BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//fru.dev//Regulations//EN
CALSCALE:GREGORIAN
METHOD:PUBLISH
X-WR-CALNAME:Regulation deadlines (regulations.fru.dev)
X-WR-CALDESC:Compliance deadlines tracked at regulations.fru.dev
REFRESH-INTERVAL;VALUE=DURATION:P1D
X-PUBLISHED-TTL:P1D
BEGIN:VEVENT
UID:deadline-7003@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:19961220
DTEND;VALUE=DATE:19961221
SUMMARY:Hong Kong PDPO: PDPO takes effect
DESCRIPTION:The PCPD says the PDPO took effect in December 1996\, except ce
 rtain provisions. The exact day was not confirmed on the official pages ch
 ecked.\n\nTentative: depends on a proposal not yet adopted.\n\nPersonal Da
 ta (Privacy) Ordinance (Cap. 486) (Hong Kong)\n\nSource: https://www.pcpd.
 org.hk/english/data_privacy_law/ordinance_at_a_Glance/ordinance.html\n\nht
 tps://regulations.fru.dev/regulations/hk-pdpo
URL:https://regulations.fru.dev/regulations/hk-pdpo
CATEGORIES:Hong Kong,privacy,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7005@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20120908
DTEND;VALUE=DATE:20120909
SUMMARY:Philippines Data Privacy Act: Data Privacy Act takes effect
DESCRIPTION:The Act takes effect 15 days after publication in two national 
 newspapers (sec. 45). This date comes from secondary sources\, not the NPC
  page.\n\nTentative: depends on a proposal not yet adopted.\n\nData Privac
 y Act of 2012 (Republic Act No. 10173) (Philippines)\n\nSource: https://pr
 ivacy.gov.ph/data-privacy-act/\n\nhttps://regulations.fru.dev/regulations/
 ph-dpa
URL:https://regulations.fru.dev/regulations/ph-dpa
CATEGORIES:Philippines,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6999@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20121001
DTEND;VALUE=DATE:20121002
SUMMARY:Taiwan PDPA: 2010 PDPA rewrite takes effect
DESCRIPTION:The 2010 full rewrite of the Act takes effect\, except articles
  6 and 54.\n\nPersonal Data Protection Act (Taiwan)\n\nSource: https://law
 .moj.gov.tw/LawClass/LawHistory.aspx?pcode=I0050021\n\nhttps://regulations
 .fru.dev/regulations/tw-pdpa
URL:https://regulations.fru.dev/regulations/tw-pdpa
CATEGORIES:Taiwan,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-139@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20140702
DTEND;VALUE=DATE:20140703
SUMMARY:Singapore PDPA: PDPA data protection obligations take effect
DESCRIPTION:Main data protection provisions come into force.\n\nPersonal Da
 ta Protection Act 2012 (Singapore) (Singapore)\n\nSource: https://sso.agc.
 gov.sg/Act/PDPA2012\n\nhttps://regulations.fru.dev/regulations/sg-pdpa
URL:https://regulations.fru.dev/regulations/sg-pdpa
CATEGORIES:Singapore,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7006@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20160909
DTEND;VALUE=DATE:20160910
SUMMARY:Philippines Data Privacy Act: Implementing Rules take effect
DESCRIPTION:The IRR takes effect 15 days after publication in the Official 
 Gazette (sec. 72)\, with 72-hour breach notice. The exact date was not sho
 wn on the NPC page.\n\nTentative: depends on a proposal not yet adopted.\n
 \nData Privacy Act of 2012 (Republic Act No. 10173) (Philippines)\n\nSourc
 e: https://privacy.gov.ph/implementing-rules-regulations-data-privacy-act-
 2012/\n\nhttps://regulations.fru.dev/regulations/ph-dpa
URL:https://regulations.fru.dev/regulations/ph-dpa
CATEGORIES:Philippines,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-31@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20170601
DTEND;VALUE=DATE:20170602
SUMMARY:China Cybersecurity Law: Cybersecurity Law takes effect
DESCRIPTION:Original CSL obligations for network operators and CII operator
 s apply.\n\nCybersecurity Law of the People's Republic of China (as amende
 d by the NPC Standing Committee Decision of 28 October 2025) (China)\n\nSo
 urce: https://www.gov.cn/yaowen/liebiao/202510/content_7046194.htm\n\nhttp
 s://regulations.fru.dev/regulations/cn-csl
URL:https://regulations.fru.dev/regulations/cn-csl
CATEGORIES:China,cybersecurity,data-residency,ai,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7024@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20180711
DTEND;VALUE=DATE:20180712
SUMMARY:Australia SOCI Act: SOCI Act commences
DESCRIPTION:The whole Act commences by Proclamation.\n\nSecurity of Critica
 l Infrastructure Act 2018 (Australia)\n\nSource: https://www.legislation.g
 ov.au/C2018A00029/asmade\n\nhttps://regulations.fru.dev/regulations/au-soc
 i-act
URL:https://regulations.fru.dev/regulations/au-soci-act
CATEGORIES:Australia,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7011@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20180831
DTEND;VALUE=DATE:20180901
SUMMARY:Singapore Cybersecurity Act: Cybersecurity Act main provisions comm
 ence
DESCRIPTION:Parts 1 to 4\, 6 and the First Schedule (CII regime) commence.\
 n\nCybersecurity Act 2018 (Singapore)\n\nSource: https://sso.agc.gov.sg/Ac
 ts-Supp/9-2018/Published/20211231?DocDate=20180312\n\nhttps://regulations.
 fru.dev/regulations/sg-cybersecurity-act
URL:https://regulations.fru.dev/regulations/sg-cybersecurity-act
CATEGORIES:Singapore,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7021@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20190528
DTEND;VALUE=DATE:20190529
SUMMARY:Thailand Cybersecurity Act: Cybersecurity Act in force
DESCRIPTION:NCSA states the Act took effect on 28 May 2019.\n\nCybersecurit
 y Act B.E. 2562 (2019) (Thailand)\n\nSource: https://www.ncsa.or.th/about\
 n\nhttps://regulations.fru.dev/regulations/th-cybersecurity-act
URL:https://regulations.fru.dev/regulations/th-cybersecurity-act
CATEGORIES:Thailand,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-134@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20201201
DTEND;VALUE=DATE:20201202
SUMMARY:New Zealand Privacy Act: Privacy Act 2020 in force
DESCRIPTION:IPPs\, mandatory breach notification and compliance notices app
 ly.\n\nPrivacy Act 2020 (New Zealand)\, as amended by the Privacy Amendmen
 t Act 2025 (New Zealand)\n\nSource: https://www.justice.govt.nz/justice-se
 ctor-policy/key-initiatives/enhancing-the-privacy-act/\n\nhttps://regulati
 ons.fru.dev/regulations/nz-privacy-act
URL:https://regulations.fru.dev/regulations/nz-privacy-act
CATEGORIES:New Zealand,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-140@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20210201
DTEND;VALUE=DATE:20210202
SUMMARY:Singapore PDPA: 2020 amendments largely in force
DESCRIPTION:Mandatory data breach notification and revised consent framewor
 k apply.\n\nPersonal Data Protection Act 2012 (Singapore) (Singapore)\n\nS
 ource: https://sso.agc.gov.sg/Act/PDPA2012\n\nhttps://regulations.fru.dev/
 regulations/sg-pdpa
URL:https://regulations.fru.dev/regulations/sg-pdpa
CATEGORIES:Singapore,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-33@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20210901
DTEND;VALUE=DATE:20210902
SUMMARY:China Data Security Law: Data Security Law takes effect
DESCRIPTION:Data classification\, important-data protection and data export
  restrictions apply (Art. 55).\n\nData Security Law of the People's Republ
 ic of China (China)\n\nSource: http://www.cac.gov.cn/2021-06/11/c_16249945
 66919140.htm\n\nhttps://regulations.fru.dev/regulations/cn-dsl
URL:https://regulations.fru.dev/regulations/cn-dsl
CATEGORIES:China,cybersecurity,data-residency,data-access
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7004@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20211008
DTEND;VALUE=DATE:20211009
SUMMARY:Hong Kong PDPO: Anti-doxxing amendments take effect
DESCRIPTION:New doxxing offences and PCPD criminal investigation\, prosecut
 ion and cessation notice powers apply.\n\nPersonal Data (Privacy) Ordinanc
 e (Cap. 486) (Hong Kong)\n\nSource: https://www.pcpd.org.hk/english/data_p
 rivacy_law/amendments_2021/amendment_2021.html\n\nhttps://regulations.fru.
