SlideShare a Scribd company logo
1 of 38
Download to read offline
June 6, 2023
Marketing Meets Privacy
What You Need to Know in 2023
John Doyle
Digital Polygon
CEO, Technical Architect
E-Mail: john@digitalpolygon.com
Rick Buck
Executive Director, Data Privacy
Officer
● Building a better internet
● Hiking, snowboarding, and
sailing the seven seas
● Use privacy as a competitive advantage
● Biker, Golfer, Music Lover
A BIG Thanks to
Rick Buck!
DISCLAIMER: We are not lawyers. Your legal requirements related to these privacy laws should
be determined by your legal council and privacy teams!
1. Current Privacy Landscape in the US
2. Privacy and My Website
3. Useful resources for staying ahead of new privacy laws
4. Q&A
Agenda
Privacy Changes are
Moving Fast
Copyright © 2023 Digital Polygon | All rights reserved
The evolving privacy landscape
State Overview
● California - 1 Jan 2023
● Virginia - 1 Jan 2023
● Colorado - 1 July 2023
● Connecticut - 1 July 2023
● Utah - 31 Dec 2023
● Tennessee - 1 July 2024
● Montana - 1 Oct 2024
● Iowa - 1 Jan 2025
● Indiana - 1 Jan 2026
AS OF 4/7/22
State Overview
● All have consumer rights
● All have slightly different
requirements
○ Private Right of Action
○ Rectification
○ Automated Decision Making
○ Sensitive Data
○ Privacy Impact Assessments
○ Do Not Sell Requirements
○ Data Retention
○ Privacy Notices
AS OF 4/7/2022
1. There are an increasing number of international privacy laws.
2. There are an increasing number of US state privacy laws.
3. Most new laws closely resemble GDPR
a. Notice and Choice
b. Privacy Rights
c. Focus on Surveillance and Ad Tech
d. Accountability for Downstream Vendors
e. Heavy Penalties
Privacy is Here to Stay
“Who has the data has the power”
Tim O’Reilly
User
Experience
Personalization
Retargeting
Informed
Decision
Making
Improve Product
Features
Advertising
Targeted
Messaging
Improving
Conversions
Segmentation
Predictive
Modeling
Targeted
Campaigns
Connected
Audiences
What About My
Website?
Your Website Supports 3 Key Pillars of Privacy
Provide Information
Privacy policies are not
anything new, but the
content they must include
is expanding forcing
organizations to be more
transparent about what
data they collect and how
they use it.
Facilitate Requests
Business must now
provide a process for
facilitating user requests
to delete, access, rectify
and port their privacy
related data collected via
cookies, pixels, forms, etc.
Manage Consent
Privacy laws provide a
means to enable users to
take control of their privacy
preferences by opting-in or
-out of various triggers. This
could be cookie consent,
tracking consent, or do not
sell my information consent.
Your Website Supports 3 Key Pillars of Privacy
Provide Information
1. Privacy Notice
2. Cookie Usage
Facilitate Requests
1. Delete
2. Access
3. Rectification
4. Portability
Manage Consent
1. Cookie Consent
2. Tracking Consent
3. Do Not Sell Consent
4. Consent for Targeted
Advertising and
Automated Decision
Making
E-MAIL
SOCIAL
Website
CRM CDP
3rd Party
Providers
Analytics Ad Platforms
Providing
Information
Say what you do…
● Privacy Notices
● Cookie Usage
● Data Collection Practices
Pillar
Facilitate
Requests
Give users access to their rights…
● Delete
● Access
● Rectification
● Portability
Pillar
Manage
Consent
Do what you say…
● Cookie Consent
● Tracking Consent
● Do Not Sell Consent
● Consent for Targeted Advertising
and Automated Decision Making
● GPC Signals
Pillar
Moving Away from Cookie Banners? Maybe?
● Banner blindness is real
and industry experts are
recognizing that maybe
cookie banners are not the
best approach to privacy.
● The US Privacy Laws do not
dictate the use of cookie
banners.
● There are better user
experiences available.
Let’s take a simple
marketing example for
consent
When Opt-out is given, don’t load scripts
It is more than cookies - 3rd party scripts that are embedded on your
website can track information about your users without the use of cookies.
What’s to Come?
(Sorry in advance to the marketers!)
Recap
1. Users need the opportunity to opt-out before they are tracked.
2. Some of the laws have opt-in for certain conditions.
3. GPC Signal covers only Do Not Sell/Share.
….. So what about all of the other consents?
State Overview
● All have consumer rights
● All have slightly different
requirements
○ Private Right of Action
○ Rectification
○ Automated Decision Making
○ Sensitive Data
○ Privacy Impact Assessments
○ Do Not Sell Requirements
○ Data Retention
○ Privacy Notices
AS OF 4/7/2022
Standards Will Be Introduced
Websites will be
expected to adhere to
these
standards/automatio
n principals (similar to
the TCF 2.0 Framework
in the EU).
There are tools to help.
Drupal Modules
Open Source Enables!
● COOKiES Consent Management
● General Data Protection Regulation
There are also a number of 3rd party
vendors who provide cookie consent
and privacy integration to streamline
your compliance process.
1. WireWheel
2. UserCentrics
3. OneTrust
4. Didomi
5. Many more!
Tools
Global Privacy
Control Signal
Respecting user choices
The Global Privacy Control signal aims
to set a standard for exercising users
privacy rights.
Tools
Google Consent
Mode
Google Consent Mode will adjust
the behavior of normal tracking
pings to alter the information that
is collected to respect a users
preferences.
● Consent status pings (Google
Ads and Floodlight tags)
● Conversion pings
● Google Analytics pings
Tools
Key Takeaways
Privacy is way more than just a button at the bottom of your screen.
It is...
1. Your organization's responsibility to know the laws and regulations
2. Saying what you do
3. Doing what you say
4. Giving the power for users to choose
Together We Can Build a
Better Internet
Legislation Related Resources
1. IAPP US State Privacy Legislation Chart:
https://iapp.org/media/pdf/resource_center/State_Comp_Privacy_Law_Chart.pdf
2. IAPP US State Privacy Legislation Tracker:
https://iapp.org/resources/article/us-state-privacy-legislation-tracker/
3. WireWheel’s Privacy Law Comparison Table: https://wirewheel.io/privacy-laws-table/
Additional Resources to Help With Your
Privacy Journey
Consent Automation
1. GPC Signal: https://globalprivacycontrol.org/
2. GPP Spec:
https://github.com/InteractiveAdvertisingBureau/Global-Privacy-Platform/tree/main
3. Google Consent Mode: https://support.google.com/analytics/answer/9976101?hl=en
4. TCF 2.0: https://iabeurope.eu/tcf-2-0/

