AI, Data, Privacy, and Cybersecurity — Docket Daily's four law pillars
AIDataPrivacyCybersecurity

Know every new AI, Data, Privacy, and Cybersecurity law before your client asks.

The most thoroughly sourced legal tech intelligence available. Official sources only. Every entry attorney-reviewed.

Official sources verifiedAll 50 states + D.C. + FederalAttorney-reviewed2,450+ legal developments since Jan. 1, 2026

Built and reviewed by a licensed attorney — for attorneys.

WHY ATTORNEYS SUBSCRIBE

  • Walk into the client call already knowing

    When a client asks what changed, you have the answer before they finish the question — with the primary source in hand.

  • One workspace, fifty-one jurisdictions

    Federal, state, and municipal in one place. A bill in a state you don't practice in can still create an obligation for a client who does business there.

  • The sifting already happened

    A keyword alert hands you a dozen results and makes you sort them. Every Docket Daily entry was attorney-reviewed before it reached your dashboard.

  • Get ahead of the deadline, not the breach

    Compliance obligations filtered to your client's actual profile, with effective dates and suggested steps — so the conversation happens in advance.

THE DASHBOARD

This is what your team opens every morning.

The same feed cards, pillar chips, plain-English summaries, and search band your subscribers see — three attorney-curated entries from the live corpus.

Proposed Bills248
Dead Bills459
Statutes63
Regulations112
Enforcement Actions4
Cases71
Exec. orders34

New this Week

CISA KEV Alert: CISA Adds One Known Exploited Vulnerability to Catalog

The Cybersecurity and Infrastructure Security Agency alert announces the addition of an actively exploited security vulnerability affecting Citrix NetScaler perimeter networking appliances to the federal Known Exploited Vulnerabilities (KEV) Catalog: ⚬ CVE-2026-88779 (Citrix NetScaler Improper Rest…
Cybersecurity law
FederalCyber — CISAOct 4, 2026
Sample
AI-drafted · Attorney-reviewed

Research platforms wait for your question. Docket Daily has already found, read, summarized, and attorney-verified the development before you sit down.

PRODUCT

Everything from first alert to closed obligation.

KNOW — What changed today, already sifted.

  • Daily digest — every new bill, statute, regulation, opinion, executive order, and AG action, attorney-reviewed.
  • Weekly Intelligence Brief — Top 5, trending states, everything by jurisdiction, every Tuesday.
  • Watch Scans — describe what to watch in plain language; get alerted the moment a matching entry is approved.
  • Ask Docket Daily — grounded answers that cite only published entries, with the official source attached.

UNDERSTAND — What it means, with the context attached.

Foundational law

Sample

CTDPA

Attorney-verified · August 29, 2026

Connecticut · Privacy Law

Scope summary

Comprehensive Connecticut Data Privacy Act (Conn. Gen. Stat. §§ 42-515–42-526). Round 1 — PA 25-113 / SB 1295 (signed June 24, 2025; official: cga.ct.gov 2025PA-00113): Applicability (eff. July 1, 2026): controllers qualify if ANY prong applies: (1) 35,000+ Connecticut consumers/year (lowered from 100,000); (2) offers personal data for sale (volume-free); (3) processes sensitive data (volume-free). Prior 25%-of-revenue prong deleted. Substantive obligations: LLM-training disclosure in privacy notices; expanded sensitive-data categories (neural data, disability/treatment-related); under-18 online-safety center, dark-pattern limits, profiling/ad-targeting limits; profiling/ADM consumer rights; separate consent for sensitive-data sale; data minimization (necessary AND proportionate); consent for material new purposes. Profiling impact assessments eff. Aug. 1, 2026. Round 2 — PA 26-64 / SB 4 (signed May 27, 2026; official: cga.ct.gov 2026PA-00064): Amends CTDPA effective October 1, 2026 unless noted: absolute ban on sale of precise geolocation data (1,750-foot radius); facial-recognition for security/fraud limited to closed-loop internal-database matching (no public/third-party biometric networks); enhanced profiling/consumer-rights provisions; ALPR contract sharing limits. Surveillance/algorithmic-pricing transparency when personalized pricing increases a consumer's price. Brokered-personal-data registration requirement effective January 1, 2027. Data-broker registration, annual DCP fee, and centralized deletion-mechanism operator duties are tracked on separate anchor e9dcc845 (Connecticut Data Broker Registration / SB 4, 2026). This CTDPA anchor covers the comprehensive privacy statute and CTDPA-amending provisions in PA 25-113, PA 26-64, and PA 26-100 (HB 5222). Round 3 — HB 5222 / PA 26-100 (signed June 2, 2026; official: cga.ct.gov 2026PA-00100): Technical cleanup to PA 26-64 / CTDPA amendments effective October 1, 2026: refines data-broker registration mechanics, geolocation-sale prohibition, and surveillance-pricing disclosure (conspicuous on-screen "THIS PRICE WAS INCREASED" warning when algorithmic pricing raises an individual's price).

