Changeflow GovPing Data Privacy

Recent changes

Favicon for www.hhs.gov

Deer Oaks HIPAA Resolution Agreement and Corrective Action Plan

The US Department of Health and Human Services (HHS) Office for Civil Rights (OCR) has entered into a Resolution Agreement and Corrective Action Plan with Deer Oaks, a covered entity under HIPAA. The agreement resolves allegations of impermissible disclosure of protected health information (PHI) and a subsequent data breach, requiring Deer Oaks to pay a resolution amount and implement corrective actions.

Urgent Enforcement Data Privacy
Favicon for www.hhs.gov

HHS - Syracuse ASC Pays $250,000 for HIPAA Violations

The U.S. Department of Health and Human Services (HHS) has reached a resolution agreement with Syracuse ASC, L.L.C. for violations of HIPAA Rules. Syracuse ASC will pay $250,000 and comply with a Corrective Action Plan to address failures in risk analysis and timely breach notifications.

Urgent Enforcement Healthcare
Favicon for www.hhs.gov

Comstar, LLC HIPAA Resolution Agreement and Corrective Action Plan

The US Department of Health and Human Services (HHS) has entered into a resolution agreement with Comstar, LLC, a business associate under HIPAA. Comstar will pay $75,000 and comply with a corrective action plan to resolve alleged violations of HIPAA's Privacy, Security, and Breach Notification Rules following a ransomware attack affecting 585,621 individuals.

Urgent Enforcement Data Privacy
Favicon for www.hhs.gov

MMG Fusion Settles HIPAA Violations for $10,000

The US Department of Health and Human Services (HHS) Office for Civil Rights (OCR) has reached a resolution agreement with MMG Fusion, LLC, a business associate handling protected health information (PHI). MMG Fusion will pay $10,000 to settle alleged violations of HIPAA's Privacy, Security, and Breach Notification Rules following a data breach that exposed patient information.

Priority review Enforcement Healthcare
18h ago IAPP Privacy News
Favicon for iapp.org

US House Committee Advances KIDS Act and Other Online Safety Bills

The U.S. House Committee on Energy and Commerce advanced the KIDS Act, Sammy's Law, and the App Store Accountability Act to a full House vote. These bills aim to enhance children's online safety by addressing issues like dangerous content, age verification, and app store policies.

Priority review Rule Data Privacy
18h ago IAPP Privacy News
Favicon for iapp.org

Maine Privacy Bill Advances, Oregon AI Chatbot Bill Clears Legislature

Maine's legislature has advanced a comprehensive privacy bill, the Maine Online Data Privacy Act, through both chambers. Oregon's Senate Bill 1546, an AI chatbot safety bill, has also cleared its state legislature and is heading to the governor. Both bills represent significant state-level regulatory developments.

Priority review Rule Data Privacy
18h ago IAPP Privacy News
Favicon for iapp.org

AI Training Compliance Guidance Post-SRB Ruling

This guidance analyzes the impact of the EU Court of Justice's Single Resolution Board ruling on AI training compliance for engineers. It outlines two pathways for compliance, emphasizing engineering choices in defining identifiability and data protection.

Priority review Guidance Data Privacy
18h ago IAPP Privacy News
Favicon for iapp.org

South Korea Overhauls PIPA with 10% Turnover Fines and CEO Accountability

South Korea has significantly amended its Personal Information Protection Act (PIPA), introducing fines up to 10% of total turnover and assigning direct supervisory liability to CEOs. These changes, effective September 11, 2026, aim to strengthen deterrence and promote proactive data protection investment.

Urgent Rule Data Privacy
18h ago IAPP Privacy News
Favicon for iapp.org

EU AI Act Omnibus: New Compliance Deadlines and Deepfake Ban

Members of the European Parliament have reached a preliminary agreement on amendments to the EU AI Act, including extended compliance deadlines for high-risk systems and a ban on non-consensual deepfakes. The agreement aims to provide legal certainty and allow more time for technical standards and guidance development.

Priority review Rule Data Privacy
Favicon for www.aepd.es

AEPD Resolution on GDPR Rights Procedure

The Spanish Data Protection Agency (AEPD) has issued a resolution regarding a GDPR rights procedure. The resolution addresses a complaint where a data subject exercised their right of access, and the data controller failed to provide a legally established response within the stipulated timeframe. The AEPD admitted the claim for processing.

Priority review Enforcement Data Privacy

Showing 71–80 of 338 changes

1 6 7 8 9 10 34

41 monitored sources

ICO Decision Notices

Updated 4d ago 88 recent

AEPD Resolutions (Spain DPA)

Updated 1d ago 17 recent

WA Data Breach Notifications

Updated 2d ago 12 recent

ICO News & Blogs

Updated 1d ago 8 recent

EDPB Documents (GDPR)

Updated 1d ago 8 recent

EC Digital Strategy News (AI Act)

Updated 4d ago 8 recent

CA CPPA Newsroom

Updated 8d ago 7 recent

Dutch DPA News

Updated 10h ago 6 recent

CA OAG Privacy Enforcement Actions

Updated 23d ago 6 recent

FTC Press Releases

Updated 15d ago 6 recent

PCPD Media Statements (HK)

Updated 10h ago 5 recent

PDPC Announcements (Singapore)

Updated 10h ago 5 recent

Croatia AZOP News

Updated 10h ago 5 recent

Hungary NAIH News

Updated 10h ago 5 recent

Romania ANSPDCP Press

Updated 10h ago 5 recent

Greece HDPA News

Updated 10h ago 5 recent

Luxembourg CNPD News

Updated 10h ago 5 recent

Austria DSB News

Updated 10h ago 5 recent

Garante Privacy News

Updated 10h ago 5 recent

Canada OPC News & Actions

Updated 11h ago 5 recent

CPPA California Privacy Rulemaking

Updated 17h ago 5 recent

HHS OCR HIPAA Enforcement

Updated 17h ago 5 recent

IAPP Privacy News

Updated 18h ago 5 recent

EU AI Act Updates

Updated 14h ago 5 recent

NY AG Technology & Privacy Enforcement

Updated 16d ago 5 recent

FTC Cases & Proceedings

Updated 14d ago 4 recent

Canada OPC PIPEDA Investigations

Updated 11h ago 4 recent

OAIC Media Centre

Updated 10h ago 4 recent

EDPB News

Updated 11d ago 3 recent

Garante Privacy Newsletter (Italy DPA)

Updated 4d ago 2 recent

IMY News (Sweden DPA)

Updated 18d ago 2 recent

ICO GDPR Guidance

Updated 29d ago 1 recent

CNIL News (France DPA)

Updated 7d ago 1 recent

APD/GBA News (Belgium DPA)

Updated 1mo ago 0 recent

BfDI Press Releases (Germany DPA)

Updated 1mo ago 0 recent

DPC Press Releases (Ireland DPA)

Updated 1mo ago 0 recent

EDPB Guidelines & Recommendations

Updated 1mo ago 0 recent

EDPB Public Consultations

Updated 1mo ago 0 recent

CNIL Sanctions & Enforcement

Updated -- 0 recent

Colorado AG Data Protection

Updated -- 0 recent

ICO Enforcement Actions

Updated 1mo ago 0 recent

Need to monitor something else?

GovPing covers the common sources. For niche pages specific to your team, add custom URL monitoring with Changeflow.

Get Data Privacy alerts

Daily digest of data privacy regulatory changes. AI-summarized, no noise.

Free. Unsubscribe anytime.