BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//fru.dev//Rulebook//EN
CALSCALE:GREGORIAN
METHOD:PUBLISH
X-WR-CALNAME:Regulation deadlines (Rulebook)
X-WR-CALDESC:Compliance deadlines tracked at rulebook.fru.dev
REFRESH-INTERVAL;VALUE=DURATION:P1D
X-PUBLISHED-TTL:P1D
BEGIN:VEVENT
UID:deadline-3@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Australia Cyber Security Act (ransomware reporting): Ransomware rep
 orting moves to compliance phase
DESCRIPTION:The education-first phase (30 May-31 Dec 2025) ends\; Home Affa
 irs moves to a compliance and education approach for missed reports.\n\nCy
 ber Security Act 2024 (Cth) and Cyber Security (Ransomware Payment Reporti
 ng) Rules 2025 (Australia)\n\nSource: https://www.homeaffairs.gov.au/cyber
 -security-subsite/files/factsheet-ransomware-payment-reporting.pdf\n\nhttp
 s://rulebook.fru.dev/regulations/au-cyber-security-act
URL:https://rulebook.fru.dev/regulations/au-cyber-security-act
CATEGORIES:Australia,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-163@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:California AB 2013 (AI training data transparency): Training-data d
 ocumentation due
DESCRIPTION:Documentation must be posted for GenAI systems released since J
 anuary 1\, 2022\, and before each later release or substantial modificatio
 n.\n\nCalifornia AB 2013\, Generative Artificial Intelligence: Training Da
 ta Transparency (Stats. 2024\, ch. 817) (California)\n\nSource: https://le
 ginfo.legislature.ca.gov/faces/billNavClient.xhtml?bill_id=202320240AB2013
 \n\nhttps://rulebook.fru.dev/regulations/us-ca-ab2013
URL:https://rulebook.fru.dev/regulations/us-ca-ab2013
CATEGORIES:California,ai,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-189@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:California AI Transparency Act (SB 942): Original operative date (s
 uperseded)
DESCRIPTION:Original SB 942 date\; delayed to August 2\, 2026 by AB 853.\n\
 nCalifornia AI Transparency Act (SB 942\, Stats. 2024\, ch. 291)\, as amen
 ded by AB 853 (Stats. 2025\, ch. 674) (California)\n\nSource: https://legi
 nfo.legislature.ca.gov/faces/billNavClient.xhtml?bill_id=202320240SB942\n\
 nhttps://rulebook.fru.dev/regulations/us-ca-sb942
URL:https://rulebook.fru.dev/regulations/us-ca-sb942
CATEGORIES:California,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-176@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:California Delete Act / DROP: DROP opens to consumers
DESCRIPTION:Consumers can submit a single deletion request to all registere
 d data brokers through DROP.\n\nCalifornia Delete Act (SB 362\, 2023)\, Ca
 l. Civ. Code 1798.99.80 et seq.\, and DROP regulations (California)\n\nSou
 rce: https://www.cppa.ca.gov/data_brokers/\n\nhttps://rulebook.fru.dev/reg
 ulations/us-ca-delete-act
URL:https://rulebook.fru.dev/regulations/us-ca-delete-act
CATEGORIES:California,privacy,data-access
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-182@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:California SB 243 (companion chatbots): Chatbot safeguards apply
DESCRIPTION:AI disclosure\, suicide and self-harm protocols\, and minor pro
 tections apply.\n\nCalifornia SB 243\, Companion Chatbots (Stats. 2025\, c
 h. 677) (California)\n\nSource: https://leginfo.legislature.ca.gov/faces/b
 illNavClient.xhtml?bill_id=202520260SB243\n\nhttps://rulebook.fru.dev/regu
 lations/us-ca-sb243
URL:https://rulebook.fru.dev/regulations/us-ca-sb243
CATEGORIES:California,ai,children,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-185@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:California SB 53 (TFAIA): Frontier developer obligations apply
DESCRIPTION:Frontier AI frameworks\, transparency reports\, critical safety
  incident reporting (15 days\, or 24 hours for imminent risk of death or s
 erious injury) and whistleblower protections apply.\n\nCalifornia SB 53\, 
 Transparency in Frontier Artificial Intelligence Act (Stats. 2025\, ch. 13
 8) (California)\n\nSource: https://leginfo.legislature.ca.gov/faces/billNa
 vClient.xhtml?bill_id=202520260SB53\n\nhttps://rulebook.fru.dev/regulation
 s/us-ca-sb53
URL:https://rulebook.fru.dev/regulations/us-ca-sb53
CATEGORIES:California,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-168@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:CCPA / CPRA: New CCPA regulations take effect
DESCRIPTION:ADMT\, risk assessment\, cybersecurity audit and updated CCPA r
 egulations become effective\; risk assessments required for new high-risk 
 processing.\n\nCalifornia Consumer Privacy Act of 2018\, as amended by the
  California Privacy Rights Act of 2020 (Cal. Civ. Code 1798.100 et seq.) a
 nd CPPA regulations (Cal. Code Regs. tit. 11\, 7000 et seq.) (California)\
 n\nSource: https://cppa.ca.gov/regulations/ccpa_updates.html\n\nhttps://ru
 lebook.fru.dev/regulations/us-ca-ccpa
URL:https://rulebook.fru.dev/regulations/us-ca-ccpa
CATEGORIES:California,privacy,ai,cybersecurity,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-32@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:China Cybersecurity Law: 2025 amendments take effect
DESCRIPTION:Higher fines\, first-violation fines\, AI governance provisions
  and PIPL-alignment duties apply under the 28 Oct 2025 NPCSC Decision.\n\n
 Cybersecurity Law of the People's Republic of China (as amended by the NPC
  Standing Committee Decision of 28 October 2025) (China)\n\nSource: https:
 //www.gov.cn/yaowen/liebiao/202510/content_7046194.htm\n\nhttps://rulebook
 .fru.dev/regulations/cn-csl
URL:https://rulebook.fru.dev/regulations/cn-csl
CATEGORIES:China,cybersecurity,data-residency,ai,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-225@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Delaware Personal Data Privacy Act (DPDPA): Opt-out preference sign
 als must be honored
DESCRIPTION:Controllers must allow opt-out of targeted advertising and sale
  via opt-out preference signals (12D-106).\n\nDelaware Personal Data Priva
 cy Act (HB 154)\, 6 Del. C. ch. 12D (Delaware)\n\nSource: https://delcode.
