“Dark patterns” have increasingly been the focus of legislative and regulatory scrutiny. Yet the phrase is never used in business. No business designs a website, mobile app, or business process with the instruction, “let’s...more
2/26/2025
/ Consumer Privacy Rights ,
Consumer Protection Laws ,
Data Privacy ,
Disclosure Requirements ,
Endorsements ,
Enforcement Actions ,
Federal Trade Commission (FTC) ,
General Data Protection Regulation (GDPR) ,
Privacy Laws ,
State Privacy Laws ,
Unfair or Deceptive Trade Practices
With the governor’s signature, Colorado has enacted a new consumer protection law focused on artificial intelligence (“AI”) systems. The “Colorado AI Act” will go into effect on February 1, 2026. It will have a minor impact...more
10/30/2024
/ Algorithms ,
Artificial Intelligence ,
Automated Decision Systems (ADS) ,
Colorado ,
Consumer Protection Laws ,
Disclosure Requirements ,
Enforcement ,
Financial Services Industry ,
Healthcare ,
Hiring & Firing ,
Machine Learning ,
Risk Management ,
Software Developers ,
State Attorneys General
This is part four of our examination of the European Union’s new artificial intelligence law, the (“EU AI Act”). In part one, we introduced the scope of the EU AI Act and discussed what types of AI systems are outright...more
As of May 1, Utah has joined the expanding patchwork of states with laws specifically targeting artificial intelligence (AI) systems. The Utah Artificial Intelligence Policy Act (UAIPA), signed into law in March of this year,...more
The rapid spread of Artificial Intelligence (AI) systems in recent years has overlapped with the enactment of comprehensive privacy laws by multiple U.S. states. Aside from being generally applicable to AI systems in the...more
9/22/2023
/ Artificial Intelligence ,
Automated Decision Systems (ADS) ,
California Privacy Rights Act (CPRA) ,
Data Controller ,
Data Profiling ,
Disclosure Requirements ,
Online Gaming ,
Online Platforms ,
Opt-Outs ,
Personal Data ,
Reputational Injury ,
Social Media ,
State Privacy Laws
On March 9, 2022, the U.S. Securities and Exchange Commission (SEC) proposed new rules that would require public companies to report detailed information about material cybersecurity incidents affecting their business and...more