More Related Content

Similar to Marketing Meets Privacy_ What You Need to Know in 2023.pdf

Understanding & Working with the GDPR
Understanding & Working with the GDPRUnderstanding & Working with the GDPR
Understanding & Working with the GDPRMarketo
 
Why We Require GDPR?
Why We Require GDPR?Why We Require GDPR?
Why We Require GDPR?Jatin Kochhar
 
Global Data Privacy Regulation
Global Data Privacy RegulationGlobal Data Privacy Regulation
Global Data Privacy RegulationJatin Kochhar
 
Are you GDPR compliant?
Are you GDPR compliant? Are you GDPR compliant?
Are you GDPR compliant? TrekkSoft
 
What You Should Know About Data Privacy- Knobbe Martens Webinar Series for St...
What You Should Know About Data Privacy- Knobbe Martens Webinar Series for St...What You Should Know About Data Privacy- Knobbe Martens Webinar Series for St...
What You Should Know About Data Privacy- Knobbe Martens Webinar Series for St...Knobbe Martens - Intellectual Property Law
 
Agenda 21 eu cookie seminar - david naylor - field fisher waterhouse
Agenda 21   eu cookie seminar - david naylor - field fisher waterhouseAgenda 21   eu cookie seminar - david naylor - field fisher waterhouse
Agenda 21 eu cookie seminar - david naylor - field fisher waterhouseagenda21
 