 delaware.gov/title6/c012d/index.html\n\nhttps://rulebook.fru.dev/regulatio
 ns/us-de-dpdpa
URL:https://rulebook.fru.dev/regulations/us-de-dpdpa
CATEGORIES:Delaware,privacy,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-96@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:GDPR: GDPR Procedural Regulation enters into force
DESCRIPTION:Regulation (EU) 2025/2518\, published in the OJ on 12 December 
 2025\, enters into force on the twentieth day after publication.\n\nRegula
 tion (EU) 2016/679 (General Data Protection Regulation) (European Union)\n
 \nSource: https://eur-lex.europa.eu/eli/reg/2025/2518/oj\n\nhttps://rulebo
 ok.fru.dev/regulations/eu-gdpr
URL:https://rulebook.fru.dev/regulations/eu-gdpr
CATEGORIES:European Union,privacy,breach-notification,data-access,children,
 biometrics,health
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-111@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Hong Kong Critical Infrastructure Cyber Ordinance: PCICSO comes int
 o operation
DESCRIPTION:Commissioner's Office is established and designation of CIOs be
 gins\; obligations apply to designated operators.\n\nProtection of Critica
 l Infrastructures (Computer Systems) Ordinance (Cap. 653) (Hong Kong)\n\nS
 ource: https://www.info.gov.hk/gia/general/202506/27/P2025062700238.htm\n\
 nhttps://rulebook.fru.dev/regulations/hk-pcico
URL:https://rulebook.fru.dev/regulations/hk-pcico
CATEGORIES:Hong Kong,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-245@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Illinois AI in Employment Law (HB 3773): AI anti-discrimination and
  notice duties apply
DESCRIPTION:Prohibition on discriminatory AI use and the employee notice re
 quirement take effect.\n\nIllinois HB 3773 (Public Act 103-0804)\, amendin
 g the Illinois Human Rights Act on artificial intelligence in employment (
 Illinois)\n\nSource: https://www.ilga.gov/ftp/legislation/103/BillStatus/H
 TML/10300HB3773.html\n\nhttps://rulebook.fru.dev/regulations/us-il-hb3773
URL:https://rulebook.fru.dev/regulations/us-il-hb3773
CATEGORIES:Illinois,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-248@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Indiana Consumer Data Protection Act (ICDPA): ICDPA takes effect
DESCRIPTION:Consumer rights and controller/processor obligations apply\; as
 sessments required for processing activities created on or after this date
 .\n\nIndiana Consumer Data Protection Act (SEA 5\, 2023)\, Ind. Code 24-15
  (Indiana)\n\nSource: https://iga.in.gov/legislative/2023/bills/senate/5/d
 etails\n\nhttps://rulebook.fru.dev/regulations/us-in-icdpa
URL:https://rulebook.fru.dev/regulations/us-in-icdpa
CATEGORIES:Indiana,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-249@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Kentucky Consumer Data Protection Act (KCDPA): KCDPA takes effect
DESCRIPTION:Consumer rights and controller/processor obligations apply (HB 
 15 section 12).\n\nKentucky Consumer Data Protection Act (HB 15\, 2024)\, 
 KRS 367.3611-367.3629 (Kentucky)\n\nSource: https://apps.legislature.ky.go
 v/recorddocuments/bill/24RS/hb15/bill.pdf\n\nhttps://rulebook.fru.dev/regu
 lations/us-ky-kcdpa
URL:https://rulebook.fru.dev/regulations/us-ky-kcdpa
CATEGORIES:Kentucky,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-262@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:New Hampshire Privacy Act: Mandatory 60-day cure period expires
DESCRIPTION:The AG's obligation to issue a cure notice ended Dec 31\, 2025\
 ; from Jan 1\, 2026 cure opportunities are discretionary (RSA 507-H:11 II-
 III).\n\nNew Hampshire Privacy Act (SB 255\, 2024)\, RSA chapter 507-H (Ne
 w Hampshire)\n\nSource: https://gc.nh.gov/rsa/html/LII/507-H/507-H-11.htm\
 n\nhttps://rulebook.fru.dev/regulations/us-nh-privacy
URL:https://rulebook.fru.dev/regulations/us-nh-privacy
CATEGORIES:New Hampshire,privacy,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-285@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Oregon OCPA: Cure period sunsets
DESCRIPTION:The AG's 30-day notice-and-cure requirement expires\; enforceme
 nt can proceed without a cure opportunity.\n\nOregon Consumer Privacy Act 
 (SB 619\, 2023) (Oregon)\n\nSource: https://www.oregonlegislature.gov/bill
 s_laws/ors/ors646A.html\n\nhttps://rulebook.fru.dev/regulations/us-or-ocpa
URL:https://rulebook.fru.dev/regulations/us-or-ocpa
CATEGORIES:Oregon,privacy,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-286@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Oregon OCPA: Universal opt-out signals must be honored
DESCRIPTION:Controllers must honor opt-out preference signals such as Globa
 l Privacy Control.\n\nOregon Consumer Privacy Act (SB 619\, 2023) (Oregon)
 \n\nSource: https://www.doj.state.or.us/consumer-protection/id-theft-data-
 breaches/privacy/\n\nhttps://rulebook.fru.dev/regulations/us-or-ocpa
URL:https://rulebook.fru.dev/regulations/us-or-ocpa
CATEGORIES:Oregon,privacy,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-287@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Oregon OCPA: Sale ban on precise geolocation and under-16 data (HB 
 2008)
DESCRIPTION:Selling precise geolocation (1\,750-ft radius) and the personal
  data of consumers the controller knows or willfully disregards are under 
 16 is prohibited.\n\nOregon Consumer Privacy Act (SB 619\, 2023) (Oregon)\
 n\nSource: https://www.doj.state.or.us/consumer-protection/id-theft-data-b
 reaches/privacy/\n\nhttps://rulebook.fru.dev/regulations/us-or-ocpa
URL:https://rulebook.fru.dev/regulations/us-or-ocpa
CATEGORIES:Oregon,privacy,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-289@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Rhode Island RIDTPPA: RIDTPPA takes effect
DESCRIPTION:All provisions of R.I. Gen. Laws ch. 6-48.1 apply (P.L. 2024\, 
 ch. 430/453\, effective Jan 1\, 2026).\n\nRhode Island Data Transparency a
 nd Privacy Protection Act (Rhode Island)\n\nSource: https://webserver.rile
 gislature.gov/Statutes/TITLE6/6-48.1/INDEX.htm\n\nhttps://rulebook.fru.dev
 /regulations/us-ri-dtppa
URL:https://rulebook.fru.dev/regulations/us-ri-dtppa
CATEGORIES:Rhode Island,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-304@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:TRAIGA: TRAIGA takes effect
DESCRIPTION:Prohibited-practice rules\, AG enforcement\, sandbox program an
 d government AI disclosure duties apply.\n\nTexas Responsible Artificial I
 ntelligence Governance Act (HB 149\, 89th Legislature) (Texas)\n\nSource: 
 https://capitol.texas.gov/BillLookup/History.aspx?LegSess=89R&Bill=HB149\n
 \nhttps://rulebook.fru.dev/regulations/us-tx-traiga
URL:https://rulebook.fru.dev/regulations/us-tx-traiga
CATEGORIES:Texas,ai,biometrics
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-324@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Vietnam PDPL: PDPL and Decree 356/2025 take effect
DESCRIPTION:Personal data protection obligations\, DPIA/TIA filing and pena
 lty framework apply\; Decree 13/2023 replaced.\n\nLaw on Personal Data Pro
 tection (Law No. 91/2025/QH15) (Vietnam)\n\nSource: https://vanban.chinhph
 u.vn/?pageid=27160&docid=214590\n\nhttps://rulebook.fru.dev/regulations/vn
 -pdpl
URL:https://rulebook.fru.dev/regulations/vn-pdpl
CATEGORIES:Vietnam,privacy,data-residency,children,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-312@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Virginia VCDPA: Under-16 social media time limit (SB 854) takes eff
 ect
DESCRIPTION:Social media platforms must use commercially reasonable age det
 ermination and cap users under 16 at 1 hour/day unless a parent consents. 
