6b256e?utm_source=web-resource&amp;utm_medium=blog&amp;utm_campaign=ai-and-privacy\" target=\"_blank\" rel=\"noopener\">Read the research<\/a><\/p>\n<h3>Employee Data: Global Privacy Assembly Highlights AI Risks (Nov 2023)<\/h3>\n<p>In light of the risks associated with using AI systems for employment purposes (e.g. <a href=\"https:\/\/trustarc.com\/resource\/employee-data-privacy-balancing-monitoring-and-trust\/\" target=\"_blank\" rel=\"noopener\">processing employee\u2019s personal data<\/a>), the Global Privacy Assembly suggests that organizations design AI systems that are human-centric, incorporate data protection principles and privacy by design elements into AI systems, establishing legal basis for processing employee\u2019s personal data, disclosing to employees how AI systems produce automated decisions about them, and allowing employees to exercise their right to request for human intervention when an automated decision is not to their favor.<\/p>\n<p><a href=\"https:\/\/insights.nymity.com\/search\/reference\/public\/7f5ce01c-5259-4900-984b-1c3166796064?utm_source=web-resource&amp;utm_medium=blog&amp;utm_campaign=ai-and-privacy\" target=\"_blank\" rel=\"noopener\">Read the research<\/a><\/p>\n<h3>Best Practices: Global Privacy Assembly Regulatory Visions on Generative AI (Nov 2023)<\/h3>\n<p>Due to growing concerns of the unregulated use of generative AI, the GPA emphasizes implementation of basic data protection principles in the generative AI systems lifecycle (e.g. establishing legal basis for processing personal data and practicing data minimization), conducting DPIAs to identify any data risks throughout the AI lifecycle, implementing security safeguards to defend against attacks particularly aimed towards vulnerable generative AI systems, and disclosing to individuals the purposes of using generative AI.<\/p>\n<p><a href=\"https:\/\/insights.nymity.com\/search\/reference\/public\/453351b6-c887-4ae3-bff9-2975acab6782?utm_source=web-resource&amp;utm_medium=blog&amp;utm_campaign=ai-and-privacy\" target=\"_blank\" rel=\"noopener\">Read the research<\/a><\/p>\n<h3>US Executive Order Aims to Address Safety, Security, and Trustworthiness (Oct 2023)<\/h3>\n<p>The Executive Order calls on Congress to pass bipartisan data privacy legislation to protect all Americans (especially children) from the harms of AI, directs companies developing a foundation model that poses a serious risk to national interests to notify the federal government when training the model and share the results of red-team safety tests before going public (NIST will set rigorous red-team standards), aims to accelerate the development and use of privacy-preserving technologies, develop best practices to mitigate harms and maximize benefits of AI for workers, and advance the use of <a href=\"https:\/\/trustarc.com\/products\/assurance-certifications\/responsible-ai\/\">responsible AI<\/a> principles in healthcare.<\/p>\n<p><a href=\"https:\/\/insights.nymity.com\/search\/reference\/public\/b563c5b6-5e5f-43e7-985e-8606029bdfc2?utm_source=web-resource&amp;utm_medium=blog&amp;utm_campaign=ai-and-privacy\" target=\"_blank\" rel=\"noopener\">Read the research<\/a><\/p>\n\t\t\t\t\t\t\t\t\t<div class=\"question-box-multiple\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<div class=\"question-box bg-dark\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<div class=\"icon\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t<img decoding=\"async\" src=\"https:\/\/trustarc.com\/wp-content\/uploads\/2024\/02\/icon_Search_Small.svg\" class=\"attachment-full size-full\" alt=\"\" \/>\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<h4>Decoding AI Governance<\/h4>\n\t\t\t\t\t\t\t\t\t\t\t\t\t<p>Discover key pillars of AI risk governance and how to implement them effectively to build a strong, ethical AI ecosystem.