 dev/regulations/hk-pdpo
URL:https://regulations.fru.dev/regulations/hk-pdpo
CATEGORIES:Hong Kong,privacy,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-36@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20211101
DTEND;VALUE=DATE:20211102
SUMMARY:China PIPL: PIPL takes effect
DESCRIPTION:All PIPL obligations (legal bases\, consent\, cross-border rule
 s\, data subject rights) apply (Art. 74).\n\nPersonal Information Protecti
 on Law of the People's Republic of China (China)\n\nSource: http://www.cac
 .gov.cn/2021-08/20/c_1631050028355286.htm\n\nhttps://regulations.fru.dev/r
 egulations/cn-pipl
URL:https://regulations.fru.dev/regulations/cn-pipl
CATEGORIES:China,privacy,data-residency,biometrics,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7023@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20220123
DTEND;VALUE=DATE:20220124
SUMMARY:Australia Online Safety Act: Online Safety Act commences
DESCRIPTION:The whole Act commences by Proclamation.\n\nOnline Safety Act 2
 021 (Australia)\n\nSource: https://www.legislation.gov.au/C2021A00076/asma
 de\n\nhttps://regulations.fru.dev/regulations/au-online-safety-act
URL:https://regulations.fru.dev/regulations/au-online-safety-act
CATEGORIES:Australia,online-safety,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6975@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20220301
DTEND;VALUE=DATE:20220302
SUMMARY:China Algorithmic Recommendation Provisions: Algorithmic recommenda
 tion provisions take effect
DESCRIPTION:User opt-out\, transparency and algorithm filing duties apply.\
 n\nProvisions on the Administration of Algorithmic Recommendation in Inter
 net Information Services (China)\n\nSource: https://www.cac.gov.cn/2022-01
 /04/c_1642894606364259.htm\n\nhttps://regulations.fru.dev/regulations/cn-a
 lgorithm-recommendation
URL:https://regulations.fru.dev/regulations/cn-algorithm-recommendation
CATEGORIES:China,ai,online-safety,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-121@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20220401
DTEND;VALUE=DATE:20220402
SUMMARY:Japan APPI: 2020 amendments in force
DESCRIPTION:Mandatory breach reporting\, pseudonymized information and stri
 cter cross-border rules apply.\n\nAct on the Protection of Personal Inform
 ation (Act No. 57 of 2003)\, as amended including the 2026 amendment act (
 Japan)\n\nSource: https://www.ppc.go.jp/en/legal/\n\nhttps://regulations.f
 ru.dev/regulations/jp-appi
URL:https://regulations.fru.dev/regulations/jp-appi
CATEGORIES:Japan,privacy,children,biometrics,breach-notification,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7012@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20220411
DTEND;VALUE=DATE:20220412
SUMMARY:Singapore Cybersecurity Act: Cybersecurity service provider licensi
 ng commences
DESCRIPTION:Part 5 and the Second Schedule take effect. Penetration testing
  and managed SOC providers need a licence.\n\nCybersecurity Act 2018 (Sing
 apore)\n\nSource: https://sso.agc.gov.sg/Acts-Supp/9-2018/Published/202112
 31?DocDate=20180312\n\nhttps://regulations.fru.dev/regulations/sg-cybersec
 urity-act
URL:https://regulations.fru.dev/regulations/sg-cybersecurity-act
CATEGORIES:Singapore,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-142@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20220601
DTEND;VALUE=DATE:20220602
SUMMARY:Thailand PDPA: PDPA main obligations take effect
DESCRIPTION:Core data protection obligations and penalties apply after post
 ponement Royal Decrees.\n\nPersonal Data Protection Act B.E. 2562 (2019) (
 Thailand)\n\nSource: https://www.ratchakitcha.soc.go.th/DATA/PDF/2562/A/06
 9/T_0052.PDF\n\nhttps://regulations.fru.dev/regulations/th-pdpa
URL:https://regulations.fru.dev/regulations/th-pdpa
CATEGORIES:Thailand,privacy,breach-notification,data-residency
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6991@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20220627
DTEND;VALUE=DATE:20220628
SUMMARY:India CERT-In Cyber Security Directions: CERT-In Directions take ef
 fect
DESCRIPTION:The Directions apply 60 days after issue on 28 Apr 2022. The ex
 act day (27 or 28 June 2022) depends on how the 60 days are counted.\n\nTe
 ntative: depends on a proposal not yet adopted.\n\nDirections under sectio
 n 70B(6) of the Information Technology Act\, 2000 relating to information 
 security practices\, procedure\, prevention\, response and reporting of cy
 ber incidents for Safe and Trusted Internet (India)\n\nSource: https://www
 .cert-in.org.in/PDF/CERT-In_Directions_70B_28.04.2022.pdf\n\nhttps://regul
 ations.fru.dev/regulations/in-certin-directions
URL:https://regulations.fru.dev/regulations/in-certin-directions
CATEGORIES:India,cybersecurity,breach-notification,data-residency
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7025@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20220708
DTEND;VALUE=DATE:20220709
SUMMARY:Australia SOCI Act: Mandatory cyber incident reporting starts for m
 ost assets
DESCRIPTION:The Application Rules registered on 7 April 2022 gave most asse
 t classes a 3-month grace period before Part 2B incident reporting applied
 . The date is worked out from that grace period.\n\nTentative: depends on 
 a proposal not yet adopted.\n\nSecurity of Critical Infrastructure Act 201
 8 (Australia)\n\nSource: https://www.legislation.gov.au/F2022L00562/asmade
 \n\nhttps://regulations.fru.dev/regulations/au-soci-act
URL:https://regulations.fru.dev/regulations/au-soci-act
CATEGORIES:Australia,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6977@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20220901
DTEND;VALUE=DATE:20220902
SUMMARY:China Data Export Security Assessment Measures: Security assessment
  measures take effect
DESCRIPTION:Covered data exports require a CAC security assessment.\n\nMeas
 ures for the Security Assessment of Outbound Data Transfers (China)\n\nSou
 rce: https://www.cac.gov.cn/2022-07/07/c_1658811536396503.htm\n\nhttps://r
 egulations.fru.dev/regulations/cn-sa-measures
URL:https://regulations.fru.dev/regulations/cn-sa-measures
CATEGORIES:China,data-residency,privacy,cybersecurity
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6992@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20220925
DTEND;VALUE=DATE:20220926
SUMMARY:India CERT-In Cyber Security Directions: Extended date for MSMEs an
 d subscriber validation
DESCRIPTION:The Directions apply to micro\, small and medium enterprises\, 
 and subscriber validation duties apply to data centres\, VPS\, cloud and V
 PN providers\, from this date.\n\nDirections under section 70B(6) of the I
 nformation Technology Act\, 2000 relating to information security practice
 s\, procedure\, prevention\, response and reporting of cyber incidents for
  Safe and Trusted Internet (India)\n\nSource: https://www.cert-in.org.in/P
 DF/CERT-In_directions_extension_MSMEs_and_validation_27.06.2022.pdf\n\nhtt
 ps://regulations.fru.dev/regulations/in-certin-directions