GDPR & the Travel Industry: Practical recommendations for holiday rental owners
GDPR & the Travel Industry: Practical recommendations for holiday rental ownersGDPR & the Travel Industry: Practical recommendations for holiday rental owners
GDPR & the Travel Industry: Practical recommendations for holiday rental ownersSpain-Holiday.com
 
What's Next - General Data Protection Regulation (GDPR) Changes
What's Next - General Data Protection Regulation (GDPR) ChangesWhat's Next - General Data Protection Regulation (GDPR) Changes
What's Next - General Data Protection Regulation (GDPR) ChangesOgilvy Consulting
 
TrustArc-Webinar-Slides-2022-09-20-Cross-Contextual-Advertising
TrustArc-Webinar-Slides-2022-09-20-Cross-Contextual-AdvertisingTrustArc-Webinar-Slides-2022-09-20-Cross-Contextual-Advertising
TrustArc-Webinar-Slides-2022-09-20-Cross-Contextual-AdvertisingTrustArc
 
#1NWebinar: GDPR and Privacy Best Practices for Digital Marketers
#1NWebinar: GDPR and Privacy Best Practices for Digital Marketers#1NWebinar: GDPR and Privacy Best Practices for Digital Marketers
#1NWebinar: GDPR and Privacy Best Practices for Digital MarketersOne North
 
TrustArc Webinar-Advertising, Privacy, and Data Management Working Together
TrustArc Webinar-Advertising, Privacy, and Data Management Working TogetherTrustArc Webinar-Advertising, Privacy, and Data Management Working Together
TrustArc Webinar-Advertising, Privacy, and Data Management Working TogetherTrustArc
 
Privacy and Data Security | Data Collection | Social Media
Privacy and Data Security | Data Collection | Social MediaPrivacy and Data Security | Data Collection | Social Media
Privacy and Data Security | Data Collection | Social Mediadevbhargav1
 
Polina Zvyagina - Airbnb - Privacy & GDPR Compliance - Stanford Engineering -...
Polina Zvyagina - Airbnb - Privacy & GDPR Compliance - Stanford Engineering -...Polina Zvyagina - Airbnb - Privacy & GDPR Compliance - Stanford Engineering -...
Polina Zvyagina - Airbnb - Privacy & GDPR Compliance - Stanford Engineering -...Burton Lee
 
GDPR's Impact on Social Media - Everything You Need to Know
GDPR's Impact on Social Media - Everything You Need to KnowGDPR's Impact on Social Media - Everything You Need to Know
GDPR's Impact on Social Media - Everything You Need to KnowVisitor Analytics
 
eBusiness Club "Demystifying the EU Cookie Law presentation, Geldards
eBusiness Club  "Demystifying the EU Cookie Law presentation, GeldardseBusiness Club  "Demystifying the EU Cookie Law presentation, Geldards
eBusiness Club "Demystifying the EU Cookie Law presentation, GeldardsJon Egley
 

Similar to Marketing Meets Privacy_ What You Need to Know in 2023.pdf (20)

Understanding & Working with the GDPR
Understanding & Working with the GDPRUnderstanding & Working with the GDPR
Understanding & Working with the GDPR
 
Why We Require GDPR?
Why We Require GDPR?Why We Require GDPR?
Why We Require GDPR?
 
Global Data Privacy Regulation
Global Data Privacy RegulationGlobal Data Privacy Regulation
Global Data Privacy Regulation
 
The DMA conference 2012
The DMA conference 2012The DMA conference 2012
The DMA conference 2012
 
Are you GDPR compliant?
Are you GDPR compliant? Are you GDPR compliant?
Are you GDPR compliant?
 
Gdpr action plan
Gdpr action plan Gdpr action plan
Gdpr action plan
 
Gdpr presentation
Gdpr presentationGdpr presentation
Gdpr presentation
 
What You Should Know About Data Privacy- Knobbe Martens Webinar Series for St...
What You Should Know About Data Privacy- Knobbe Martens Webinar Series for St...What You Should Know About Data Privacy- Knobbe Martens Webinar Series for St...
What You Should Know About Data Privacy- Knobbe Martens Webinar Series for St...
 