<\/p>\n<a href=\"https:\/\/trustarc.com\/resource\/governance-in-the-era-of-ai-a-decision-makers-guide-to-oversight\/\" class=\"cta\">Download the ebook<\/a>\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<div class=\"question-box bg-dark\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<div class=\"icon\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t<img decoding=\"async\" src=\"https:\/\/trustarc.com\/wp-content\/uploads\/2024\/02\/icon_Checklist_Small.svg\" class=\"attachment-full size-full\" alt=\"\" \/>\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<h4>7 Steps to AI Compliance<\/h4>\n\t\t\t\t\t\t\t\t\t\t\t\t\t<p>Maintain continuous compliance with this straightforward roadmap to managing AI technology within your organization.<\/p>\n<a href=\"https:\/\/trustarc.com\/resource\/seven-steps-to-ai-compliance\/\" class=\"cta\">View the infographic<\/a>\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<div class=\"right sm\">\n\t\t\t\t<div class=\"share-it\">\n\t\t\t\t\t<strong class=\"title block uppercase\">Follow us<\/strong>\n\t\t\t\t\t<div class=\"soc-list\">\n\t\t\t\t\t\t<a href=\"https:\/\/www.linkedin.com\/company\/trustarc\/\" target=\"_blank\"><img decoding=\"async\" src=\"https:\/\/trustarc.com\/wp-content\/themes\/trustarc\/assets\/dist\/images\/li-dark.svg\" alt=\"\" \/><\/a>\n\t\t\t\t\t\t<a href=\"\nhttps:\/\/twitter.com\/TrustArc\" target=\"_blank\"><img decoding=\"async\" src=\"https:\/\/trustarc.com\/wp-content\/themes\/trustarc\/assets\/dist\/images\/tw-dark.svg\" alt=\"\" \/><\/a>\n\t\t\t\t\t\t<a href=\"javascript:;\" id=\"copy-url\"><img decoding=\"async\" src=\"https:\/\/trustarc.com\/wp-content\/themes\/trustarc\/assets\/dist\/images\/link-dark.svg\" alt=\"\" \/><\/a>\n\t\t\t\t\t\t<span class=\"copied\" style=\"display:none;\">Link Copied!<\/span>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t\t<div class=\"key-topics\">\n\t\t\t\t\t\t<strong class=\"title block uppercase\">Key Topics<\/strong>\n\t\t\t\t\t\t<ul>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<li><a href=\"https:\/\/trustarc.com\/topic-resource\/ai-privacy\/\" class=\"badge\">AI Privacy<\/a><\/li>\n\t\t\t\t\t\t\t\t\t\t\t\t\t<\/ul>\n\t\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t<div class=\"cta-area\">\n\t\t\t\t\t<p>Get the latest resources sent to your inbox<\/p>\n\t\t\t\t\t<a href=\"\/subscription-center\/\" class=\"cta\">Subscribe<\/a>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t<\/div>\n\t<\/section>\n\t","protected":false},"excerpt":{"rendered":"<p>Explore the dynamic changes in AI and privacy governance with Nymity Research. Stay ahead with the latest expert-curated global regulatory insights.<\/p>\n","protected":false},"featured_media":1248,"template":"","topic-resource":[60],"type-resource":[6],"class_list":["post-2077","resource","type-resource","status-publish","has-post-thumbnail","hentry","topic-resource-ai-privacy","type-resource-articles"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.4 (Yoast SEO v27.4) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Stay on Top of Fast-Moving AI and Privacy Regulations | TrustArc<\/title>\n<meta name=\"description\" content=\"Explore the dynamic changes in AI and privacy governance with Nymity Research. Stay ahead with the latest expert-curated global regulatory insights.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/trustarc.com\/resource\/fast-moving-ai-and-privacy-regulations\/\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"1 minute\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/trustarc.com\\\/resource\\\/fast-moving-ai-and-privacy-regulations\\\/\",\"url\":\"https:\\\/\\\/trustarc.com\\\/resource\\\/fast-moving-ai-and-privacy-regulations\\\/\",\"name\":\"Stay on Top of Fast-Moving AI and Privacy Regulations | TrustArc\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/trustarc.