URL:https://regulations.fru.dev/regulations/in-certin-directions
CATEGORIES:India,cybersecurity,breach-notification,data-residency
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-141@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20221001
DTEND;VALUE=DATE:20221002
SUMMARY:Singapore PDPA: Higher financial penalty cap applies
DESCRIPTION:Maximum penalty rises to 10% of Singapore turnover for organiza
 tions with turnover above SGD 10 million.\n\nPersonal Data Protection Act 
 2012 (Singapore) (Singapore)\n\nSource: https://sso.agc.gov.sg/Act/PDPA201
 2\n\nhttps://regulations.fru.dev/regulations/sg-pdpa
URL:https://regulations.fru.dev/regulations/sg-pdpa
CATEGORIES:Singapore,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-112@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20221017
DTEND;VALUE=DATE:20221018
SUMMARY:Indonesia PDP Law: PDP Law enacted and in force
DESCRIPTION:Law takes effect on enactment\, starting a 2-year transition.\n
 \nLaw No. 27 of 2022 on Personal Data Protection (Undang-Undang Pelindunga
 n Data Pribadi) (Indonesia)\n\nSource: https://peraturan.bpk.go.id/Details
 /229798/uu-no-27-tahun-2022\n\nhttps://regulations.fru.dev/regulations/id-
 pdp
URL:https://regulations.fru.dev/regulations/id-pdp
CATEGORIES:Indonesia,privacy,breach-notification,data-residency,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6976@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20230110
DTEND;VALUE=DATE:20230111
SUMMARY:China Deep Synthesis Provisions: Deep synthesis provisions take eff
 ect
DESCRIPTION:Labeling\, identity verification and filing duties apply to dee
 p synthesis services.\n\nProvisions on the Administration of Deep Synthesi
 s in Internet Information Services (China)\n\nSource: https://www.cac.gov.
 cn/2022-12/11/c_1672221949354811.htm\n\nhttps://regulations.fru.dev/regula
 tions/cn-deep-synthesis
URL:https://regulations.fru.dev/regulations/cn-deep-synthesis
CATEGORIES:China,ai,online-safety,biometrics
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6978@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20230301
DTEND;VALUE=DATE:20230302
SUMMARY:China Data Export Security Assessment Measures: Remediation window 
 for existing transfers ends
DESCRIPTION:Existing exports had to be remediated within six months of 2022
 -09-01. The exact end date is computed\, not stated.\n\nTentative: depends
  on a proposal not yet adopted.\n\nMeasures for the Security Assessment of
  Outbound Data Transfers (China)\n\nSource: https://www.cac.gov.cn/2022-07
 /07/c_1658811536396503.htm\n\nhttps://regulations.fru.dev/regulations/cn-s
 a-measures
URL:https://regulations.fru.dev/regulations/cn-sa-measures
CATEGORIES:China,data-residency,privacy,cybersecurity
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7000@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20230531
DTEND;VALUE=DATE:20230601
SUMMARY:Taiwan PDPA: Higher fines take effect
DESCRIPTION:Amended article 48 with higher fines for security failures take
 s effect on promulgation.\n\nPersonal Data Protection Act (Taiwan)\n\nSour
 ce: https://law.moj.gov.tw/LawClass/LawHistory.aspx?pcode=I0050021\n\nhttp
 s://regulations.fru.dev/regulations/tw-pdpa
URL:https://regulations.fru.dev/regulations/tw-pdpa
CATEGORIES:Taiwan,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6979@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20230601
DTEND;VALUE=DATE:20230602
SUMMARY:China PI Export Standard Contract Measures: Standard contract measu
 res take effect
DESCRIPTION:The standard contract route and filing duty apply.\n\nMeasures 
 on the Standard Contract for Outbound Transfer of Personal Information (Ch
 ina)\n\nSource: https://www.cac.gov.cn/2023-02/24/c_1678884830036813.htm\n
 \nhttps://regulations.fru.dev/regulations/cn-scc-measures
URL:https://regulations.fru.dev/regulations/cn-scc-measures
CATEGORIES:China,data-residency,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6974@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20230815
DTEND;VALUE=DATE:20230816
SUMMARY:China Generative AI Measures: Generative AI measures take effect
DESCRIPTION:Training data\, labeling\, content and user protection duties a
 pply to public generative AI services.\n\nInterim Measures for the Managem
 ent of Generative Artificial Intelligence Services (China)\n\nSource: http
 s://www.cac.gov.cn/2023-07/13/c_1690898327029107.htm\n\nhttps://regulation
 s.fru.dev/regulations/cn-genai-measures
URL:https://regulations.fru.dev/regulations/cn-genai-measures
CATEGORIES:China,ai,online-safety,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6980@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20231201
DTEND;VALUE=DATE:20231202
SUMMARY:China PI Export Standard Contract Measures: Remediation window for 
 existing transfers ends
DESCRIPTION:Existing exports had to comply within six months of 2023-06-01.
  The exact end date is computed\, not stated.\n\nTentative: depends on a p
 roposal not yet adopted.\n\nMeasures on the Standard Contract for Outbound
  Transfer of Personal Information (China)\n\nSource: https://www.cac.gov.c
 n/2023-02/24/c_1678884830036813.htm\n\nhttps://regulations.fru.dev/regulat
 ions/cn-scc-measures
URL:https://regulations.fru.dev/regulations/cn-scc-measures
CATEGORIES:China,data-residency,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6983@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20240101
DTEND;VALUE=DATE:20240102
SUMMARY:China Minors Online Protection Regulations: Minors online protectio
 n regulations take effect
DESCRIPTION:Platform\, content\, personal information and anti-addiction du
 ties apply.\n\nRegulations on the Protection of Minors Online (China)\n\nS
 ource: https://www.cac.gov.cn/2023-10/24/c_1699806932316206.htm\n\nhttps:/
 /regulations.fru.dev/regulations/cn-minors-online-protection
URL:https://regulations.fru.dev/regulations/cn-minors-online-protection
CATEGORIES:China,children,privacy,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7001@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20240101
DTEND;VALUE=DATE:20240102
SUMMARY:Taiwan PDPA: PDPC Preparatory Office takes over
DESCRIPTION:The PDPC Preparatory Office takes over PDPA duties from the Nat
 ional Development Council.\n\nPersonal Data Protection Act (Taiwan)\n\nSou
 rce: https://law.moj.gov.tw/LawClass/LawHistory.aspx?pcode=I0050021\n\nhtt
 ps://regulations.fru.dev/regulations/tw-pdpa
URL:https://regulations.fru.dev/regulations/tw-pdpa
CATEGORIES:Taiwan,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-30@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20240322
DTEND;VALUE=DATE:20240323
SUMMARY:China Cross-Border Data Flow Provisions: Cross-border data flow pro
 visions take effect
DESCRIPTION:Exemptions and volume thresholds apply from publication (Art. 1
 4)\; security assessment results are valid for 3 years (Art. 9).\n\nProvis
 ions on Promoting and Regulating Cross-Border Data Flows (CAC Order No. 16
 ) (China)\n\nSource: https://www.cac.gov.cn/2024-03/22/c_1712776611775634.