Open anchor page →
  • Redlines — attorney-reviewed text diffs on every change, with the obligations affected.
  • Foundational Law — the canon of statutes and landmark decisions, cross-linked to today's developments.
  • Document Review — upload a contract, policy, or filing; get compliance tips and red flags cited to the corpus.

ACT — Turn it into a checklist your client can see.

Connecticut · Privacy

3 obligations

  • PrivacyConsumer noticePrepare now
  • DataRetention scheduleDue in 30 days
  • CybersecurityIncident responseOwner assigned

Ask Docket Daily

Sample

Grounded answers with citations to published entries only.

California has advanced several AI-in-employment measures in 2026, including automated decision-making transparency bills and agency guidance on AEDT use in hiring. Docket Daily tracks enacted and proposed instruments with attorney-reviewed summaries tied to official legislative and register sources.

California AI employment (2026)

Document Review

DISCLAIMER: Issue-spotting against Docket Daily's published corpus — not legal advice.

vendor-dpa.pdf · complete

Sample

Analyzed vendor-dpa.pdf

Sections detected: none detected

Pillar areas checked: AI, Data, Privacy, Cybersecurity

Red flags

high
“Section 4.2 — Customer grants Vendor a perpetual license to use Customer Data to train and improve machine-learning models.”

Broad consent to use customer data for model training without an opt-out may conflict with state consumer privacy laws.

Suggestion: Limit training use to delivering the service and require a written opt-out before any model-training license takes effect.

high
“Section 7.1 — Vendor may transfer Personal Data to any country where it or its subprocessors operate, without a stated transfer mechanism.”

Missing cross-border transfer safeguards when personal data leaves the United States.

Suggestion: Require a stated transfer mechanism and a current subprocessor list before personal data leaves the United States.

critical
“Section 9.3 — Customer shall indemnify Vendor against all regulatory fines, penalties, and enforcement arising from the Services.”

Indemnity clauses that shift all regulatory liability to your client without carve-outs for vendor security failures.

Suggestion: Carve vendor security failures and fines caused by the vendor out of the customer indemnity.

medium
“Section 5.4 — Vendor may add subprocessors, including automated decision-making tools, without prior notice.”

Unnoticed subprocessors can put consumer data into automated decisions without the disclosures those tools require.

Suggestion: Require advance notice of subprocessors and confirm automated-decision disclosures before AI tools process consumer data.

CONFIDENTIAL BY DESIGN

Built for attorneys' confidentiality obligations.

  • No client data enters a model

    Client names, notes, and evidence are encrypted and never sent to any AI vendor.

  • PII scrubbed before any AI call

    Personal identifying information is removed server-side before a question or scan leaves Docket Daily.

  • No-training terms

    Model vendors operate under no-training agreements for subscriber workspace AI features.

  • Your roles, your audit trail

    Org-level roles, encrypted notes, private evidence storage, an append-only audit log, and a switch to turn AI features off.

Aligned with California SB 574 and ABA Formal Opinion 512. Attorney-only by design. Learn more

ALREADY HAVE WESTLAW? LEXISNEXIS? HARVEY?

Research tools answer questions. Scanners detect. Docket Daily verifies and closes the loop.

Keyword alerts and AI scanners fire on whatever their crawlers index — weakest exactly where technology law moves fastest. Docket Daily reads the official source, puts an attorney on every entry, redlines what changed, and tracks the obligation to closure.

  • Westlaw · LexisNexis · Bloomberg

    A library. The best tools ever built for looking things up. Not built for watching.

  • Harvey · ChatGPT · Perplexity

    AI assistants and scanners. Brilliant at what you ask; unverified on what you didn't.

  • Docket Daily

    Proactive, attorney-verified legal intelligence. All 50 states, D.C. & Federal.

Leading legal AI tools hallucinate citations in 1 in 6 to 1 in 3 queries. Docket Daily tracks the major published sanctions decisions themselves. Stanford HAI study.

