
What Is the NHDPA? New Hampshire Data Privacy Act
The NHDPA (RSA 507-H) took effect January 1, 2025, with a low 35,000-consumer threshold and opt-in sensitive data. AG enforces; no private right of action.
Loading...
Browse our full library of legal guides, state law breakdowns, and practical legal information.
11260 articles
Browse by Category →
The NHDPA (RSA 507-H) took effect January 1, 2025, with a low 35,000-consumer threshold and opt-in sensitive data. AG enforces; no private right of action.

Nebraska NDPA compliance (Neb. Rev. Stat. 87-1103): the SBA small-business test, opt-in sensitive data, assessments, plus a permanent 30-day cure period.

Nebraska's NDPA (Neb. Rev. Stat. 87-1107) gives five rights: access, correct, delete, port, and opt out, with a 45-day response window and a 60-day appeal.

The Nebraska Data Privacy Act (Neb. Rev. Stat. 87-1101) took effect Jan 1, 2025 and uses the Texas-style federal small-business test, with no numeric threshold.

Delaware DPDPA compliance steps (Del. Code tit. 6, ch. 12D): 35,000-consumer test, notice, opt-in sensitive data, GPC by Jan 1, 2026, $10,000 penalties.

Delaware DPDPA rights (Del. Code tit. 6, § 12D-104): access, delete, opt out, third-party list, 45-day response, and a Jan 1, 2026 universal opt-out.

The DPDPA (Del. Code tit. 6, ch. 12D) took effect Jan 1, 2025, covers many nonprofits and colleges, and carries AG penalties up to $10,000 per violation.

A practical Iowa Code 715D compliance checklist: thresholds, privacy notice, sale opt-out, processor contracts, the 90-day cure, and $7,500 penalties.

Under Iowa Code 715D.3, Iowans can access, delete, port, and opt out of data sales. There is no right to correct, targeted-ad opt-out, or profiling opt-out.

The Iowa Consumer Data Protection Act (Iowa Code 715D) took effect Jan. 1, 2025. Its limited rights make it the most business-friendly U.S. state privacy law.

Learn how to respond to a GDPR DSAR under Article 15: the one-month deadline, what data to provide, fees, refusals, and a step-by-step response workflow.

GDPR Articles 37-39 explained: the 3 mandatory DPO triggers, tasks, independence rules, conflict-of-interest bar, and fines for non-compliance.