On February 25, 2026, the Federal Trade Commission (FTC) issued an enforcement statement to promote the use of age verification technologies on the heels of its January 28 workshop on the topic. The workshop explored issues related to age verification and how these innovative tools could be used in furtherance of child safety without creating liability under the Children’s Online Privacy Protection Act (COPPA) and its implementing rule (the COPPA Rule).Continue Reading FTC Promotes Age Verification in Children’s Privacy Enforcement Statement

On February 13, 2026, the UK Competition and Markets Authority (CMA) announced its (December 2025) decision to fine Euro Car Parks £473,000 (approximately $645,000) for failing to respond to an information notice issued under the Digital Markets Competition and Consumers Act (DMCCA).Continue Reading Stay Within the Lines: UK CMA Fines Parking Company for Noncompliance with Information Notice on Consumer Protection

On February 5, 2026, South Carolina Governor Henry McMaster signed H. 3431, Age-Appropriate Code Design (SC AACD) into law, becoming the fifth state to enact an age-appropriate design code law after California, Maryland, Nebraska, and Vermont.1 The law, which went into immediate effect upon the governor’s signature, adds to the steadily increasing patchwork of teens’ and children’s online safety legislation in the U.S. Notably, covered online services are liable for treble damages incurred as result of a violation of the statute. Further, officers and employees may be held personally liable for “wil[l]ful and wanton” violations of the SC AACD. The law is already facing a legal challenge by a trade association.Continue Reading South Carolina Becomes Fifth State to Enact Age-Appropriate Design Code Law

On February 5, 2026, key reforms to the UK’s data protection regime came into force, effectuating a departure from certain aspects of the EU regime and underscoring an emerging divergence between the UK and EU frameworks. These changes introduce new flexibility in areas such as cookie consent, automated decision-making (ADM) and processing of data for scientific research purposes, while raising the bar for compliance in areas such as the handling of data relating to minors.Continue Reading Reforms to UK Data Protection and Privacy Laws Come into Force

As we ring in the new year, we want to make you aware of key issues that we expect lawmakers and regulators to focus on this year. Below are the top U.S. data, privacy, and cybersecurity issues to watch out for in 2026:Continue Reading 2026 Year in Preview: U.S. Data, Privacy, and Cybersecurity Prediction

In 2025, lawmakers and enforcement agencies around the globe have kept one issue firmly in the spotlight: the privacy and safety of minors online. This heightened focus shows no sign of abating, with early indications that companies should expect to see more legislative and regulatory initiatives in the year ahead.

In this post, we identify some of the key developments over the last 12 months and outline our predictions about what the next year may bring.Continue Reading 2026 Year in Preview: Global Minors’ Privacy and Online Safety Predictions

On November 19, 2025, the EU Commission (Commission) published a set of legislative proposals to introduce more flexibility into a number of EU digital regulations, including:

  • the Digital Omnibus, which amends a number of provisions of the General Data Protection Regulation (GDPR) and the ePrivacy Directive, as well as the Data Act; and
  • the AI Omnibus, which focuses on the AI Act (jointly, the Omnibus Proposals).

Continue Reading The EU Omnibus Proposals Intend to Introduce More Flexibility in the GDPR, AI Act, and Other EU Digital Regulations