 A preliminary injunction issued Feb 27\, 2026 bars enforcement.\n\nVirgini
 a Consumer Data Protection Act (SB 1392 / HB 2307\, 2021) (Virginia)\n\nSo
 urce: https://netchoice.org/wp-content/uploads/2026/02/Virginia-PI-Opinion
 _Granted.pdf\n\nhttps://rulebook.fru.dev/regulations/us-va-vcdpa
URL:https://rulebook.fru.dev/regulations/us-va-vcdpa
CATEGORIES:Virginia,privacy,children,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-124@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260122
DTEND;VALUE=DATE:20260123
SUMMARY:South Korea AI Basic Act: AI Basic Act and Enforcement Decree take 
 effect
DESCRIPTION:Transparency\, labeling\, high-impact AI\, and domestic represe
 ntative obligations apply (fines deferred during the grace period).\n\nFra
 mework Act on the Development of Artificial Intelligence and Establishment
  of a Foundation for Trust (AI Basic Act) (South Korea)\n\nSource: https:/
 /www.law.go.kr/법령/인공지능발전과신뢰기반조성등에관한
 기본법\n\nhttps://rulebook.fru.dev/regulations/kr-ai-basic-act
URL:https://rulebook.fru.dev/regulations/kr-ai-basic-act
CATEGORIES:South Korea,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-177@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260131
DTEND;VALUE=DATE:20260201
SUMMARY:California Delete Act / DROP: Annual data broker registration deadl
 ine
DESCRIPTION:Data brokers must register with CalPrivacy and pay the annual f
 ee ($6\,000 for 2026) by January 31.\n\nCalifornia Delete Act (SB 362\, 20
 23)\, Cal. Civ. Code 1798.99.80 et seq.\, and DROP regulations (California
 )\n\nSource: https://www.cppa.ca.gov/data_brokers/\n\nhttps://rulebook.fru
 .dev/regulations/us-ca-delete-act
URL:https://rulebook.fru.dev/regulations/us-ca-delete-act
CATEGORIES:California,privacy,data-access
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-256@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260131
DTEND;VALUE=DATE:20260201
SUMMARY:Minnesota Consumer Data Privacy Act (MCDPA): 30-day cure period exp
 ires
DESCRIPTION:The requirement that the AG send a warning letter and allow 30 
 days to cure before suing expires Jan 31\, 2026 (325M.20(a)).\n\nMinnesota
  Consumer Data Privacy Act (HF 4757\, 2024 Minn. Laws ch. 121\, art. 5)\, 
 Minn. Stat. 325M.10-325M.21 (Minnesota)\n\nSource: https://www.revisor.mn.
 gov/statutes/cite/325M.20\n\nhttps://rulebook.fru.dev/regulations/us-mn-mc
 dpa
URL:https://rulebook.fru.dev/regulations/us-mn-mcdpa
CATEGORIES:Minnesota,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-201@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260201
DTEND;VALUE=DATE:20260202
SUMMARY:Colorado AI Act: Original effective date (superseded)
DESCRIPTION:Original SB 24-205 date\; postponed by SB 25B-004\, so no oblig
 ations applied.\n\nColorado SB 24-205 (Consumer Protections for Artificial
  Intelligence)\, as delayed by SB 25B-004 and repealed and reenacted by SB
  26-189 (Automated Decision-Making Technology) (Colorado)\n\nSource: https
 ://leg.colorado.gov/bills/sb24-205\n\nhttps://rulebook.fru.dev/regulations
 /us-co-ai-act
URL:https://rulebook.fru.dev/regulations/us-co-ai-act
CATEGORIES:Colorado,ai,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-150@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260205
DTEND;VALUE=DATE:20260206
SUMMARY:Data (Use and Access) Act: Stage 3: main data protection changes co
 mmence
DESCRIPTION:Recognised legitimate interests\, ADM reforms\, DSAR changes\, 
 international transfer test\, cookie exemptions and PECR fines at UK GDPR 
 levels apply (Commencement No. 6 Regulations 2026\, reg. 2).\n\nData (Use 
 and Access) Act 2025 (United Kingdom)\n\nSource: https://www.legislation.g
 ov.uk/uksi/2026/82/contents/made\n\nhttps://rulebook.fru.dev/regulations/u
 k-duaa
URL:https://rulebook.fru.dev/regulations/uk-duaa
CATEGORIES:United Kingdom,privacy,data-access,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-155@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260205
DTEND;VALUE=DATE:20260206
SUMMARY:UK GDPR: DUAA amendments to UK GDPR commence
DESCRIPTION:Main Data (Use and Access) Act 2025 Part 5 amendments (recognis
 ed legitimate interests\, ADM\, DSAR\, transfers\, cookies\, PECR fines) a
 pply.\n\nUK General Data Protection Regulation and Data Protection Act 201
 8 (United Kingdom)\n\nSource: https://www.legislation.gov.uk/uksi/2026/82/
 contents/made\n\nhttps://rulebook.fru.dev/regulations/uk-gdpr
URL:https://rulebook.fru.dev/regulations/uk-gdpr
CATEGORIES:United Kingdom,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-239@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260216
DTEND;VALUE=DATE:20260217
SUMMARY:HIPAA: Notice of Privacy Practices updates (Part 2 alignment)
DESCRIPTION:Covered entities must update Notices of Privacy Practices under
  45 CFR 164.520 for the 2024 Part 2 (substance use disorder records) chang
 es\; this NPP piece survived the Purl vacatur.\n\nHIPAA Privacy\, Security
  and Breach Notification Rules (45 CFR Parts 160 and 164) (United States (
 Federal))\n\nSource: https://www.federalregister.gov/documents/2024/04/26/
 2024-08503/hipaa-privacy-rule-to-support-reproductive-health-care-privacy\
 n\nhttps://rulebook.fru.dev/regulations/us-hipaa
URL:https://rulebook.fru.dev/regulations/us-hipaa
CATEGORIES:United States (Federal),privacy,health,cybersecurity,breach-noti
 fication
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-313@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260227
DTEND;VALUE=DATE:20260228
SUMMARY:Virginia VCDPA: SB 854 preliminarily enjoined (NetChoice v. Jones)
DESCRIPTION:E.D. Va. preliminarily enjoined enforcement of the SB 854 socia
 l media time-limit provisions on First Amendment grounds\; Virginia has ap
 pealed.\n\nVirginia Consumer Data Protection Act (SB 1392 / HB 2307\, 2021
 ) (Virginia)\n\nSource: https://netchoice.org/wp-content/uploads/2026/02/V
 irginia-PI-Opinion_Granted.pdf\n\nhttps://rulebook.fru.dev/regulations/us-
 va-vcdpa
URL:https://rulebook.fru.dev/regulations/us-va-vcdpa
CATEGORIES:Virginia,privacy,children,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-321@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260301
DTEND;VALUE=DATE:20260302
SUMMARY:Vietnam AI Law: AI Law takes effect
DESCRIPTION:Risk classification\, transparency and labeling obligations app
 ly to new AI systems.\n\nLaw on Artificial Intelligence (Law No. 134/2025/
 QH15) (Vietnam)\n\nSource: https://beta-en.mic.gov.vn/first-ever-law-on-ar
 tificial-intelligence-approved-197251215231241888.htm\n\nhttps://rulebook.