Agenda 21 eu cookie seminar - david naylor - field fisher waterhouse
Agenda 21   eu cookie seminar - david naylor - field fisher waterhouseAgenda 21   eu cookie seminar - david naylor - field fisher waterhouse
Agenda 21 eu cookie seminar - david naylor - field fisher waterhouse
 
GDPR & the Travel Industry: Practical recommendations for holiday rental owners
GDPR & the Travel Industry: Practical recommendations for holiday rental ownersGDPR & the Travel Industry: Practical recommendations for holiday rental owners
GDPR & the Travel Industry: Practical recommendations for holiday rental owners
 
What's Next - General Data Protection Regulation (GDPR) Changes
What's Next - General Data Protection Regulation (GDPR) ChangesWhat's Next - General Data Protection Regulation (GDPR) Changes
What's Next - General Data Protection Regulation (GDPR) Changes
 
TrustArc-Webinar-Slides-2022-09-20-Cross-Contextual-Advertising
TrustArc-Webinar-Slides-2022-09-20-Cross-Contextual-AdvertisingTrustArc-Webinar-Slides-2022-09-20-Cross-Contextual-Advertising
TrustArc-Webinar-Slides-2022-09-20-Cross-Contextual-Advertising
 
#1NWebinar: GDPR and Privacy Best Practices for Digital Marketers
#1NWebinar: GDPR and Privacy Best Practices for Digital Marketers#1NWebinar: GDPR and Privacy Best Practices for Digital Marketers
#1NWebinar: GDPR and Privacy Best Practices for Digital Marketers
 
TrustArc Webinar-Advertising, Privacy, and Data Management Working Together
TrustArc Webinar-Advertising, Privacy, and Data Management Working TogetherTrustArc Webinar-Advertising, Privacy, and Data Management Working Together
TrustArc Webinar-Advertising, Privacy, and Data Management Working Together
 
Privacy and Data Security | Data Collection | Social Media
Privacy and Data Security | Data Collection | Social MediaPrivacy and Data Security | Data Collection | Social Media
Privacy and Data Security | Data Collection | Social Media
 
Polina Zvyagina - Airbnb - Privacy & GDPR Compliance - Stanford Engineering -...
Polina Zvyagina - Airbnb - Privacy & GDPR Compliance - Stanford Engineering -...Polina Zvyagina - Airbnb - Privacy & GDPR Compliance - Stanford Engineering -...
Polina Zvyagina - Airbnb - Privacy & GDPR Compliance - Stanford Engineering -...
 
DMA Cookies update
DMA Cookies updateDMA Cookies update
DMA Cookies update
 
What is GDPR ? by M32
What is GDPR ? by M32What is GDPR ? by M32
What is GDPR ? by M32
 
GDPR's Impact on Social Media - Everything You Need to Know
GDPR's Impact on Social Media - Everything You Need to KnowGDPR's Impact on Social Media - Everything You Need to Know
GDPR's Impact on Social Media - Everything You Need to Know
 
eBusiness Club "Demystifying the EU Cookie Law presentation, Geldards
eBusiness Club  "Demystifying the EU Cookie Law presentation, GeldardseBusiness Club  "Demystifying the EU Cookie Law presentation, Geldards
eBusiness Club "Demystifying the EU Cookie Law presentation, Geldards
 

Recently uploaded

Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slidespraypatel2
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesSinan KOZAK
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):comworks
 
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your BudgetHyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your BudgetEnjoy Anytime
 
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptxMaking_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptxnull - The Open Security Community
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountPuma Security, LLC
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking MenDelhi Call girls
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonetsnaman860154
 
Benefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksBenefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksSoftradix Technologies
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitecturePixlogix Infotech
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machinePadma Pradeep
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Scott Keck-Warren
 
How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?XfilesPro
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationSafe Software
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking MenDelhi Call girls
 
Key Features Of Token Development (1).pptx
Key  Features Of Token  Development (1).pptxKey  Features Of Token  Development (1).pptx
Key Features Of Token Development (1).pptxLBM Solutions
 
