What do you monitor?
Curated feeds for your role. Pick your area and get exactly the sources you need.
Compliance & Legal
Legal Research
Court opinions, regulatory guidance, and enforcement actions. AI-summarized.
Financial Compliance
SEC, OCC, FDIC, Fed, FINRA, CFPB, FASB, and state banking regulators. One feed.
Insurance Compliance
State commissioner bulletins, NAIC model laws, and DOI enforcement actions.
Environmental Compliance
EPA enforcement, state environmental agencies, PFAS regulatory updates.
Data Privacy
State AG privacy enforcement, FTC actions, CPPA rulemaking, and HIPAA enforcement.
Tax Compliance
IRS guidance changes and state tax department bulletins.
AML Compliance
FinCEN, OCC, FDIC, Fed, FATF, and banking regulator enforcement.
Labor & Employment
NLRB decisions, EEOC guidance, DOL wage updates, and 50-state labor law changes.
Immigration Law
USCIS policy changes, visa bulletin updates, CBP processing changes.
Industry
Pharma & Life Sciences
FDA warning letters, drug approvals, ICH guidelines, EMA updates, and DEA scheduling.
Energy & Utilities
FERC orders, state PUC decisions, and energy regulatory changes.
Cybersecurity
CISA KEV catalog, ICS-CERT, NSA advisories, NIST CSF, and FedRAMP updates.
Healthcare Compliance
CMS transmittals, OIG work plan, HIPAA enforcement, and Medicaid updates.
Trade & Procurement
Recent changes
Administrative Fine for Data Collection Without Security
The Swedish Privacy Protection Authority (IMY) has issued an administrative fine of SEK 100,000 against the Equality Ombudsman (DO) for insufficient security measures during personal data collection via a web form. The incident led to the inadvertent disclosure of approximately 500 tips and complaints.
GDPR Breach Fines for SL Group Companies
The Swedish Authority for Privacy Protection (IMY) has issued administrative fines of SEK 75,000 each to Aktiebolaget Storstockholms Lokaltrafik (SL) and Waxholms Ångfartygs AB (WÅAB). The fines were imposed for processing personal data related to employee sobriety tests in breach of the GDPR, specifically regarding excessive data storage and handling of potentially sensitive health data.
Apoteket and Apohem Fined for GDPR Violations
The Swedish Authority for Privacy Protection (IMY) has fined Apoteket AB SEK 37 million and Apohem AB SEK 8 million for GDPR violations. The companies improperly transferred sensitive personal data to Meta via the Meta Pixel tool, failing to implement adequate protective measures.
Sportadmin Fined SEK 6 Million for GDPR Data Leak
The Swedish Authority for Privacy Protection (IMY) has imposed an administrative fine of SEK 6 million on Sportadmin following a data leak that exposed personal data of over 2.1 million individuals. The authority found that Sportadmin did not maintain an appropriate level of security to protect the data, violating GDPR Article 32.
AEPD Resolves GDPR Breach: 492 Individuals' Data Published
The Spanish Data Protection Agency (AEPD) has initiated a sanctioning procedure against the Consejería de Hacienda y Administración Pública of the Junta de Extremadura for publishing the personal data (name, surname, and DNI) of 492 individuals on its website. The data was published without consent as part of a public employment selection process and has been accessible since September 2019.
Spanish DPA Resolution on Data Rights Claim
The Spanish Data Protection Agency (AEPD) has issued a resolution regarding a data rights claim (EXP202517310). The claimant exercised their right of access, and after initial non-compliance, the respondent has now demonstrated that the right was attended to and a response was provided.
Data Protection Commission 2024 Annual Report
The Data Protection Commission (DPC) has published its 2024 Annual Report, detailing €652 million in administrative fines issued, including significant penalties against Meta and LinkedIn. The report also highlights the conclusion of numerous inquiries and breach notifications.
DPC Fines CDETB €125,000 for GDPR Data Breach
The Irish Data Protection Commission (DPC) has fined the City of Dublin Education and Training Board (CDETB) €125,000 for a GDPR data breach. The inquiry found CDETB infringed multiple GDPR articles related to security measures, breach notification to the DPC, and notification to data subjects.
DPC Inquiry into TikTok Data Transfers to China
The Irish Data Protection Commission (DPC) has opened an inquiry into TikTok Technology Limited regarding the transfer of EEA users' personal data to servers in China. This follows TikTok's admission that limited data was stored in China, contrary to previous evidence provided to the DPC.
Data Protection Commission Opens Inquiry into Children's Health Ireland
The Data Protection Commission (DPC) has opened a formal inquiry into Children's Health Ireland (CHI) concerning the security of children's health records at Tallaght University Hospital. The inquiry follows protected disclosures and a breach notification, and will examine CHI's GDPR compliance regarding physical data security.
Browse by category
US Federal
326 sources
US State
193 sources
UK
42 sources
EU
40 sources
Canada
9 sources
State Courts
91 sources
Drug Safety
45 sources
Financial Regulation
43 sources
Legislation
42 sources
Trade & Export
36 sources
Federal Courts
25 sources
Data Protection
21 sources
Energy Regulation
13 sources
Securities Regulation
6 sources
Consumer Protection
5 sources
Insurance Regulation
5 sources
Attorneys General
3 sources
Environment
3 sources
Competition
2 sources
Labor & Employment
2 sources
Tax
1 sources
Get alerts when regulations change
Weekly digest. AI-summarized, no noise.
Free. Unsubscribe anytime.