 fru.dev/regulations/vn-ai-law
URL:https://rulebook.fru.dev/regulations/vn-ai-law
CATEGORIES:Vietnam,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-125@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260310
DTEND;VALUE=DATE:20260311
SUMMARY:South Korea PIPA: 2026 PIPA amendment promulgated (Act No. 21445)
DESCRIPTION:Amendment raising fines to 10% of revenue and adding CEO accoun
 tability promulgated.\n\nPersonal Information Protection Act (as amended b
 y Act No. 21445\, 2026) (South Korea)\n\nSource: https://www.law.go.kr/법
 령/개인정보보호법\n\nhttps://rulebook.fru.dev/regulations/kr-pipa
URL:https://rulebook.fru.dev/regulations/kr-pipa
CATEGORIES:South Korea,privacy,breach-notification,biometrics,data-residenc
 y
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-10@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260317
DTEND;VALUE=DATE:20260318
SUMMARY:Brazil ECA Digital: ECA Digital in force
DESCRIPTION:Art. 41-A (as set by Law 15.352/2026\, following MP 1.319/2025)
  fixes entry into force on 17 March 2026.\n\nEstatuto Digital da Criança 
 e do Adolescente (Law No. 15.211/2025) (Brazil)\n\nSource: https://www.pla
 nalto.gov.br/ccivil_03/_ato2023-2026/2025/lei/L15211.htm\n\nhttps://rulebo
 ok.fru.dev/regulations/br-eca-digital
URL:https://rulebook.fru.dev/regulations/br-eca-digital
CATEGORIES:Brazil,children,online-safety,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-279@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260327
DTEND;VALUE=DATE:20260328
SUMMARY:NY RAISE Act: Chapter amendment S8828 signed
DESCRIPTION:Chapter amendment (ch. 96) finalizes the RAISE Act text.\n\nNew
  York Responsible AI Safety and Education (RAISE) Act (S6953-B/A6453-B of 
 2025)\, as amended by chapter amendment S8828 of 2026 (New York)\n\nSource
 : https://www.nysenate.gov/legislation/bills/2025/S8828\n\nhttps://ruleboo
 k.fru.dev/regulations/us-ny-raise
URL:https://rulebook.fru.dev/regulations/us-ny-raise
CATEGORIES:New York,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-243@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260401
DTEND;VALUE=DATE:20260402
SUMMARY:Illinois BIPA: Seventh Circuit: amendment applies retroactively
DESCRIPTION:Clay v. Union Pacific (No. 25-2185) holds the damages amendment
  is remedial and applies to pending cases.\n\nIllinois Biometric Informati
 on Privacy Act (740 ILCS 14)\, as amended by SB 2979 (Public Act 103-0769)
  (Illinois)\n\nSource: https://law.justia.com/cases/federal/appellate-cour
 ts/ca7/25-2185/25-2185-2026-04-01.html\n\nhttps://rulebook.fru.dev/regulat
 ions/us-il-bipa
URL:https://rulebook.fru.dev/regulations/us-il-bipa
CATEGORIES:Illinois,biometrics,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-253@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260401
DTEND;VALUE=DATE:20260402
SUMMARY:Maryland Online Data Privacy Act (MODPA): MODPA applies to personal
  data processing
DESCRIPTION:The act applies to personal data processing activities from Apr
 il 1\, 2026 (Section 2 of ch. 455).\n\nMaryland Online Data Privacy Act of
  2024 (SB 541 / HB 567)\, Md. Code\, Com. Law 14-4601 et seq. (Maryland)\n
 \nSource: https://mgaleg.maryland.gov/2024RS/Chapters_noln/CH_455_sb0541e.
 pdf\n\nhttps://rulebook.fru.dev/regulations/us-md-modpa
URL:https://rulebook.fru.dev/regulations/us-md-modpa
CATEGORIES:Maryland,privacy,children,health,biometrics
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-160@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260411
DTEND;VALUE=DATE:20260412
SUMMARY:UK Online Safety Act: Fee notification window closes (2026/27)
DESCRIPTION:Fee-liable providers must notify Ofcom before the notification 
 window for the first charging year closes.\n\nOnline Safety Act 2023 (Unit
 ed Kingdom)\n\nSource: https://www.ofcom.org.uk/online-safety/illegal-and-
 harmful-content/online-safety-fees-and-penalties\n\nhttps://rulebook.fru.d
 ev/regulations/uk-osa
URL:https://rulebook.fru.dev/regulations/uk-osa
CATEGORIES:United Kingdom,online-safety,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-277@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260415
DTEND;VALUE=DATE:20260416
SUMMARY:NYDFS Cybersecurity Regulation (Part 500): Annual compliance notifi
 cation
DESCRIPTION:Annual certification or acknowledgment covering calendar year 2
 025 due.\n\nNew York DFS Cybersecurity Requirements for Financial Services
  Companies (23 NYCRR Part 500)\, Second Amendment (New York)\n\nSource: ht
 tps://www.dfs.ny.gov/cybersecurity/23-NYCRR-Part-500\n\nhttps://rulebook.f
 ru.dev/regulations/us-ny-dfs-500
URL:https://rulebook.fru.dev/regulations/us-ny-dfs-500
CATEGORIES:New York,cybersecurity,breach-notification,financial
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-214@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260422
DTEND;VALUE=DATE:20260423
SUMMARY:COPPA Rule: Full compliance with amended COPPA Rule
DESCRIPTION:Operators must comply with all amended provisions (separate thi
 rd-party disclosure consent\, written retention policy\, written security 
 program\, updated notices)\; excludes Safe Harbor provisions 312.11(d)(1)\
 , (d)(4) and (g)\, which had earlier dates.\n\nChildren's Online Privacy P
 rotection Rule (16 CFR Part 312)\, as amended April 2025 (United States (F
 ederal))\n\nSource: https://www.federalregister.gov/documents/2025/04/22/2
 025-05904/childrens-online-privacy-protection-rule\n\nhttps://rulebook.fru
 .dev/regulations/us-coppa
URL:https://rulebook.fru.dev/regulations/us-coppa
CATEGORIES:United States (Federal),privacy,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-136@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260501
DTEND;VALUE=DATE:20260502
SUMMARY:New Zealand Privacy Act: IPP 3A indirect-collection notification ap
 plies
DESCRIPTION:Agencies collecting personal information from third parties mus
 t take reasonable steps to notify individuals\, subject to exceptions.\n\n
 Privacy Act 2020 (New Zealand)\, as amended by the Privacy Amendment Act 2
 025 (New Zealand)\n\nSource: https://www.justice.govt.nz/justice-sector-po
 licy/key-initiatives/enhancing-the-privacy-act/\n\nhttps://rulebook.fru.de
 v/regulations/nz-privacy-act
URL:https://rulebook.fru.dev/regulations/nz-privacy-act
CATEGORIES:New Zealand,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-202@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260514
DTEND;VALUE=DATE:20260515
SUMMARY:Colorado AI Act: SB 26-189 signed (repeal and reenact)
DESCRIPTION:SB 26-189 replaces SB 24-205 with a narrower ADMT disclosure fr
 amework and moves the effective date to January 1\, 2027.\n\nColorado SB 2
 4-205 (Consumer Protections for Artificial Intelligence)\, as delayed by S
 B 25B-004 and repealed and reenacted by SB 26-189 (Automated Decision-Maki