 htm\n\nhttps://regulations.fru.dev/regulations/cn-cross-border
URL:https://regulations.fru.dev/regulations/cn-cross-border
CATEGORIES:China,data-residency,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7014@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20240826
DTEND;VALUE=DATE:20240827
SUMMARY:Malaysia Cyber Security Act: Act 854 and first regulations in force
DESCRIPTION:The Act and its incident notification\, risk assessment and aud
 it\, and licensing regulations take effect.\n\nCyber Security Act 2024 (Ac
 t 854) (Malaysia)\n\nSource: https://lom.agc.gov.my/act-detail.php?a=YWN0P
 Tg1NCZsYW5nPUJJfDM3MjhhYmRhY2U0YWNlOTZlMGI3MmRlODVkNjQ2YzM4ZTNmMTE0YzA3YzY
 5ZGJhOGExZTNmYmQ4ZTc0OWJlYWY=\n\nhttps://regulations.fru.dev/regulations/m
 y-cyber-security-act
URL:https://regulations.fru.dev/regulations/my-cyber-security-act
CATEGORIES:Malaysia,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-113@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20241017
DTEND;VALUE=DATE:20241018
SUMMARY:Indonesia PDP Law: PDP Law transition ends
DESCRIPTION:Controllers and processors must fully comply (Art. 74 two-year 
 transition).\n\nLaw No. 27 of 2022 on Personal Data Protection (Undang-Und
 ang Pelindungan Data Pribadi) (Indonesia)\n\nSource: https://peraturan.bpk
 .go.id/Details/229798/uu-no-27-tahun-2022\n\nhttps://regulations.fru.dev/r
 egulations/id-pdp
URL:https://regulations.fru.dev/regulations/id-pdp
CATEGORIES:Indonesia,privacy,breach-notification,data-residency,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-4@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20241211
DTEND;VALUE=DATE:20241212
SUMMARY:Australia Privacy Act: Most POLA Act 2024 amendments commence
DESCRIPTION:Tiered penalties\, infringement notices\, OAIC powers\, securit
 y and overseas-transfer clarifications and doxxing offences commence the d
 ay after Royal Assent.\n\nPrivacy Act 1988 (Cth)\, as amended by the Priva
 cy and Other Legislation Amendment Act 2024 (Australia)\n\nSource: https:/
 /www.legislation.gov.au/C2024A00128/asmade\n\nhttps://regulations.fru.dev/
 regulations/au-privacy-act
URL:https://regulations.fru.dev/regulations/au-privacy-act
CATEGORIES:Australia,privacy,children,breach-notification,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-34@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250101
DTEND;VALUE=DATE:20250102
SUMMARY:China Network Data Security Regulations: Network Data Regulations t
 ake effect
DESCRIPTION:All provisions\, including the 10-million-person threshold duti
 es and annual important-data risk assessments\, apply.\n\nRegulations on N
 etwork Data Security Management (State Council Order No. 790) (China)\n\nS
 ource: https://www.gov.cn/zhengce/content/202409/content_6977766.htm\n\nht
 tps://regulations.fru.dev/regulations/cn-network-data-regs
URL:https://regulations.fru.dev/regulations/cn-network-data-regs
CATEGORIES:China,privacy,cybersecurity,data-residency
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-129@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250101
DTEND;VALUE=DATE:20250102
SUMMARY:Malaysia PDPA: PDPA amendments phase 1
DESCRIPTION:Miscellaneous provisions commence (e.g. electronic service of n
 otices).\n\nPersonal Data Protection Act 2010 (Act 709)\, as amended by th
 e Personal Data Protection (Amendment) Act 2024 (Act A1727) (Malaysia)\n\n
 Source: https://www.pdp.gov.my/ppdpv1/en/personal-data-protection-amendmen
 t-act-2024-commencement-date-determination/\n\nhttps://regulations.fru.dev
 /regulations/my-pdpa
URL:https://regulations.fru.dev/regulations/my-pdpa
CATEGORIES:Malaysia,privacy,breach-notification,biometrics,data-residency
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7008@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250129
DTEND;VALUE=DATE:20250130
SUMMARY:Pakistan PECA: PECA amendment takes effect
DESCRIPTION:Act No. II of 2025 got presidential assent and took effect on 2
 9 Jan 2025\, per the Gazette of Pakistan.\n\nPrevention of Electronic Crim
 es Act\, 2016 (as amended by the Prevention of Electronic Crimes (Amendmen
 t) Act\, 2025) (Pakistan)\n\nSource: https://na.gov.pk/uploads/documents/6
 79b243193585_457.pdf\n\nhttps://regulations.fru.dev/regulations/pk-peca
URL:https://regulations.fru.dev/regulations/pk-peca
CATEGORIES:Pakistan,cybersecurity,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7026@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250327
DTEND;VALUE=DATE:20250328
SUMMARY:Indonesia PP 17/2025 (Child Protection Online): PP 17/2025 in force
DESCRIPTION:The regulation was signed\, promulgated and took effect on the 
 same day.\n\nGovernment Regulation No. 17 of 2025 on Governance of Electro
 nic Systems in Child Protection (Indonesia)\n\nSource: https://peraturan.b
 pk.go.id/Details/316698/pp-no-17-tahun-2025\n\nhttps://regulations.fru.dev
 /regulations/id-child-online-protection
URL:https://regulations.fru.dev/regulations/id-child-online-protection
CATEGORIES:Indonesia,children,online-safety,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-130@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250401
DTEND;VALUE=DATE:20250402
SUMMARY:Malaysia PDPA: PDPA amendments phase 2
DESCRIPTION:'Data controller' terminology\, biometric data as sensitive dat
 a\, higher penalties\, Security Principle for processors\, and removal of 
 the cross-border whitelist take effect.\n\nPersonal Data Protection Act 20
 10 (Act 709)\, as amended by the Personal Data Protection (Amendment) Act 
 2024 (Act A1727) (Malaysia)\n\nSource: https://www.pdp.gov.my/ppdpv1/en/pe
 rsonal-data-protection-amendment-act-2024-commencement-date-determination/
 \n\nhttps://regulations.fru.dev/regulations/my-pdpa
URL:https://regulations.fru.dev/regulations/my-pdpa
CATEGORIES:Malaysia,privacy,breach-notification,biometrics,data-residency
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-35@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250501
DTEND;VALUE=DATE:20250502
SUMMARY:China PI Compliance Audit Measures: PI compliance audit measures ta
 ke effect
DESCRIPTION:Self-audit and regulator-ordered audit regime applies\; 10M+ pr
 ocessors must audit at least every two years.\n\nAdministrative Measures f
 or Personal Information Protection Compliance Audits (CAC Order No. 18) (C
 hina)\n\nSource: https://www.cac.gov.cn/2025-02/14/c_1741233507681519.htm\
 n\nhttps://regulations.fru.dev/regulations/cn-pi-compliance-audit
URL:https://regulations.fru.dev/regulations/cn-pi-compliance-audit
CATEGORIES:China,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6993@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250523
DTEND;VALUE=DATE:20250524
SUMMARY:Japan Active Cyber Defense Act: Act promulgated
DESCRIPTION:Act No. 42 of 2025 promulgated\; preparatory supplementary prov
 isions apply from this day.\n\nAct on the Prevention of Damage from Unauth
 orized Acts against Important Computers (Act No. 42 of 2025) (Japan)\n\nSo
 urce: https://laws.e-gov.go.jp/api/2/law_revisions/507AC0000000042?respons
 e_format=json\n\nhttps://regulations.fru.dev/regulations/jp-active-cyber-d
 efense
URL:https://regulations.fru.dev/regulations/jp-active-cyber-defense
CATEGORIES:Japan,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-2@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250530
DTEND;VALUE=DATE:20250531
SUMMARY:Australia Cyber Security Act (ransomware reporting): Ransomware pay
 ment reporting starts
DESCRIPTION:Reporting business entities must report ransomware/cyber-extort
 ion payments to ASD within 72 hours of payment.\n\nCyber Security Act 2024
  (Cth) and Cyber Security (Ransomware Payment Reporting) Rules 2025 (Austr
 alia)\n\nSource: https://www.homeaffairs.gov.au/cyber-security-subsite/fil
