Welcome to October's GrailMail! We’re back with essential updates, in depth analysis, and actionable insights to help you stay ahead of the curve in the data privacy landscape.
View in browser
DataGrail-Logo-HorizontalLockup-969690
GrailMail_Hero_Update_240531
 

Happy October, folks. 🎃 

 

It’s been a busy month across the data privacy landscape, with major state laws advancing and new compliance challenges on the horizon. Here’s what’s shaping the landscape and what’s new from DataGrail.

 

In case you missed it, last week, DataGrail’s 2025 Privacy Risk Summit brought together top voices in privacy, legal, and security for a half-day of real-world insights and tactical guidance. Check out the section below to watch sessions on demand and explore top takeaways from the event.

 

We’re also gearing up for IAPP PSR in San Diego this week (October 30–31). Stop by the DataGrail booth (#319) for complimentary craft coffee, exclusive swag, and conversations with our privacy experts.

IAPP Social Image_1200x628

Privacy Risk Summit 2025: Watch On Demand 🎥

 

Couldn’t make it live? You can now watch the Privacy Risk Summit on demand featuring top privacy experts and industry leaders sharing tactical insights for 2025 and beyond.

 

Highlights Include:

  • The New Standard of Privacy: Adapting to Today’s Regulatory Shifts
    Tom Kemp, Executive Director of the California Privacy Protection Agency, unpacked how state enforcement is reshaping national compliance expectations.
  • What’s Next in Privacy: 2025 Trends Shaping the Future
    Daniel Barber, CEO of DataGrail, shared forward-looking insights into how businesses can navigate emerging privacy expectations.
  • Generative AI & Privacy: Risks, Realities, and What Comes Next
    Jason Clinton (Anthropic), Whitney Merrill (Asana), and Sunil Agrawal (Glean) discussed how generative AI is reshaping privacy operations.
  • Staying Ahead of AI and Global Privacy Regulations
    Omer Tene (Goodwin), Shannon Yavorsky (Orrick), and Dr. Gabriela Zanfir-Fortuna (Future of Privacy Forum) unpacked global privacy enforcement trends and shared strategies to prepare for new AI-focused laws.
  • DataGrail Product Spotlight: AI-Powered Risk Management
    DataGrail’s Chief Product Officer, Eric Brinkman and Senior Product Manager, Lisa Wang unveiled Risk Register and shared how DataGrail is using advanced connectivity, automation, and responsible AI to help privacy teams reduce risk.
  • Privacy in Action: Lessons from Data Privacy Heroes
    Anna Rogers (nCino), Randy Wood (Cricut), and Jennifer Dickey (Dykema) shared how privacy teams are driving business impact through cross-functional trust.

Whether you’re focused on compliance, AI governance, or risk reduction, these sessions offer actionable takeaways and peer-driven insights to help future-proof your privacy program.

Watch the Summit on Demand

GrailMail Headers

Here’s what you need to know from October’s data privacy news. 👇

 

🚨 UK Government Issues New Data Demand for Apple Users

  • The UK government has granted itself new authority to demand access to Apple users’ personal data, escalating its dispute with the company over encryption and user privacy. This move underscores growing tensions between tech firms and governments over access to private information. Read more here.

🏛 Governor Newsom Signs Landmark Opt-Out Law

  • California Governor Gavin Newsom has signed the California Opt Me Out Act (AB 566) into law — the first of its kind in the U.S. The law requires browsers to include a setting that allows consumers to send an opt-out signal, giving Californians an easier way to exercise their privacy rights. Read more here.

💼 States Turn to Outside Firms for Major Privacy Settlements

  • State attorneys general — including those from Texas and Nebraska — are partnering with private law firms to bring major data privacy lawsuits against tech companies. This new model is driving multimillion-dollar settlements and signaling a more aggressive wave of state-level enforcement. Read more here.

🔒 Apple Prepares to Comply with Texas Age Assurance Law, Warns of Privacy Risks

  • Apple announced its intent to comply with Texas’s new age assurance law (SB2420), but raised concerns that the law’s requirements to collect personal data could undermine user privacy. The company highlighted that even basic app downloads could soon require sensitive information. Read more here.

October (2)
May

GrailMail Headers (2)

Introducing Risk Register: Centralized, AI-Powered Privacy Risk Management

 

We’re thrilled to announce the launch of Risk Register, the next evolution in privacy program technology. Built for today’s rapidly shifting environment of data regulations, AI-enabled workflows, and decentralized systems, Risk Register gives privacy, security and compliance teams a centralized hub to identify, score and mitigate risk across the enterprise.

 

With Risk Register, teams can:

  • Centralize risk tracking across systems, vendors, and processes.
  • Leverage AI-powered insights to automatically surface and prioritize emerging risks.
  • Simplify reporting and demonstrate compliance readiness with confidence.

👉 Check out the full product release blog here.

GrailMail Headers (3)

This AI Prompt Simulates Your Breach Response Playbook

  • When a breach hits, every minute counts. This blog introduces a GPT-powered prompt that builds a complete, regulator-ready incident response plan in minutes — timelines, roles, deadlines, and communications included.

Rethinking Compliance: Dynamic Planning for a Volatile Landscape

  • Traditional compliance roadmaps can’t keep up with constant change. Learn how dynamic privacy planning helps teams stay agile amid evolving laws, new technologies, and shifting business priorities.

Meet Your New Privacy Copilot: A GPT-5 Prompt That Reviews DPAs Like a Senior Counsel

  • Turn GPT-5 into your expert privacy reviewer. This prompt helps legal teams analyze data processing agreements faster and more consistently — flagging risks, obligations, and compliance gaps with precision.

DataGrail in Action: Risk Register Live Product Demo and Q&A

  • Join us for an inside look at Risk Register, DataGrail’s newest AI-powered hub for centralized risk management. See how privacy, security, and compliance teams leverage intelligent automation to identify, prioritize, and mitigate risks, all from one unified platform

Are you passionate about privacy, legal, or security issues? Want to connect with like-minded professionals and stay ahead in a rapidly evolving landscape?

 

Become a member of our Privacy Community!

Privacy_Community

We’ve got everything from privacy law updates to career tips, monthly privacy huddles, and exclusive resources tailored for the privacy community. Don’t miss out on the chance to be part of a vibrant network committed to advancing data privacy.

See you next time! 👋

Colleen

This was sent to your email. If you do not wish to receive news and product updates in this format, please manage your preferences below.

© 2024 DataGrail, Inc. and/or its affiliates. All rights reserved.
Various trademarks held by their respective owners.

DataGrail, 225 Bush Street, Suite 360, San Francisco, CA 94104

Unsubscribe Manage preferences

DataGrail-Emblem-969690
LinkedIn
X
YouTube