COMPLIANCE MAP

Federal and multi-state compliance dashboard

Federal and multi-state compliance map

Map key

  • Compliance
  • Watch
  • Intensity
  • Dark
  • Interactive U.S. map with federal and state jurisdiction activity at a glance — filter by pillar

  • State and federal detail with checklist tracking, upcoming dates, and guidance tied to tracked developments

  • Multi-state footprint when you operate in several states — plus exportable memos for internal planning

  • Grounded in monitored legal developments with source links you can verify

Every state, D.C., and federal — anchored to the foundational law that governs today, with live developments layered on top.

Included with every plan

Weekly Intelligence Brief

A structured Tuesday briefing — Top 5 scored highlights, trending states, and every qualifying federal and state development from the past seven days, organized by instrument type and jurisdiction.

  • Top 5 Laws of the Week — scored using the Docket Daily Relevance Scorecard, with plain-English narrative and direct links
  • Trending States in AI Law — which states drove the most activity during the coverage period
  • Federal developments — proposed bills, enacted statutes, regulations, SCOTUS, circuit and district courts, and presidential/agency actions
  • State developments — proposed bills, enacted statutes, regulations, appellate and supreme court cases, governor executive orders, and AG actions — organized by state
  • Key takeaways, action items, and watch list — week-at-a-glance analysis, items requiring immediate attention, and developments to monitor in the period ahead

Published each Tuesday by email.

WHAT WE TRACK

Four editorial pillars

  • AI Law

    • Mandatory disclosure and transparency requirements for AI systems used in consequential decisions
    • Algorithmic impact assessment and bias audit obligations
    • Human oversight mandates for AI in healthcare, insurance, employment, and benefits
    Full taxonomy →
  • Privacy Law

    • Comprehensive consumer data privacy frameworks — consumer rights, controller obligations, enforcement
    • Sensitive data protections for health, biometric, geolocation, reproductive, and children's data
    • Age-appropriate design codes and children's online privacy requirements
    Full taxonomy →
  • Data Law

    • Data lifecycle governance — collection minimization, retention limits, mandatory deletion
    • Government data practices and state agency data management standards
    • Cross-border data transfer restrictions and jurisdictional data sovereignty rules
    Full taxonomy →
  • Cybersecurity Law

    • Data breach notification — timing, scope, AG and consumer notification mandates
    • Private sector cybersecurity standards — NIST framework adoption, written security programs
    • State and local government cybersecurity standards and incident response obligations
    Full taxonomy →

Docket Daily tracks governance, compliance, and regulatory law — the rules that determine what organizations must do, disclose, and avoid when building and deploying technology. We monitor proposed legislation, enacted statutes, administrative regulations, executive orders, court decisions, and state attorney general enforcement actions that create legal obligations for businesses, government agencies, and technology developers. We also track legislation that fails, is vetoed, or dies in session — dead bills are preserved as legislative intelligence, a barometer of where lawmakers are heading.

Simple plans

14-day free trial — cancel anytime. No card required.

Essential

$149 / month
  • daily digest & Weekly Brief
  • full search & filters
  • Redlines
  • PDF export of entries
Start free trial

Professional

$299 / month
  • everything in Essential
  • Compliance dashboard & map
  • Watch Scans
  • Ask Docket Daily
  • Deadline Calendar
  • memo export
Start free trial

Enterprise

$499 / month
  • everything in Professional
  • Client Portfolio
  • Obligation Register
  • Document Review
  • team seats & roles
Start free trial
Bradley J. Martineau, founder of Docket Daily

Founder

Built by an Attorney

Bradley J. Martineau · Pennsylvania Attorney · AI Governance Author

Docket Daily was built by an attorney who lived the problem firsthand. Brad is a Pennsylvania-licensed lawyer and Amazon best-selling AI governance author. He built Docket Daily because the tool he needed didn't exist. Every design decision comes from real legal and AI governance experience — not engineering assumptions.

“You're already paying for the library. Docket Daily is the attorney who researches and summarizes all of the new AI, Data, Privacy, and Cybersecurity legal developments for you.” — Bradley J. Martineau, Founder & Attorney
  • 📘 The AI-Enabled Executive
  • 📗 Operational AI Governance
  • ⚖️ PA Bar licensed
  • 🎙️ Host, Bourbon with Brad

Sponsor — AI Native Law Conference 2026, NYC

Built and reviewed by a licensed attorney and four-time AI author

Built like we read the law

No ad pixels. No analytics scripts. No session replay. Server-side measurement only, opt-out enforced, Global Privacy Control honored. AI processing with client-identifying information scrubbed before any model call.

How we handle confidential data →

Ready for your daily briefing?