 es/factsheet-ransomware-payment-reporting.pdf\n\nhttps://regulations.fru.d
 ev/regulations/au-cyber-security-act
URL:https://regulations.fru.dev/regulations/au-cyber-security-act
CATEGORIES:Australia,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6986@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250601
DTEND;VALUE=DATE:20250602
SUMMARY:China Facial Recognition Measures: Facial recognition measures take
  effect
DESCRIPTION:Consent\, impact assessment\, storage and filing duties apply.\
 n\nMeasures for the Security Management of Facial Recognition Technology A
 pplications (China)\n\nSource: https://www.cac.gov.cn/2025-03/21/c_1744174
 262156096.htm\n\nhttps://regulations.fru.dev/regulations/cn-facial-recogni
 tion
URL:https://regulations.fru.dev/regulations/cn-facial-recognition
CATEGORIES:China,biometrics,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-131@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250601
DTEND;VALUE=DATE:20250602
SUMMARY:Malaysia PDPA: PDPA amendments phase 3
DESCRIPTION:Mandatory DPO appointment\, data breach notification\, and data
  portability take effect.\n\nPersonal Data Protection Act 2010 (Act 709)\,
  as amended by the Personal Data Protection (Amendment) Act 2024 (Act A172
 7) (Malaysia)\n\nSource: https://www.pdp.gov.my/ppdpv1/en/personal-data-pr
 otection-amendment-act-2024-commencement-date-determination/\n\nhttps://re
 gulations.fru.dev/regulations/my-pdpa
URL:https://regulations.fru.dev/regulations/my-pdpa
CATEGORIES:Malaysia,privacy,breach-notification,biometrics,data-residency
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-119@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250604
DTEND;VALUE=DATE:20250605
SUMMARY:Japan AI Promotion Act: AI Promotion Act promulgated and partly in 
 force
DESCRIPTION:Most provisions\, including basic principles and stakeholder du
 ties\, take effect on promulgation.\n\nAct on Promotion of Research and De
 velopment\, and Utilization of Artificial Intelligence-Related Technology 
 (Japan)\n\nSource: https://www8.cao.go.jp/cstp/ai/ai_act/ai_act.html\n\nht
 tps://regulations.fru.dev/regulations/jp-ai-act
URL:https://regulations.fru.dev/regulations/jp-ai-act
CATEGORIES:Japan,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-5@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250610
DTEND;VALUE=DATE:20250611
SUMMARY:Australia Privacy Act: Statutory tort for serious invasions of priv
 acy commences
DESCRIPTION:Individuals can sue for serious invasions of privacy (Schedule 
 2)\, 6 months after Royal Assent.\n\nPrivacy Act 1988 (Cth)\, as amended b
 y the Privacy and Other Legislation Amendment Act 2024 (Australia)\n\nSour
 ce: https://www.legislation.gov.au/C2024A00128/asmade\n\nhttps://regulatio
 ns.fru.dev/regulations/au-privacy-act
URL:https://regulations.fru.dev/regulations/au-privacy-act
CATEGORIES:Australia,privacy,children,breach-notification,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7018@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250701
DTEND;VALUE=DATE:20250702
SUMMARY:Vietnam Law on Data: Law on Data takes effect
DESCRIPTION:The Law on Data enters into force.\n\nLaw on Data (Law No. 60/2
 024/QH15) (Vietnam)\n\nSource: https://vanban.chinhphu.vn/?pageid=27160&do
 cid=212488\n\nhttps://regulations.fru.dev/regulations/vn-data-law
URL:https://regulations.fru.dev/regulations/vn-data-law
CATEGORIES:Vietnam,data-residency,data-access,cybersecurity
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-29@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250901
DTEND;VALUE=DATE:20250902
SUMMARY:China AI Content Labeling Measures: AI content labeling measures an
 d GB 45438-2025 take effect
DESCRIPTION:Explicit and implicit labeling duties for AI-generated content 
 and platform detection duties apply.\n\nMeasures for Labeling AI-Generated
  Synthetic Content (China)\n\nSource: https://www.cac.gov.cn/2025-03/14/c_
 1743654684782215.htm\n\nhttps://regulations.fru.dev/regulations/cn-ai-labe
 ling
URL:https://regulations.fru.dev/regulations/cn-ai-labeling
CATEGORIES:China,ai,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-120@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250901
DTEND;VALUE=DATE:20250902
SUMMARY:Japan AI Promotion Act: AI Promotion Act fully in force
DESCRIPTION:Provisions establishing the AI Strategy Headquarters and AI Bas
 ic Plan take effect.\n\nAct on Promotion of Research and Development\, and
  Utilization of Artificial Intelligence-Related Technology (Japan)\n\nSour
 ce: https://www8.cao.go.jp/cstp/ai/ai_act/ai_act.html\n\nhttps://regulatio
 ns.fru.dev/regulations/jp-ai-act
URL:https://regulations.fru.dev/regulations/jp-ai-act
CATEGORIES:Japan,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-135@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20250924
DTEND;VALUE=DATE:20250925
SUMMARY:New Zealand Privacy Act: Privacy Amendment Act 2025 technical chang
 es commence
DESCRIPTION:Technical amendments commence the day after Royal Assent (23 Se
 p 2025).\n\nPrivacy Act 2020 (New Zealand)\, as amended by the Privacy Ame
 ndment Act 2025 (New Zealand)\n\nSource: https://www.justice.govt.nz/justi
 ce-sector-policy/key-initiatives/enhancing-the-privacy-act/\n\nhttps://reg
 ulations.fru.dev/regulations/nz-privacy-act
URL:https://regulations.fru.dev/regulations/nz-privacy-act
CATEGORIES:New Zealand,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7013@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20251031
DTEND;VALUE=DATE:20251101
SUMMARY:Singapore Cybersecurity Act: 2024 amendments commence
DESCRIPTION:Most of the Cybersecurity (Amendment) Act 2024 takes effect\, c
 overing foundational digital infrastructure\, entities of special cybersec
 urity interest and systems of temporary cybersecurity concern.\n\nCybersec
 urity Act 2018 (Singapore)\n\nSource: https://sso.agc.gov.sg/Acts-Supp/19-
 2024/Published/20240704?DocDate=20240704\n\nhttps://regulations.fru.dev/re
 gulations/sg-cybersecurity-act
URL:https://regulations.fru.dev/regulations/sg-cybersecurity-act
CATEGORIES:Singapore,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6982@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20251101
DTEND;VALUE=DATE:20251102
SUMMARY:China Cyber Incident Reporting Measures: Incident reporting measure
 s take effect
DESCRIPTION:1\, 2 and 4 hour reporting windows apply to relatively major an
 d higher incidents.\n\nAdministrative Measures for National Cybersecurity 
 Incident Reporting (China)\n\nSource: https://www.cac.gov.cn/2025-09/15/c_
 1759583017717009.htm\n\nhttps://regulations.fru.dev/regulations/cn-inciden
 t-reporting
URL:https://regulations.fru.dev/regulations/cn-incident-reporting
CATEGORIES:China,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7027@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20251103
DTEND;VALUE=DATE:20251104
SUMMARY:New Zealand Biometric Processing Privacy Code: Biometric code in fo
 rce
DESCRIPTION:The Biometric Processing Privacy Code applies to new biometric 
 processing.\n\nBiometric Processing Privacy Code 2025 (New Zealand)\n\nSou
 rce: https://www.privacy.org.nz/privacy-principles/codes-of-practice/biome
 tric-processing-privacy-code/\n\nhttps://regulations.fru.dev/regulations/n
 z-biometric-code
URL:https://regulations.fru.dev/regulations/nz-biometric-code
CATEGORIES:New Zealand,biometrics,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7002@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20251111
DTEND;VALUE=DATE:20251112
SUMMARY:Taiwan PDPA: 2025 amendment promulgated
DESCRIPTION:Amendment adds PDPC powers\, breach reporting and security duti
 es. Its start date will be set by the Executive Yuan and is not yet known.
