惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

V
Visual Studio Blog
爱范儿
爱范儿
GbyAI
GbyAI
博客园 - 叶小钗
Last Week in AI
Last Week in AI
Jina AI
Jina AI
Microsoft Security Blog
Microsoft Security Blog
云风的 BLOG
云风的 BLOG
C
Check Point Blog
H
Help Net Security
P
Proofpoint News Feed
酷 壳 – CoolShell
酷 壳 – CoolShell
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
大猫的无限游戏
大猫的无限游戏
H
Hackread – Cybersecurity News, Data Breaches, AI and More
B
Blog RSS Feed
Y
Y Combinator Blog
U
Unit 42
T
Tailwind CSS Blog
MyScale Blog
MyScale Blog
N
Netflix TechBlog - Medium
S
SegmentFault 最新的问题
J
Java Code Geeks
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知

Compliance Solutions for Websites, Apps and Organizations | iubenda

AI can build your website. It can't manage your consent. | iubenda Browser signals and machine-readable consent: what they are and what the EU’s Digital Omnibus could change California Consumer Privacy Act (CCPA): Complete Guide How to increase your cookie banner opt-in rates: 5 mistakes to fix today | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #153) Why your consent management setup is a marketing performance question Everything you need to know about GDPR The redesigned cookie banner and configurator What nobody tells you about handing over the company you built European marketers are betting on retention. Privacy could be the edge they’re not using yet. The 5 best alternatives to Didomi in 2026: Pros, cons, pricing, and comparison Looking back on 15 years: what iubenda's founder would tell his 2011 self | iubenda The best cookie policy generator in 2026 DPO Newsletter: Global Data Protection & Privacy News (issue #152) | iubenda What publishers should expect from the EU’s Digital Omnibus proposal Uncertainty is the biggest blocker to AI adoption in marketing | iubenda Everything AI app builders need to know about vibecoding and privacy compliance | iubenda Introducing 1-Click Embedding for Google Tag Manager The Essential Small Business Terms and Conditions Template: What You Need to Know Terms of Use Template | iubenda IAB Europe Raises Concerns Over GDPR Procedural Regulation Draft Report | iubenda Learn from HelloFresh's Costly Mistake: Ensure Compliance with iubenda | iubenda Understanding the Spanish DPA Guide on Audience Measurement Cookies | iubenda The Austrian Data Protection Authority's FAQs on Cookies and Privacy | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #127) | iubenda Microsoft Ensuring European Data Stays Within the EU Cloud Boundary | iubenda Businesses Beware: ICO’s Record £14.3m in Fines for Data Misuse in 2023 Understanding the Risks and Responsibilities of Model-as-a-Service Companies in AI Development Facebook's New “Link History” Feature: A Blend of Convenience and Surveillance? | iubenda OpenAI’s Strategic Move in the EU: Aligning with Data Privacy Regulations
3 things you can do now for CCPA compliance | iubenda
Carla Gonzalez Cidoncha · 2022-10-14 · via Compliance Solutions for Websites, Apps and Organizations | iubenda

If you’re doing business in California, or more broadly in the United States, CPRA (CCPA amendment) may apply to you. Here are 3 simple things you should put into practice now to help make your website compliant! 

CPRA (CCPA amendment) compliance, iubenda

But first, does CPRA (CCPA amendment) apply to you?

CPRA (CCPA amendment) applies to any business that targets California-based consumers and collects their personal information.

To be considered a business under the CPRA (CCPA amendment), you should meet at least one of these requirements:

  • you have an annual gross revenues of at least $25 million; or
  • you generate more than half of your annual income by exchanging customers’ personal information with third parties; or
  • you process personally identifiable information of at least 50,000 Californians every year.

See our CPRA (CCPA amendment) summary here.

1. Have a detailed privacy policy

CPRA (CCPA amendment) grants users specific rights, including the right to be informed. You must inform your users about how their information is processed, who you’re going to share this information with, and what rights they have. 

You can do this via a privacy policy. Remember, your privacy policy should be easily accessible throughout your website/app. 

2. Display notice of collection and “Do not sell” link

According to the right to opt-out, users can request a business that sells their personal information to stop doing that. 

What sale actually means here

Sale does not just refer to the act of trading for money, but to any activity that consists of sharing the user’s personal information for anything that might benefit the business.

Here you should do two main things: 

  1. Display a notice of collection: upon a user’s first visit to your website, you should inform them that you’re selling personal information.
  2. Add a “Do not sell my personal information” link: users should be able to opt-out anytime, and you should make it easy for them. That’s what a DNSMPI link is for!

3. Keep records 

Last, you should keep records of the opt-outs. 
You can’t contact a user who opted out for at least 12 months after their request.

Records can help you keep track of all the requests you received and avoid non-compliance sanctions.

💡 Is there a way to comply easily?

Of course! There are online tools that can help you with CPRA (CCPA amendment) compliance and can save you money, time and effort. 

Take iubenda, for example. 
Our set of tools for CPRA (CCPA amendment) allows you to: 

  • Create a detailed privacy policy, thanks to our Privacy and Cookie Policy Generator.
  • Generate a notice of collection with a “Do Not Sell” link. That’s what the Privacy Controls and Cookie Solution is for.
  • Keep records of opt-outs, with our Consent Database.

Ready to make your website CPRA (CCPA amendment)-compliant?

Start generating