US and World Privacy News September 19th - The National Law Review
Headlines that Matter for Privacy and Data Security.
US News
California Exemptions for B2B and Employee Data Set To Expire
With August 31 marking the last day of the legislative session, the California legislature’s failure to extend business-to-business and employee data exemptions may result in new requirements for companies within the California Privacy Rights Act’s (CPRA) scope that previously benefitted from these carveouts. Specifically, the exemptions apply to personal information reflecting communications where a covered individual is acting in a business-to-business commercial transaction and to the personal information of job applicants, employees, and independent contractors. Currently, in these situations, businesses are not required to comply with certain sections of the California Consumer Privacy Act (CCPA) that govern retention, data subject rights, use, and selling. However, without action, this will come to an end on January 1, 2023. Instead, companies within the CPRA’s scope that handle business-to-business and employee information will now be subject to all requirements of the CPRA. As this is a major change, businesses should start preparing to comply with the CPRA not only for consumer data, but also for business and employee data as soon as possible.
California AG Sends Letters to Hospitals To Inquire About Algorithms in Healthcare
California Attorney General Rob Bonta sent requests to 30 hospital CEOs to gather information about how algorithms are...
Read Full Story: https://www.natlawreview.com/article/privacy-report-california-exemptions-b2b...