 ng Technology) (Colorado)\n\nSource: https://leg.colorado.gov/bills/sb26-1
 89\n\nhttps://rulebook.fru.dev/regulations/us-co-ai-act
URL:https://rulebook.fru.dev/regulations/us-co-ai-act
CATEGORIES:Colorado,ai,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-246@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260515
DTEND;VALUE=DATE:20260516
SUMMARY:Illinois AI in Employment Law (HB 3773): IDHR proposed notice rules
  published
DESCRIPTION:IDHR publishes proposed Subpart J rules on AI notice in the Ill
 inois Register.\n\nIllinois HB 3773 (Public Act 103-0804)\, amending the I
 llinois Human Rights Act on artificial intelligence in employment (Illinoi
 s)\n\nSource: https://ogletree.com/insights-resources/blog-posts/illinois-
 postpones-proposed-regulations-on-ai-in-employment/\n\nhttps://rulebook.fr
 u.dev/regulations/us-il-hb3773
URL:https://rulebook.fru.dev/regulations/us-il-hb3773
CATEGORIES:Illinois,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-299@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260519
DTEND;VALUE=DATE:20260520
SUMMARY:TAKE IT DOWN Act: Platform notice-and-removal process required
DESCRIPTION:Covered platforms must have a clear notice-and-removal process 
 and remove valid reported content within 48 hours (Sec. 3\, one year after
  enactment).\n\nTools to Address Known Exploitation by Immobilizing Techno
 logical Deepfakes on Websites and Networks Act (TAKE IT DOWN Act) (United 
 States (Federal))\n\nSource: https://www.govinfo.gov/content/pkg/PLAW-119p
 ubl12/html/PLAW-119publ12.htm\n\nhttps://rulebook.fru.dev/regulations/us-t
 ake-it-down
URL:https://rulebook.fru.dev/regulations/us-take-it-down
CATEGORIES:United States (Federal),online-safety,ai,children,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-87@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260521
DTEND;VALUE=DATE:20260522
SUMMARY:eIDAS 2 / EU Digital Identity Wallet: Legacy qualified trust servic
 e providers conformity report
DESCRIPTION:QTSPs qualified before 20 May 2024 had to submit a conformity a
 ssessment report proving compliance with Art 24(1)\, (1a) and (1b) by 21 M
 ay 2026.\n\nRegulation (EU) 2024/1183 amending Regulation (EU) No 910/2014
  as regards establishing the European Digital Identity Framework (eIDAS 2)
  (European Union)\n\nSource: https://eur-lex.europa.eu/eli/reg/2024/1183/o
 j\n\nhttps://rulebook.fru.dev/regulations/eu-eidas2
URL:https://rulebook.fru.dev/regulations/eu-eidas2
CATEGORIES:European Union,privacy,data-access,biometrics
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-247@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260602
DTEND;VALUE=DATE:20260603
SUMMARY:Illinois AI in Employment Law (HB 3773): IDHR withdraws and postpon
 es proposed rules
DESCRIPTION:IDHR withdraws the Subpart J proposal and postpones the June 10
 \, 2026 hearing\; no new date announced.\n\nIllinois HB 3773 (Public Act 1
 03-0804)\, amending the Illinois Human Rights Act on artificial intelligen
 ce in employment (Illinois)\n\nSource: https://ogletree.com/insights-resou
 rces/blog-posts/illinois-postpones-proposed-regulations-on-ai-in-employmen
 t/\n\nhttps://rulebook.fru.dev/regulations/us-il-hb3773
URL:https://rulebook.fru.dev/regulations/us-il-hb3773
CATEGORIES:Illinois,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-297@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260603
DTEND;VALUE=DATE:20260604
SUMMARY:SEC Regulation S-P: Smaller entities must comply
DESCRIPTION:Smaller covered institutions (24 months after Federal Register 
 publication) must comply with the amended Regulation S-P.\n\nRegulation S-
 P: Privacy of Consumer Financial Information and Safeguarding Customer Inf
 ormation (2024 amendments) (United States (Federal))\n\nSource: https://ww
 w.federalregister.gov/documents/2024/06/03/2024-11116/regulation-s-p-priva
 cy-of-consumer-financial-information-and-safeguarding-customer-information
 \n\nhttps://rulebook.fru.dev/regulations/us-sec-reg-sp
URL:https://rulebook.fru.dev/regulations/us-sec-reg-sp
CATEGORIES:United States (Federal),financial,privacy,cybersecurity,breach-n
 otification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-49@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260611
DTEND;VALUE=DATE:20260612
SUMMARY:Cyber Resilience Act: Conformity assessment body provisions apply
DESCRIPTION:Chapter IV (Arts 35-51\, notification of conformity assessment 
 bodies) applies (Art 71(2)).\n\nRegulation (EU) 2024/2847 on horizontal cy
 bersecurity requirements for products with digital elements (Cyber Resilie
 nce Act) (European Union)\n\nSource: https://eur-lex.europa.eu/eli/reg/202
 4/2847/oj\n\nhttps://rulebook.fru.dev/regulations/eu-cra
URL:https://rulebook.fru.dev/regulations/eu-cra
CATEGORIES:European Union,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-15@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260615
DTEND;VALUE=DATE:20260616
SUMMARY:Canada Bill C-36 (PPCDA): Bill C-36 tabled (first reading)
DESCRIPTION:Government introduces the PPCDA in the House of Commons.\n\nBil
 l C-36\, An Act to enact the Protecting Privacy and Consumer Data Act (Can
 ada)\n\nSource: https://www.parl.ca/DocumentViewer/en/45-1/bill/C-36/first
 -reading\n\nhttps://rulebook.fru.dev/regulations/ca-c36-ppcda
URL:https://rulebook.fru.dev/regulations/ca-c36-ppcda
CATEGORIES:Canada,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-17@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260615
DTEND;VALUE=DATE:20260616
SUMMARY:Canada Bill C-8 / CCSPA: Royal Assent
DESCRIPTION:Bill C-8 receives Royal Assent (S.C. 2026\, c. 9)\; Telecommuni
 cations Act amendments take effect.\n\nCritical Cyber Systems Protection A
 ct (enacted by Bill C-8\, An Act respecting cyber security) (Canada)\n\nSo
 urce: https://www.parl.ca/legisinfo/en/bill/45-1/c-8\n\nhttps://rulebook.f
 ru.dev/regulations/ca-ccspa
URL:https://rulebook.fru.dev/regulations/ca-ccspa
CATEGORIES:Canada,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-146@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260616
DTEND;VALUE=DATE:20260617
SUMMARY:UK Cyber Security and Resilience Bill: Passes House of Commons
DESCRIPTION:Report stage and third reading completed in the Commons after c
 arry-over into the new session.\n\nCyber Security and Resilience (Network 
 and Information Systems) Bill (United Kingdom)\n\nSource: https://bills.pa
 rliament.uk/bills/4035\n\nhttps://rulebook.fru.dev/regulations/uk-csr-bill
URL:https://rulebook.fru.dev/regulations/uk-csr-bill
CATEGORIES:United Kingdom,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-151@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260619
DTEND;VALUE=DATE:20260620
SUMMARY:Data (Use and Access) Act: Mandatory data protection complaints pro
 cedure
DESCRIPTION:Controllers must have a process for data subject complaints (s.