Enhancing Worker Digital Experience: A Hands-on Workshop for Partners
Enhancing Worker Digital Experience: A Hands-on Workshop for PartnersEnhancing Worker Digital Experience: A Hands-on Workshop for Partners
Enhancing Worker Digital Experience: A Hands-on Workshop for PartnersThousandEyes
 

Recently uploaded (20)

Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slides
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen Frames
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):
 
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your BudgetHyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
 
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptxMaking_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path Mount
 
Vulnerability_Management_GRC_by Sohang Sengupta.pptx
Vulnerability_Management_GRC_by Sohang Sengupta.pptxVulnerability_Management_GRC_by Sohang Sengupta.pptx
Vulnerability_Management_GRC_by Sohang Sengupta.pptx
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
Benefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksBenefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other Frameworks
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC Architecture
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machine
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024
 
How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?
 
The transition to renewables in India.pdf
The transition to renewables in India.pdfThe transition to renewables in India.pdf
The transition to renewables in India.pdf
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
 
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptxE-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
Key Features Of Token Development (1).pptx
Key  Features Of Token  Development (1).pptxKey  Features Of Token  Development (1).pptx
Key Features Of Token Development (1).pptx
 
Enhancing Worker Digital Experience: A Hands-on Workshop for Partners
Enhancing Worker Digital Experience: A Hands-on Workshop for PartnersEnhancing Worker Digital Experience: A Hands-on Workshop for Partners
Enhancing Worker Digital Experience: A Hands-on Workshop for Partners
 