 \n\nTentative: depends on a proposal not yet adopted.\n\nPersonal Data Pro
 tection Act (Taiwan)\n\nSource: https://law.moj.gov.tw/LawClass/LawHistory
 .aspx?pcode=I0050021\n\nhttps://regulations.fru.dev/regulations/tw-pdpa
URL:https://regulations.fru.dev/regulations/tw-pdpa
CATEGORIES:Taiwan,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-116@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20251113
DTEND;VALUE=DATE:20251114
SUMMARY:India DPDP Act: DPDP Rules published\; Board and procedural rules i
 n force
DESCRIPTION:Rules 1\, 2 and 17-21 (Data Protection Board constitution and f
 unctioning) take effect on publication in the Official Gazette.\n\nDigital
  Personal Data Protection Act\, 2023 and Digital Personal Data Protection 
 Rules\, 2025 (India)\n\nSource: https://egazette.gov.in/WriteReadData/2025
 /267650.pdf\n\nhttps://regulations.fru.dev/regulations/in-dpdp
URL:https://regulations.fru.dev/regulations/in-dpdp
CATEGORIES:India,privacy,children,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7009@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20251125
DTEND;VALUE=DATE:20251126
SUMMARY:Singapore Online Safety (Relief and Accountability) Act: Act assent
 ed to
DESCRIPTION:Passed by Parliament on 5 November 2025 and assented to by the 
 President on 25 November 2025.\n\nOnline Safety (Relief and Accountability
 ) Act 2025 (Singapore)\n\nSource: https://sso.agc.gov.sg/Acts-Supp/23-2025
 /Published/20251208?DocDate=20251208\n\nhttps://regulations.fru.dev/regula
 tions/sg-online-safety-act
URL:https://regulations.fru.dev/regulations/sg-online-safety-act
CATEGORIES:Singapore,online-safety,children,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-8@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20251210
DTEND;VALUE=DATE:20251211
SUMMARY:Australia Social Media Minimum Age: Social media minimum age obliga
 tion applies
DESCRIPTION:Age-restricted platforms must take reasonable steps to prevent 
 under-16s from holding accounts.\n\nOnline Safety Amendment (Social Media 
 Minimum Age) Act 2024 (Australia)\n\nSource: https://www.legislation.gov.a
 u/C2024A00127/asmade\n\nhttps://regulations.fru.dev/regulations/au-social-
 media-min-age
URL:https://regulations.fru.dev/regulations/au-social-media-min-age
CATEGORIES:Australia,children,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-3@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Australia Cyber Security Act (ransomware reporting): Ransomware rep
 orting moves to compliance phase
DESCRIPTION:The education-first phase (30 May-31 Dec 2025) ends\; Home Affa
 irs moves to a compliance and education approach for missed reports.\n\nCy
 ber Security Act 2024 (Cth) and Cyber Security (Ransomware Payment Reporti
 ng) Rules 2025 (Australia)\n\nSource: https://www.homeaffairs.gov.au/cyber
 -security-subsite/files/factsheet-ransomware-payment-reporting.pdf\n\nhttp
 s://regulations.fru.dev/regulations/au-cyber-security-act
URL:https://regulations.fru.dev/regulations/au-cyber-security-act
CATEGORIES:Australia,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-32@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:China Cybersecurity Law: 2025 amendments take effect
DESCRIPTION:Higher fines\, first-violation fines\, AI governance provisions
  and PIPL-alignment duties apply under the 28 Oct 2025 NPCSC Decision.\n\n
 Cybersecurity Law of the People's Republic of China (as amended by the NPC
  Standing Committee Decision of 28 October 2025) (China)\n\nSource: https:
 //www.gov.cn/yaowen/liebiao/202510/content_7046194.htm\n\nhttps://regulati
 ons.fru.dev/regulations/cn-csl
URL:https://regulations.fru.dev/regulations/cn-csl
CATEGORIES:China,cybersecurity,data-residency,ai,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6981@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:China PI Export Certification Measures: PI export certification mea
 sures take effect
DESCRIPTION:The certification route for personal information exports applie
 s.\n\nMeasures for Personal Information Outbound Transfer Certification (C
 hina)\n\nSource: https://www.cac.gov.cn/2025-10/17/c_1762449728720008.htm\
 n\nhttps://regulations.fru.dev/regulations/cn-pi-certification
URL:https://regulations.fru.dev/regulations/cn-pi-certification
CATEGORIES:China,data-residency,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-111@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Hong Kong Critical Infrastructure Cyber Ordinance: PCICSO comes int
 o operation
DESCRIPTION:Commissioner's Office is established and designation of CIOs be
 gins\; obligations apply to designated operators.\n\nProtection of Critica
 l Infrastructures (Computer Systems) Ordinance (Cap. 653) (Hong Kong)\n\nS
 ource: https://www.info.gov.hk/gia/general/202506/27/P2025062700238.htm\n\
 nhttps://regulations.fru.dev/regulations/hk-pcico
URL:https://regulations.fru.dev/regulations/hk-pcico
CATEGORIES:Hong Kong,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7015@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Malaysia Online Safety Act: Online Safety Act and first regulations
  in force
DESCRIPTION:The Act and the Period\, Fees\, Form of Undertaking and Appeal 
 Tribunal regulations take effect.\n\nOnline Safety Act 2025 (Act 866) (Mal
 aysia)\n\nSource: https://lom.agc.gov.my/act-detail.php?a=YWN0PTg2NiZsYW5n
 PUJJ\n\nhttps://regulations.fru.dev/regulations/my-online-safety-act
URL:https://regulations.fru.dev/regulations/my-online-safety-act
CATEGORIES:Malaysia,online-safety,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-324@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260101
DTEND;VALUE=DATE:20260102
SUMMARY:Vietnam PDPL: PDPL and Decree 356/2025 take effect
DESCRIPTION:Personal data protection obligations\, DPIA/TIA filing and pena
 lty framework apply\; Decree 13/2023 replaced.\n\nLaw on Personal Data Pro
 tection (Law No. 91/2025/QH15) (Vietnam)\n\nSource: https://vanban.chinhph