 103 and Sch. 10)\, per Commencement No. 6 Regulations 2026\, reg. 3.\n\nDa
 ta (Use and Access) Act 2025 (United Kingdom)\n\nSource: https://www.legis
 lation.gov.uk/uksi/2026/82/contents/made\n\nhttps://rulebook.fru.dev/regul
 ations/uk-duaa
URL:https://rulebook.fru.dev/regulations/uk-duaa
CATEGORIES:United Kingdom,privacy,data-access,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-203@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260630
DTEND;VALUE=DATE:20260701
SUMMARY:Colorado AI Act: Delayed effective date (superseded)
DESCRIPTION:SB 25B-004 date\; superseded by SB 26-189 before it arrived\, s
 o no obligations applied.\n\nColorado SB 24-205 (Consumer Protections for 
 Artificial Intelligence)\, as delayed by SB 25B-004 and repealed and reena
 cted by SB 26-189 (Automated Decision-Making Technology) (Colorado)\n\nSou
 rce: https://leg.colorado.gov/bills/sb25b-004\n\nhttps://rulebook.fru.dev/
 regulations/us-co-ai-act
URL:https://rulebook.fru.dev/regulations/us-co-ai-act
CATEGORIES:Colorado,ai,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-267@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260630
DTEND;VALUE=DATE:20260701
SUMMARY:New Jersey NJDPA: A5328 sensitive data sale ban takes effect
DESCRIPTION:A5328\, signed June 30\, 2026\, prohibits selling sensitive per
 sonal data\; the ban took effect on signing.\n\nNew Jersey Data Privacy Ac
 t (P.L.2023\, c.266\; S332) (New Jersey)\n\nSource: https://www.njleg.stat
 e.nj.us/bill-search/2026/A5328\n\nhttps://rulebook.fru.dev/regulations/us-
 nj-njdpa
URL:https://rulebook.fru.dev/regulations/us-nj-njdpa
CATEGORIES:New Jersey,privacy,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-218@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260701
DTEND;VALUE=DATE:20260702
SUMMARY:Connecticut Data Privacy Act (CTDPA): PA 25-113 (SB 1295) amendment
 s take effect
DESCRIPTION:Thresholds drop to 35\,000 consumers or any sensitive-data proc
 essing or data sale\; expanded sensitive data\, minors' protections\, and 
 LLM-training disclosure in privacy notices.\n\nConnecticut Data Privacy Ac
 t (Public Act 22-15)\, Conn. Gen. Stat. 42-515 et seq.\, as amended by Pub
 lic Act 25-113 (SB 1295) and Public Act 26-64 (SB 4) (Connecticut)\n\nSour
 ce: https://www.cga.ct.gov/2025/ACT/PA/PDF/2025PA-00113-R00SB-01295-PA.PDF
 \n\nhttps://rulebook.fru.dev/regulations/us-ct-ctdpa
URL:https://rulebook.fru.dev/regulations/us-ct-ctdpa
CATEGORIES:Connecticut,privacy,children,ai,health
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-268@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260701
DTEND;VALUE=DATE:20260702
SUMMARY:New Jersey NJDPA: Mandatory 30-day cure period expires
DESCRIPTION:The Division's duty to issue a cure notice before enforcement e
 nds on the first day of the 18th month after the effective date (N.J.S.A. 
 56:8-166.17(b)).\n\nNew Jersey Data Privacy Act (P.L.2023\, c.266\; S332) 
 (New Jersey)\n\nSource: https://pub.njleg.state.nj.us/Bills/2022/PL23/266_
 .PDF\n\nhttps://rulebook.fru.dev/regulations/us-nj-njdpa
URL:https://rulebook.fru.dev/regulations/us-nj-njdpa
CATEGORIES:New Jersey,privacy,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-309@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260701
DTEND;VALUE=DATE:20260702
SUMMARY:Utah UCPA: Right to correct takes effect
DESCRIPTION:Consumers may ask controllers to correct inaccurate personal da
 ta (13-61-201(4)\, as amended by Laws 2025\, ch. 468).\n\nUtah Consumer Pr
 ivacy Act (SB 227\, 2022) (Utah)\n\nSource: https://le.utah.gov/xcode/Titl
 e13/Chapter61/13-61-S201.html\n\nhttps://rulebook.fru.dev/regulations/us-u
 t-ucpa
URL:https://rulebook.fru.dev/regulations/us-ut-ucpa
CATEGORIES:Utah,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-314@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260701
DTEND;VALUE=DATE:20260702
SUMMARY:Virginia VCDPA: Ban on selling precise geolocation data (SB 338)
DESCRIPTION:Controllers may not sell consumers' precise geolocation data (1
 \,750-ft radius)\, replacing the prior consent-based treatment.\n\nVirgini
 a Consumer Data Protection Act (SB 1392 / HB 2307\, 2021) (Virginia)\n\nSo
 urce: https://lis.virginia.gov/bill-details/20261/SB338\n\nhttps://ruleboo
 k.fru.dev/regulations/us-va-vcdpa
URL:https://rulebook.fru.dev/regulations/us-va-vcdpa
CATEGORIES:Virginia,privacy,children,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-122@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260717
DTEND;VALUE=DATE:20260718
SUMMARY:Japan APPI: 2026 APPI amendment act promulgated
DESCRIPTION:Amendment enacted by the Diet on 10 July 2026 and promulgated\;
  main provisions take effect by cabinet order within two years of promulga
 tion.\n\nAct on the Protection of Personal Information (Act No. 57 of 2003
 )\, as amended including the 2026 amendment act (Japan)\n\nSource: https:/
 /www.ppc.go.jp/files/pdf/260731_shiryou-1.pdf\n\nhttps://rulebook.fru.dev/
 regulations/jp-appi
URL:https://rulebook.fru.dev/regulations/jp-appi
CATEGORIES:Japan,privacy,children,biometrics,breach-notification,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-40@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260727
DTEND;VALUE=DATE:20260728
SUMMARY:EU AI Act: Digital Omnibus on AI enters into force
DESCRIPTION:Regulation (EU) 2026/1744 (adopted 8 July 2026\, OJ 24 July 202
 6) enters into force on the third day after publication. Amended Articles 
 102 to 110 apply from this date (new Art 113(d)).\n\nRegulation (EU) 2024/
 1689 laying down harmonised rules on artificial intelligence (Artificial I
 ntelligence Act)\, as amended by Regulation (EU) 2026/1744 (Digital Omnibu
 s on AI) (European Union)\n\nSource: https://eur-lex.europa.eu/eli/reg/202
 6/1744/oj\n\nhttps://rulebook.fru.dev/regulations/eu-ai-act
URL:https://rulebook.fru.dev/regulations/eu-ai-act
CATEGORIES:European Union,ai,biometrics,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-178@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260801
DTEND;VALUE=DATE:20260802
SUMMARY:California Delete Act / DROP: Data brokers must begin processing DR
 OP deletion requests
DESCRIPTION:Brokers must access DROP at least every 45 days\, process verif
 ied deletion requests within 45 days\, and treat unverified requests as op
 t-outs of sale/sharing.\n\nCalifornia Delete Act (SB 362\, 2023)\, Cal. Ci
 v. Code 1798.99.80 et seq.\, and DROP regulations (California)\n\nSource: 
 https://www.cppa.ca.gov/data_brokers/\n\nhttps://rulebook.fru.dev/regulati
 ons/us-ca-delete-act
URL:https://rulebook.fru.dev/regulations/us-ca-delete-act
CATEGORIES:California,privacy,data-access
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-219@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260801
DTEND;VALUE=DATE:20260802
SUMMARY:Connecticut Data Privacy Act (CTDPA): Profiling impact assessments 
 apply
DESCRIPTION:Impact assessment requirements apply to profiling activities cr
 eated or generated on or after Aug 1\, 2026 (Conn. Gen. Stat. 42-522 as am
 ended).\n\nConnecticut Data Privacy Act (Public Act 22-15)\, Conn. Gen. St
 at. 42-515 et seq.\, as amended by Public Act 25-113 (SB 1295) and Public 
 Act 26-64 (SB 4) (Connecticut)\n\nSource: https://www.cga.ct.gov/2025/ACT/
 PA/PDF/2025PA-00113-R00SB-01295-PA.PDF\n\nhttps://rulebook.fru.dev/regulat
 ions/us-ct-ctdpa
URL:https://rulebook.fru.dev/regulations/us-ct-ctdpa