Marketing Meets Privacy_ What You Need to Know in 2023.pdf

  • 1. June 6, 2023 Marketing Meets Privacy What You Need to Know in 2023
  • 2. John Doyle Digital Polygon CEO, Technical Architect E-Mail: john@digitalpolygon.com Rick Buck Executive Director, Data Privacy Officer ● Building a better internet ● Hiking, snowboarding, and sailing the seven seas ● Use privacy as a competitive advantage ● Biker, Golfer, Music Lover A BIG Thanks to Rick Buck!
  • 3. DISCLAIMER: We are not lawyers. Your legal requirements related to these privacy laws should be determined by your legal council and privacy teams! 1. Current Privacy Landscape in the US 2. Privacy and My Website 3. Useful resources for staying ahead of new privacy laws 4. Q&A Agenda
  • 5.
  • 6. Copyright © 2023 Digital Polygon | All rights reserved The evolving privacy landscape
  • 7. State Overview ● California - 1 Jan 2023 ● Virginia - 1 Jan 2023 ● Colorado - 1 July 2023 ● Connecticut - 1 July 2023 ● Utah - 31 Dec 2023 ● Tennessee - 1 July 2024 ● Montana - 1 Oct 2024 ● Iowa - 1 Jan 2025 ● Indiana - 1 Jan 2026 AS OF 4/7/22
  • 8.
  • 9. State Overview ● All have consumer rights ● All have slightly different requirements ○ Private Right of Action ○ Rectification ○ Automated Decision Making ○ Sensitive Data ○ Privacy Impact Assessments ○ Do Not Sell Requirements ○ Data Retention ○ Privacy Notices AS OF 4/7/2022
  • 10. 1. There are an increasing number of international privacy laws. 2. There are an increasing number of US state privacy laws. 3. Most new laws closely resemble GDPR a. Notice and Choice b. Privacy Rights c. Focus on Surveillance and Ad Tech d. Accountability for Downstream Vendors e. Heavy Penalties Privacy is Here to Stay
  • 11. “Who has the data has the power” Tim O’Reilly User Experience Personalization Retargeting Informed Decision Making Improve Product Features Advertising Targeted Messaging Improving Conversions Segmentation Predictive Modeling Targeted Campaigns Connected Audiences
  • 13. Your Website Supports 3 Key Pillars of Privacy Provide Information Privacy policies are not anything new, but the content they must include is expanding forcing organizations to be more transparent about what data they collect and how they use it. Facilitate Requests Business must now provide a process for facilitating user requests to delete, access, rectify and port their privacy related data collected via cookies, pixels, forms, etc. Manage Consent Privacy laws provide a means to enable users to take control of their privacy preferences by opting-in or -out of various triggers. This could be cookie consent, tracking consent, or do not sell my information consent.
  • 14. Your Website Supports 3 Key Pillars of Privacy Provide Information 1. Privacy Notice 2. Cookie Usage Facilitate Requests 1. Delete 2. Access 3. Rectification 4. Portability Manage Consent 1. Cookie Consent 2. Tracking Consent 3. Do Not Sell Consent 4. Consent for Targeted Advertising and Automated Decision Making E-MAIL SOCIAL Website CRM CDP 3rd Party Providers Analytics Ad Platforms
  • 15. Providing Information Say what you do… ● Privacy Notices ● Cookie Usage ● Data Collection Practices Pillar
  • 16. Facilitate Requests Give users access to their rights… ● Delete ● Access ● Rectification ● Portability Pillar
  • 17. Manage Consent Do what you say… ● Cookie Consent ● Tracking Consent ● Do Not Sell Consent ● Consent for Targeted Advertising and Automated Decision Making ● GPC Signals Pillar
  • 18. Moving Away from Cookie Banners? Maybe? ● Banner blindness is real and industry experts are recognizing that maybe cookie banners are not the best approach to privacy. ● The US Privacy Laws do not dictate the use of cookie banners. ● There are better user experiences available.
  • 19. Let’s take a simple marketing example for consent
  • 20.
  • 21. When Opt-out is given, don’t load scripts It is more than cookies - 3rd party scripts that are embedded on your website can track information about your users without the use of cookies.
  • 22. What’s to Come? (Sorry in advance to the marketers!)
  • 23. Recap 1. Users need the opportunity to opt-out before they are tracked. 2. Some of the laws have opt-in for certain conditions. 3. GPC Signal covers only Do Not Sell/Share. ….. So what about all of the other consents?
  • 24. State Overview ● All have consumer rights ● All have slightly different requirements ○ Private Right of Action ○ Rectification ○ Automated Decision Making ○ Sensitive Data ○ Privacy Impact Assessments ○ Do Not Sell Requirements ○ Data Retention ○ Privacy Notices AS OF 4/7/2022
  • 25. Standards Will Be Introduced Websites will be expected to adhere to these standards/automatio n principals (similar to the TCF 2.0 Framework in the EU).
  • 26.
  • 27.
  • 28.
  • 29.
  • 30.
  • 31.
  • 32. There are tools to help.
  • 33. Drupal Modules Open Source Enables! ● COOKiES Consent Management ● General Data Protection Regulation There are also a number of 3rd party vendors who provide cookie consent and privacy integration to streamline your compliance process. 1. WireWheel 2. UserCentrics 3. OneTrust 4. Didomi 5. Many more! Tools
  • 34. Global Privacy Control Signal Respecting user choices The Global Privacy Control signal aims to set a standard for exercising users privacy rights. Tools
  • 35. Google Consent Mode Google Consent Mode will adjust the behavior of normal tracking pings to alter the information that is collected to respect a users preferences. ● Consent status pings (Google Ads and Floodlight tags) ● Conversion pings ● Google Analytics pings Tools
  • 36. Key Takeaways Privacy is way more than just a button at the bottom of your screen. It is... 1. Your organization's responsibility to know the laws and regulations 2. Saying what you do 3. Doing what you say 4. Giving the power for users to choose
  • 37. Together We Can Build a Better Internet
  • 38. Legislation Related Resources 1. IAPP US State Privacy Legislation Chart: https://iapp.org/media/pdf/resource_center/State_Comp_Privacy_Law_Chart.pdf 2. IAPP US State Privacy Legislation Tracker: https://iapp.org/resources/article/us-state-privacy-legislation-tracker/ 3. WireWheel’s Privacy Law Comparison Table: https://wirewheel.io/privacy-laws-table/ Additional Resources to Help With Your Privacy Journey Consent Automation 1. GPC Signal: https://globalprivacycontrol.org/ 2. GPP Spec: https://github.com/InteractiveAdvertisingBureau/Global-Privacy-Platform/tree/main 3. Google Consent Mode: https://support.google.com/analytics/answer/9976101?hl=en 4. TCF 2.0: https://iabeurope.eu/tcf-2-0/