Topics
Browse posts by category and tag — every topic we cover, with the latest pieces under each.
Tags
- #compliance 10
- #eu-ai-act 3
- #gdpr 3
- #llm 3
- #training-data 2
- #ab-2013 1
- #admt 1
- #ai-assistants 1
- #ai-office 1
- #article-22 1
- #article-50 1
- #automated-decision-making 1
- #automated-decisionmaking 1
- #ccpa 1
- #cnil 1
- #colorado-ai-act 1
- #cppa 1
- #cpra 1
- #cross-border-transfers 1
- #data-retention 1
- #disclosure 1
- #dpia 1
- #edpb 1
- #enforcement 1
- #foundation-models 1
- #gdpr-article-35 1
- #human-review 1
- #illinois 1
- #legitimate-interest 1
- #meta 1
- #policy 1
- #privacy 1
- #regulator 1
- #right-to-erasure 1
- #risk-assessment 1
- #scc 1
- #schrems-ii 1
- #state-ai-law 1
- #synthetic-content 1
- #traiga 1
- #transparency 1
Categories
policy 10 posts
- US State AI Laws in 2026: Colorado, Texas, California, IllinoisA roundup of the US state AI laws shaping 2026 — Colorado's stalled SB 24-205, Texas TRAIGA, California's AB 2013, and Illinois HB 3773 — with verified statuses and dates.
- CCPA, CPRA, and the New ADMT Rules: What They Mean for LLM ProductsCalifornia's finalized ADMT regulations bring pre-use notice, opt-out, appeal, and risk-assessment duties to automated decisionmaking — including many LLM workflows. The timeline and the test.
- Training-Data Privacy and Data-Subject Rights Against AI ModelsEDPB Opinion 28/2024 and CNIL's 2025 guidance reshaped how GDPR applies to AI training data — when a model is 'anonymous,' the legitimate-interest basis, and the limits of the right to erasure.
- The Privacy Risks of AI Chat Assistants: Retention, Review, TrainingConsumer AI assistants increasingly default to using your conversations for training, human review, and multi-year retention. The privacy and legal analysis behind the 2025 policy shifts.
- Cross-Border LLM Data Transfers: SCC Compliance After Schrems IIMost LLM deployments cross borders. The Standard Contractual Clauses framework, post-Schrems II case law, and the supplementary measures requirement apply directly. Here's the working compliance pattern.
- DPIA Template for LLM Deployment: A Working StructureA practical Data Protection Impact Assessment structure for LLM-integrated workflows. Includes the risk factors GDPR Article 35 requires, the AI Act overlay, and the sections most often skipped.