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/trustarc.com\\\/resource\\\/fast-moving-ai-and-privacy-regulations\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/trustarc.com\\\/resource\\\/fast-moving-ai-and-privacy-regulations\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/trustarc.com\\\/wp-content\\\/uploads\\\/2024\\\/01\\\/res-feat-city-blue-test.png\",\"datePublished\":\"2024-01-23T22:30:00+00:00\",\"dateModified\":\"2025-05-08T18:27:28+00:00\",\"description\":\"Explore the dynamic changes in AI and privacy governance with Nymity Research. Stay ahead with the latest expert-curated global regulatory insights.\",\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/trustarc.com\\\/resource\\\/fast-moving-ai-and-privacy-regulations\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/trustarc.com\\\/resource\\\/fast-moving-ai-and-privacy-regulations\\\/#primaryimage\",\"url\":\"https:\\\/\\\/trustarc.com\\\/wp-content\\\/uploads\\\/2024\\\/01\\\/res-feat-city-blue-test.png\",\"contentUrl\":\"https:\\\/\\\/trustarc.com\\\/wp-content\\\/uploads\\\/2024\\\/01\\\/res-feat-city-blue-test.png\",\"width\":610,\"height\":152},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/trustarc.com\\\/#website\",\"url\":\"https:\\\/\\\/trustarc.com\\\/\",\"name\":\"TrustArc\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/trustarc.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Stay on Top of Fast-Moving AI and Privacy Regulations | TrustArc","description":"Explore the dynamic changes in AI and privacy governance with Nymity Research. Stay ahead with the latest expert-curated global regulatory insights.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/trustarc.com\/resource\/fast-moving-ai-and-privacy-regulations\/","twitter_misc":{"Est. reading time":"1 minute"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/trustarc.com\/resource\/fast-moving-ai-and-privacy-regulations\/","url":"https:\/\/trustarc.com\/resource\/fast-moving-ai-and-privacy-regulations\/","name":"Stay on Top of Fast-Moving AI and Privacy Regulations | TrustArc","isPartOf":{"@id":"https:\/\/trustarc.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/trustarc.com\/resource\/fast-moving-ai-and-privacy-regulations\/#primaryimage"},"image":{"@id":"https:\/\/trustarc.com\/resource\/fast-moving-ai-and-privacy-regulations\/#primaryimage"},"thumbnailUrl":"https:\/\/trustarc.com\/wp-content\/uploads\/2024\/01\/res-feat-city-blue-test.png","datePublished":"2024-01-23T22:30:00+00:00","dateModified":"2025-05-08T18:27:28+00:00","description":"Explore the dynamic changes in AI and privacy governance with Nymity Research. Stay ahead with the latest expert-curated global regulatory insights.","inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/trustarc.com\/resource\/fast-moving-ai-and-privacy-regulations\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/trustarc.com\/resource\/fast-moving-ai-and-privacy-regulations\/#primaryimage","url":"https:\/\/trustarc.com\/wp-content\/uploads\/2024\/01\/res-feat-city-blue-test.png","contentUrl":"https:\/\/trustarc.com\/wp-content\/uploads\/2024\/01\/res-feat-city-blue-test.png","width":610,"height":152},{"@type":"WebSite","@id":"https:\/\/trustarc.com\/#website","url":"https:\/\/trustarc.com\/","name":"TrustArc","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/trustarc.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"}]}},"_links":{"self":[{"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/resource\/2077","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/resource"}],"about":[{"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/types\/resource"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/media\/1248"}],"wp:attachment":[{"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/media?parent=2077"}],"wp:term":[{"taxonomy":"topic-resource","embeddable":true,"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/topic-resource?post=2077"},{"taxonomy":"type-resource","embeddable":true,"href":"https:\/\/trustarc.com\/wp-json\/wp\/v2\/type-resource?post=2077"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}