 u.vn/?pageid=27160&docid=214590\n\nhttps://regulations.fru.dev/regulations
 /vn-pdpl
URL:https://regulations.fru.dev/regulations/vn-pdpl
CATEGORIES:Vietnam,privacy,data-residency,children,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6997@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260114
DTEND;VALUE=DATE:20260115
SUMMARY:Taiwan AI Basic Act: AI Basic Act in force
DESCRIPTION:Promulgated and in force on the same day (art. 20).\n\nArtifici
 al Intelligence Basic Act (Taiwan)\n\nSource: https://law.moj.gov.tw/LawCl
 ass/LawAll.aspx?pcode=H0160093\n\nhttps://regulations.fru.dev/regulations/
 tw-ai-basic-act
URL:https://regulations.fru.dev/regulations/tw-ai-basic-act
CATEGORIES:Taiwan,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7007@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260118
DTEND;VALUE=DATE:20260119
SUMMARY:Kazakhstan AI Law: AI Law takes effect
DESCRIPTION:The Law takes effect after 60 calendar days from first official
  publication on 18 Nov 2025 (art. 31). The day is computed\, not stated.\n
 \nTentative: depends on a proposal not yet adopted.\n\nLaw of the Republic
  of Kazakhstan on Artificial Intelligence (No. 230-VIII) (Kazakhstan)\n\nS
 ource: https://adilet.zan.kz/rus/docs/Z2500000230\n\nhttps://regulations.f
 ru.dev/regulations/kz-ai-law
URL:https://regulations.fru.dev/regulations/kz-ai-law
CATEGORIES:Kazakhstan,ai,privacy,biometrics
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-124@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260122
DTEND;VALUE=DATE:20260123
SUMMARY:South Korea AI Basic Act: AI Basic Act and Enforcement Decree take 
 effect
DESCRIPTION:Transparency\, labeling\, high-impact AI\, and domestic represe
 ntative obligations apply (fines deferred during the grace period).\n\nFra
 mework Act on the Development of Artificial Intelligence and Establishment
  of a Foundation for Trust (AI Basic Act) (South Korea)\n\nSource: https:/
 /www.law.go.kr/법령/인공지능발전과신뢰기반조성등에관한
 기본법\n\nhttps://regulations.fru.dev/regulations/kr-ai-basic-act
URL:https://regulations.fru.dev/regulations/kr-ai-basic-act
CATEGORIES:South Korea,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6990@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260220
DTEND;VALUE=DATE:20260221
SUMMARY:India IT Rules amendment on synthetic content: Synthetic content ru
 les take effect
DESCRIPTION:SGI labeling\, user declaration and verification duties\, and t
 he shorter 3 hour\, 36 hour and 2 hour takedown timelines apply.\n\nInform
 ation Technology (Intermediary Guidelines and Digital Media Ethics Code) A
 mendment Rules\, 2026 (India)\n\nSource: https://www.meity.gov.in/static/u
 ploads/2026/02/f55fe52418b03f58b0669f6a8bc03b6d.pdf\n\nhttps://regulations
 .fru.dev/regulations/in-it-rules-sgi
URL:https://regulations.fru.dev/regulations/in-it-rules-sgi
CATEGORIES:India,ai,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6984@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260301
DTEND;VALUE=DATE:20260302
SUMMARY:China Minors Online Protection Regulations: Classification measures
  for content harmful to minors take effect
DESCRIPTION:Implementing measures classify online information that may affe
 ct minors' physical and mental health.\n\nRegulations on the Protection of
  Minors Online (China)\n\nSource: https://www.cac.gov.cn/2026-01/23/c_1770
 728781060093.htm\n\nhttps://regulations.fru.dev/regulations/cn-minors-onli
 ne-protection
URL:https://regulations.fru.dev/regulations/cn-minors-online-protection
CATEGORIES:China,children,privacy,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-321@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260301
DTEND;VALUE=DATE:20260302
SUMMARY:Vietnam AI Law: AI Law takes effect
DESCRIPTION:Risk classification\, transparency and labeling obligations app
 ly to new AI systems.\n\nLaw on Artificial Intelligence (Law No. 134/2025/
 QH15) (Vietnam)\n\nSource: https://beta-en.mic.gov.vn/first-ever-law-on-ar
 tificial-intelligence-approved-197251215231241888.htm\n\nhttps://regulatio
 ns.fru.dev/regulations/vn-ai-law
URL:https://regulations.fru.dev/regulations/vn-ai-law
CATEGORIES:Vietnam,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7043@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260304
DTEND;VALUE=DATE:20260305
SUMMARY:Australia Cyber Security Act (ransomware reporting): Smart device s
 ecurity standard applies
DESCRIPTION:Part 2 and Schedule 1 of the Cyber Security (Security Standards
  for Smart Devices) Rules 2025 commence. Manufacturers and suppliers of re
 levant connectable products must meet the security standard.\n\nCyber Secu
 rity Act 2024 (Cth) and Cyber Security (Ransomware Payment Reporting) Rule
 s 2025 (Australia)\n\nSource: https://www.legislation.gov.au/F2025L00276/a
 smade\n\nhttps://regulations.fru.dev/regulations/au-cyber-security-act
URL:https://regulations.fru.dev/regulations/au-cyber-security-act
CATEGORIES:Australia,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-125@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260310
DTEND;VALUE=DATE:20260311
SUMMARY:South Korea PIPA: 2026 PIPA amendment promulgated (Act No. 21445)
DESCRIPTION:Amendment raising fines to 10% of revenue and adding CEO accoun
 tability promulgated.\n\nPersonal Information Protection Act (as amended b
 y Act No. 21445\, 2026) (South Korea)\n\nSource: https://www.law.go.kr/법
 령/개인정보보호법\n\nhttps://regulations.fru.dev/regulations/kr-pi
 pa
URL:https://regulations.fru.dev/regulations/kr-pipa
CATEGORIES:South Korea,privacy,breach-notification,biometrics,data-residenc
 y
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6985@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260401
DTEND;VALUE=DATE:20260402
SUMMARY:China Minors Online Protection Regulations: Measures identifying la
 rge or influential platforms for minors take effect
DESCRIPTION:Platforms meeting the thresholds (for example 10 million regist
 ered or 1 million monthly active minor users) must apply to be designated.
