Data Privacy

Data privacy law in the United States is a patchwork of state and federal laws. That’s not changing anytime soon.

The Ninth Circuit Court of Appeals recently issued a ruling that could have significant implications for the data privacy regulatory landscape in the United States, particularly with respect to laws aimed at protecting minors.
Data privacy law in the United States is a patchwork of state and federal laws. That’s not changing anytime soon.

The Ninth Circuit Court of Appeals recently issued a ruling that could have significant implications for the data privacy regulatory landscape in the United States, particularly with respect to laws aimed at protecting minors.

A class action lawsuit was filed against Google over the way YouTube tracks the viewing habits of minors. The plaintiffs had sued Google under various state data privacy laws as well as under the federal Children’s Online Privacy Protection Act (COPPA). Google moved for dismissal of the state law claims based on the argument that the plaintiffs’ claims were preempted by COPPA. In other words, Google was arguing that the plaintiffs’ claims can only be brought under COPPA because it supersedes state law with respect to the plaintiffs’ allegations. Though the district court agreed with Google, the Ninth Circuit reversed, holding that because there’s no inconsistency between COPPA and the state laws at issue, the plaintiffs can sue under both.

The main take home from this decision is that the patchwork nature of data privacy regulation in the United States isn’t going away anytime soon. The United States is fairly unique in this regard, both in terms of the lack of a comprehensive federal data privacy law as well as the existence of numerous data privacy laws at the state level. Many of those state laws are domain-specific and are essentially duplicative of laws and regulations at the federal level. In many ways, this makes data privacy compliance more complex in the US than in other countries, which has prompted calls for an overhaul spearheaded by the federal government.

What’s also notable here is that the Federal Trade Commission (FTC), which enforces COPPA, actually sided with the plaintiffs on this issue, happily conceding that it’s not the only sheriff in town when it comes to policing compliance with COPPA’s requirements. This decision coupled with the FTC’s position means that the calls for a federally driven overhaul of data privacy law in the US won’t be heeded anytime soon.

Back to Blog

Who is Dev Legal?

Sabir Ibrahim

Managing Attorney

During his 18-year career as an attorney and technology entrepreneur, Sabir has advised clients ranging from pre-seed startups to Fortune 50 companies on a variety of issues within the intersection of law and technology. He is a former associate at the law firm of Greenberg Traurig, a former corporate counsel at Amazon, and a former senior counsel at Roku. He also founded and managed an IT managed services provider that served professional services firms in California, Oregon, and Texas.

Sabir is also co-founder of Chinstrap Community, a free resource center on commercial open source software (COSS) for entrepreneurs, investors, developers, attorneys, and others interested in open source software entrepreneurship.

Sabir received his BSE in Computer Science from the University of Michigan College of Engineering. He received his JD from the University of Michigan Law School, where he was an article editor of the Michigan Telecommunications & Technology Law Review.

Sabir is licensed to practice in California and before the United States Patent & Trademark Office (USPTO). He is formerly a Certified Information Privacy Professional (CIPP/US).

Sabir Ibrahim, Managing Attorney

What can Dev Legal do for you?

Areas Of Expertise

We aim to advise clients in a manner that minimizes noncompliance risks without compromising operational efficiency or business interests. The areas in which we assist clients, either alone or in collaboration with affiliates, include:

Technology License Agreements

Drafting, reviewing, and negotiating software licenses, SaaS agreements, and other technology contracts.

Open Source Software Matters

License compliance, contribution policies, and open source business strategy.

SaaS Agreements

Subscription agreements, terms of service, and service level agreements for cloud-based services.

Intellectual Property Counseling

Trademark, copyright, and patent strategy for technology companies.

Product Counseling

Legal review of product features, marketing materials, and compliance with regulations.

Terms of Service and Privacy Policies

Creating and updating legal documents for websites and applications.

Assessment of Contractual Requirements

Reviewing obligations and ensuring compliance with complex agreements.

Information Management Policies

Data governance, retention policies, and information security procedures.

Risk Mitigation Strategy

Identifying legal risks and developing strategies to minimize exposure.

Join Our Email Newsletter List And Receive Our Free Compliance Explainer

Our one-page Dev Legal Compliance Explainer is an easy-reference guide to understanding compliance concepts for you or your clients. Our email newsletter includes information about news and recent developments in the technology regulatory landscape and is sent approximately once a month.

Contact Us

Get In Touch

Phone

510.255.3766

Mail

PO Box 721
Union City, CA 94587