CATEGORIES:Connecticut,privacy,children,ai,health
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-190@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260802
DTEND;VALUE=DATE:20260803
SUMMARY:California AI Transparency Act (SB 942): Covered provider duties ap
 ply
DESCRIPTION:Detection tool\, manifest and latent disclosures\, and license-
 revocation duties become operative.\n\nCalifornia AI Transparency Act (SB 
 942\, Stats. 2024\, ch. 291)\, as amended by AB 853 (Stats. 2025\, ch. 674
 ) (California)\n\nSource: https://leginfo.legislature.ca.gov/faces/billNav
 Client.xhtml?bill_id=202520260AB853\n\nhttps://rulebook.fru.dev/regulation
 s/us-ca-sb942
URL:https://rulebook.fru.dev/regulations/us-ca-sb942
CATEGORIES:California,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-41@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260802
DTEND;VALUE=DATE:20260803
SUMMARY:EU AI Act: General application: transparency obligations\, GPAI fin
 es\, most other rules
DESCRIPTION:The AI Act's general date of application. Article 50 transparen
 cy obligations (chatbot disclosure\, deepfake labelling\, machine-readable
  marking of synthetic content) and Commission fines on GPAI providers (Art
  101) apply. Not deferred by the Omnibus.\n\nRegulation (EU) 2024/1689 lay
 ing down harmonised rules on artificial intelligence (Artificial Intellige
 nce Act)\, as amended by Regulation (EU) 2026/1744 (Digital Omnibus on AI)
  (European Union)\n\nSource: https://eur-lex.europa.eu/eli/reg/2024/1689/o
 j\n\nhttps://rulebook.fru.dev/regulations/eu-ai-act
URL:https://rulebook.fru.dev/regulations/eu-ai-act
CATEGORIES:European Union,ai,biometrics,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-79@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260831
DTEND;VALUE=DATE:20260901
SUMMARY:Digital Services Act: ChatGPT designated as VLOSE\; Reddit and Robl
 ox as VLOPs
DESCRIPTION:Commission designated ChatGPT as a very large online search eng
 ine and Reddit and Roblox as very large online platforms. They have four m
 onths (by January 2027) to meet VLOP/VLOSE obligations.\n\nRegulation (EU)
  2022/2065 on a Single Market for Digital Services (Digital Services Act) 
 (European Union)\n\nSource: https://digital-strategy.ec.europa.eu/en/news/
 commission-designates-chatgpt-reddit-roblox-under-digital-services-act\n\n
 https://rulebook.fru.dev/regulations/eu-dsa
URL:https://rulebook.fru.dev/regulations/eu-dsa
CATEGORIES:European Union,online-safety,children,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-50@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260911
DTEND;VALUE=DATE:20260912
SUMMARY:Cyber Resilience Act: Vulnerability and incident reporting obligati
 ons apply
DESCRIPTION:Art 14: manufacturers must report actively exploited vulnerabil
 ities and severe incidents (24-hour early warning\, 72-hour notification) 
 via the single reporting platform. Also covers products placed on the mark
 et before 11 Dec 2027 (Art 69(3)).\n\nRegulation (EU) 2024/2847 on horizon
 tal cybersecurity requirements for products with digital elements (Cyber R
 esilience Act) (European Union)\n\nSource: https://eur-lex.europa.eu/eli/r
 eg/2024/2847/oj\n\nhttps://rulebook.fru.dev/regulations/eu-cra
URL:https://rulebook.fru.dev/regulations/eu-cra
CATEGORIES:European Union,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-126@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260911
DTEND;VALUE=DATE:20260912
SUMMARY:South Korea PIPA: 2026 PIPA amendments take effect
DESCRIPTION:10%-of-revenue fines\, CEO accountability\, and notice duties f
 or possible breaches apply.\n\nPersonal Information Protection Act (as ame
 nded by Act No. 21445\, 2026) (South Korea)\n\nSource: https://www.law.go.
 kr/법령/개인정보보호법\n\nhttps://rulebook.fru.dev/regulations/kr
 -pipa
URL:https://rulebook.fru.dev/regulations/kr-pipa
CATEGORIES:South Korea,privacy,breach-notification,biometrics,data-residenc
 y
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-59@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260912
DTEND;VALUE=DATE:20260913
SUMMARY:EU Data Act: Access-by-design for new connected products
DESCRIPTION:Art 3(1) design obligation (product data and related service da
 ta accessible to the user by default) applies to connected products and re
 lated services placed on the market after 12 Sep 2026.\n\nRegulation (EU) 
 2023/2854 on harmonised rules on fair access to and use of data (Data Act)
  (European Union)\n\nSource: https://eur-lex.europa.eu/eli/reg/2023/2854/o
 j\n\nhttps://rulebook.fru.dev/regulations/eu-data-act
URL:https://rulebook.fru.dev/regulations/eu-data-act
CATEGORIES:European Union,data-access,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-152@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20260930
DTEND;VALUE=DATE:20261001
SUMMARY:Data (Use and Access) Act: ICO abolished\; Information Commission t
 akes over
DESCRIPTION:Sections 118-119 commence: office of Information Commissioner a
 bolished and functions transferred to the Information Commission (Commence
 ment No. 9 Regulations 2026).\n\nData (Use and Access) Act 2025 (United Ki
 ngdom)\n\nSource: https://www.legislation.gov.uk/uksi/2026/1015/regulation
 /2/made\n\nhttps://rulebook.fru.dev/regulations/uk-duaa
URL:https://rulebook.fru.dev/regulations/uk-duaa
CATEGORIES:United Kingdom,privacy,data-access,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-220@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20261001
DTEND;VALUE=DATE:20261002
SUMMARY:Connecticut Data Privacy Act (CTDPA): PA 26-64 (SB 4) amendments ta
 ke effect
DESCRIPTION:Prohibits controllers and third parties from selling precise ge
 olocation data and enacts data broker and other consumer protection provis
 ions.\n\nConnecticut Data Privacy Act (Public Act 22-15)\, Conn. Gen. Stat
 . 42-515 et seq.\, as amended by Public Act 25-113 (SB 1295) and Public Ac
 t 26-64 (SB 4) (Connecticut)\n\nSource: https://www.cga.ct.gov/2026/ACT/PA
 /PDF/2026PA-00064-R00SB-00004-PA.PDF\n\nhttps://rulebook.fru.dev/regulatio
 ns/us-ct-ctdpa
URL:https://rulebook.fru.dev/regulations/us-ct-ctdpa
CATEGORIES:Connecticut,privacy,children,ai,health
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-147@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20261026
DTEND;VALUE=DATE:20261027
SUMMARY:UK Cyber Security and Resilience Bill: Lords report stage scheduled
DESCRIPTION:House of Lords report stage scheduled (committee stage sat 1\, 
 3 and 7 Sept 2026).\n\nTentative: depends on a proposal not yet adopted.\n
 \nCyber Security and Resilience (Network and Information Systems) Bill (Un
 ited Kingdom)\n\nSource: https://bills.parliament.uk/bills/4035\n\nhttps:/
 /rulebook.fru.dev/regulations/uk-csr-bill
URL:https://rulebook.fru.dev/regulations/uk-csr-bill
CATEGORIES:United Kingdom,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-196@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20261110
DTEND;VALUE=DATE:20261111
SUMMARY:CMMC 2.0: Phase 2: Level 2 C3PAO certification
DESCRIPTION:Phase 2 begins one calendar year after Phase 1\; applicable sol
 icitations require CMMC Level 2 third-party (C3PAO) certification (32 CFR 
 170.3(e)(2)).\n\nCybersecurity Maturity Model Certification (CMMC) Program
  (32 CFR Part 170) and DFARS acquisition rule (48 CFR Parts 204\, 212\, 21
 7\, 252) (United States (Federal))\n\nSource: https://www.federalregister.
