Californias cybersecurity audit rule is now in effect its impact for class litigation

The IAPP writes Last year the California Privacy Protection Agency adopted a major new rule requiring certain businesses to conduct an annual cybersecurity audit The rule went into effect 1 Jan 2026 This pioneering requirement the first of its kind among state data privacy laws of general applicability may entail substantial compliance efforts for affected companies to Source