 gov/documents/2024/10/15/2024-22905/cybersecurity-maturity-model-certifica
 tion-cmmc-program\n\nhttps://rulebook.fru.dev/regulations/us-cmmc
URL:https://rulebook.fru.dev/regulations/us-cmmc
CATEGORIES:United States (Federal),cybersecurity
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-117@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20261113
DTEND;VALUE=DATE:20261114
SUMMARY:India DPDP Act: Consent Manager registration rule in force (12 mont
 hs)
DESCRIPTION:Rule 4 (registration and obligations of Consent Managers) comes
  into force one year after publication.\n\nDigital Personal Data Protectio
 n Act\, 2023 and Digital Personal Data Protection Rules\, 2025 (India)\n\n
 Source: https://egazette.gov.in/WriteReadData/2025/267650.pdf\n\nhttps://r
 ulebook.fru.dev/regulations/in-dpdp
URL:https://rulebook.fru.dev/regulations/in-dpdp
CATEGORIES:India,privacy,children,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-27@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20261201
DTEND;VALUE=DATE:20261202
SUMMARY:Chile Personal Data Protection Law (Ley 21.719): Law in force
DESCRIPTION:Main obligations apply and the Personal Data Protection Agency 
 begins supervision.\n\nLey Nº 21.719 que regula la protección y el trata
 miento de los datos personales y crea la Agencia de Protección de Datos P
 ersonales (Chile)\n\nSource: https://www.bcn.cl/leychile/navegar?idNorma=1
 209272\n\nhttps://rulebook.fru.dev/regulations/cl-pdpl
URL:https://rulebook.fru.dev/regulations/cl-pdpl
CATEGORIES:Chile,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-42@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20261202
DTEND;VALUE=DATE:20261203
SUMMARY:EU AI Act: New bans on sexual deepfakes and CSAM generation\; Art 5
 0(2) grace period ends
DESCRIPTION:New Art 5(1)(ba)/(bb) prohibitions on AI systems that generate 
 non-consensual intimate imagery of identifiable persons or child sexual ab
 use material apply. Generative AI systems placed on the market before 2 Au
 g 2026 must comply with the Art 50(2) marking duty by this date (new Art 1
 11(4)).\n\nRegulation (EU) 2024/1689 laying down harmonised rules on artif
 icial intelligence (Artificial Intelligence Act)\, as amended by Regulatio
 n (EU) 2026/1744 (Digital Omnibus on AI) (European Union)\n\nSource: https
 ://eur-lex.europa.eu/eli/reg/2026/1744/oj\n\nhttps://rulebook.fru.dev/regu
 lations/eu-ai-act
URL:https://rulebook.fru.dev/regulations/eu-ai-act
CATEGORIES:European Union,ai,biometrics,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-107@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20261209
DTEND;VALUE=DATE:20261210
SUMMARY:Product Liability Directive: Transposition deadline\; old PLD repea
 led
DESCRIPTION:Member States must transpose by 9 Dec 2026 (Art 22). Directive 
 85/374/EEC is repealed from that date but still applies to products placed
  on the market before it (Art 21).\n\nDirective (EU) 2024/2853 on liabilit
 y for defective products (new Product Liability Directive) (European Union
 )\n\nSource: https://eur-lex.europa.eu/eli/dir/2024/2853/oj\n\nhttps://rul
 ebook.fru.dev/regulations/eu-pld
URL:https://rulebook.fru.dev/regulations/eu-pld
CATEGORIES:European Union,ai,cybersecurity
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20261210
DTEND;VALUE=DATE:20261211
SUMMARY:Australia Privacy Act: Children's Online Privacy Code must be regis
 tered
DESCRIPTION:OAIC must develop and register the Children's Online Privacy Co
 de within 24 months of Royal Assent.\n\nPrivacy Act 1988 (Cth)\, as amende
 d by the Privacy and Other Legislation Amendment Act 2024 (Australia)\n\nS
 ource: https://www.oaic.gov.au/privacy/privacy-registers/privacy-codes/chi
 ldrens-online-privacy-code\n\nhttps://rulebook.fru.dev/regulations/au-priv
 acy-act
URL:https://rulebook.fru.dev/regulations/au-privacy-act
CATEGORIES:Australia,privacy,children,breach-notification,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20261210
DTEND;VALUE=DATE:20261211
SUMMARY:Australia Privacy Act: Automated decision-making transparency appli
 es
DESCRIPTION:Privacy policies must disclose the kinds of personal informatio
 n used in substantially automated decisions that significantly affect indi
 viduals (24 months after assent).\n\nPrivacy Act 1988 (Cth)\, as amended b
 y the Privacy and Other Legislation Amendment Act 2024 (Australia)\n\nSour
 ce: https://www.legislation.gov.au/C2024A00128/asmade\n\nhttps://rulebook.
 fru.dev/regulations/au-privacy-act
URL:https://rulebook.fru.dev/regulations/au-privacy-act
CATEGORIES:Australia,privacy,children,breach-notification,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-88@regulations.fru.dev
DTSTAMP:20260924T103004Z
DTSTART;VALUE=DATE:20261224
DTEND;VALUE=DATE:20261225
SUMMARY:eIDAS 2 / EU Digital Identity Wallet: Member States must provide EU
  Digital Identity Wallets
DESCRIPTION:Each Member State must provide at least one wallet within 24 mo
 nths of the entry into force of the implementing acts under Arts 5a(23) an
 d 5c(6) (Art 5a(1)).\n\nRegulation (EU) 2024/1183 amending Regulation (EU)
  No 910/2014 as regards establishing the European Digital Identity Framewo
 rk (eIDAS 2) (European Union)\n\nSource: https://eur-lex.europa.eu/eli/reg
 _impl/2024/2977/oj\n\nhttps://rulebook.fru.dev/regulations/eu-eidas2
URL:https://rulebook.fru.dev/regulations/eu-eidas2
CATEGORIES:European Union,privacy,data-access,biometrics
TRANSP:TRANSPARENT
END:VEVENT
END:VCALENDAR