 \n\nRegulations on the Protection of Minors Online (China)\n\nSource: http
 s://www.cac.gov.cn/2026-02/28/c_1774010730056867.htm\n\nhttps://regulation
 s.fru.dev/regulations/cn-minors-online-protection
URL:https://regulations.fru.dev/regulations/cn-minors-online-protection
CATEGORIES:China,children,privacy,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6994@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260401
DTEND;VALUE=DATE:20260402
SUMMARY:Japan Active Cyber Defense Act: Supervisory Commission provisions i
 n force
DESCRIPTION:Provisions setting up the Cyber Communications Information Supe
 rvisory Commission take effect\, per the e-Gov revision history.\n\nAct on
  the Prevention of Damage from Unauthorized Acts against Important Compute
 rs (Act No. 42 of 2025) (Japan)\n\nSource: https://laws.e-gov.go.jp/api/2/
 law_revisions/507AC0000000042?response_format=json\n\nhttps://regulations.
 fru.dev/regulations/jp-active-cyber-defense
URL:https://regulations.fru.dev/regulations/jp-active-cyber-defense
CATEGORIES:Japan,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7028@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260501
DTEND;VALUE=DATE:20260502
SUMMARY:New Zealand Biometric Processing Privacy Code: Amendment No. 1 appl
 ies (IPP 3A)
DESCRIPTION:The amended code\, which reflects IPP 3A\, is in force from 1 M
 ay 2026.\n\nBiometric Processing Privacy Code 2025 (New Zealand)\n\nSource
 : https://www.privacy.org.nz/privacy-principles/codes-of-practice/biometri
 c-processing-privacy-code/\n\nhttps://regulations.fru.dev/regulations/nz-b
 iometric-code
URL:https://regulations.fru.dev/regulations/nz-biometric-code
CATEGORIES:New Zealand,biometrics,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-136@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260501
DTEND;VALUE=DATE:20260502
SUMMARY:New Zealand Privacy Act: IPP 3A indirect-collection notification ap
 plies
DESCRIPTION:Agencies collecting personal information from third parties mus
 t take reasonable steps to notify individuals\, subject to exceptions.\n\n
 Privacy Act 2020 (New Zealand)\, as amended by the Privacy Amendment Act 2
 025 (New Zealand)\n\nSource: https://www.justice.govt.nz/justice-sector-po
 licy/key-initiatives/enhancing-the-privacy-act/\n\nhttps://regulations.fru
 .dev/regulations/nz-privacy-act
URL:https://regulations.fru.dev/regulations/nz-privacy-act
CATEGORIES:New Zealand,privacy,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7010@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260629
DTEND;VALUE=DATE:20260630
SUMMARY:Singapore Online Safety (Relief and Accountability) Act: OSC begins
  operations and first provisions commence
DESCRIPTION:OSC starts taking reports for five harms\, and the statutory to
 rts for those harms take effect.\n\nOnline Safety (Relief and Accountabili
 ty) Act 2025 (Singapore)\n\nSource: https://www.osc.gov.sg/newsroom/the-on
 line-safety-commission-begins-operations-on-29-june-2026/\n\nhttps://regul
 ations.fru.dev/regulations/sg-online-safety-act
URL:https://regulations.fru.dev/regulations/sg-online-safety-act
CATEGORIES:Singapore,online-safety,children,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7016@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260701
DTEND;VALUE=DATE:20260702
SUMMARY:Malaysia Online Safety Act: Online Safety Plan and compounding regu
 lations in force
DESCRIPTION:P.U. (A) 244/2026 and P.U. (A) 245/2026 take effect.\n\nOnline 
 Safety Act 2025 (Act 866) (Malaysia)\n\nSource: https://lom.agc.gov.my/ili
 ms/upload/portal/akta/outputp/3582105/PUA%20244_2026.pdf\n\nhttps://regula
 tions.fru.dev/regulations/my-online-safety-act
URL:https://regulations.fru.dev/regulations/my-online-safety-act
CATEGORIES:Malaysia,online-safety,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7019@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260701
DTEND;VALUE=DATE:20260702
SUMMARY:Vietnam Cybersecurity Law 2025: Cybersecurity Law 2025 takes effect
DESCRIPTION:The new law takes effect. Law 86/2015/QH13 and Law 24/2018/QH14
  cease to have effect.\n\nCybersecurity Law 2025 (Law No. 116/2025/QH15) (
 Vietnam)\n\nSource: https://vanban.chinhphu.vn/?pageid=27160&docid=216499\
 n\nhttps://regulations.fru.dev/regulations/vn-cybersecurity-law
URL:https://regulations.fru.dev/regulations/vn-cybersecurity-law
CATEGORIES:Vietnam,cybersecurity,data-residency,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6987@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260715
DTEND;VALUE=DATE:20260716
SUMMARY:China Anthropomorphic AI Measures: Anthropomorphic AI measures take
  effect
DESCRIPTION:AI disclosure\, usage reminders\, minor protection\, data and s
 ecurity assessment duties apply.\n\nInterim Measures for the Management of
  Anthropomorphic AI Interaction Services (China)\n\nSource: https://www.ca
 c.gov.cn/2026-04/10/c_1777558395078289.htm\n\nhttps://regulations.fru.dev/
 regulations/cn-anthropomorphic-ai
URL:https://regulations.fru.dev/regulations/cn-anthropomorphic-ai
CATEGORIES:China,ai,children,online-safety,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-122@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260717
DTEND;VALUE=DATE:20260718
SUMMARY:Japan APPI: 2026 APPI amendment act promulgated
DESCRIPTION:Amendment enacted by the Diet on 10 July 2026 and promulgated\;
  main provisions take effect by cabinet order within two years of promulga
 tion.\n\nAct on the Protection of Personal Information (Act No. 57 of 2003
 )\, as amended including the 2026 amendment act (Japan)\n\nSource: https:/
 /www.ppc.go.jp/files/pdf/260731_shiryou-1.pdf\n\nhttps://regulations.fru.d
 ev/regulations/jp-appi
URL:https://regulations.fru.dev/regulations/jp-appi
CATEGORIES:Japan,privacy,children,biometrics,breach-notification,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7029@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260803
DTEND;VALUE=DATE:20260804
SUMMARY:New Zealand Biometric Processing Privacy Code: Grace period ends fo
 r existing biometric processing
DESCRIPTION:Agencies already using biometrics before the code started must 
 comply by this date.\n\nBiometric Processing Privacy Code 2025 (New Zealan
 d)\n\nSource: https://www.privacy.org.nz/privacy-principles/codes-of-pract
 ice/biometric-processing-privacy-code/\n\nhttps://regulations.fru.dev/regu
 lations/nz-biometric-code
URL:https://regulations.fru.dev/regulations/nz-biometric-code
CATEGORIES:New Zealand,biometrics,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6988@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260820
DTEND;VALUE=DATE:20260821
SUMMARY:China Data Security Risk Assessment Measures: Risk assessment measu
 res take effect
DESCRIPTION:Annual risk assessment and reporting duties for important data 
 handlers apply.\n\nMeasures for Network Data Security Risk Assessment (Chi
 na)\n\nSource: https://www.cac.gov.cn/2026-06/18/c_1783525609815499.htm\n\
 nhttps://regulations.fru.dev/regulations/cn-data-risk-assessment
URL:https://regulations.fru.dev/regulations/cn-data-risk-assessment
CATEGORIES:China,cybersecurity,privacy
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6989@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260901
DTEND;VALUE=DATE:20260902
SUMMARY:China Small PI Handler Simplified Measures: Simplified measures for
  small handlers take effect
DESCRIPTION:Small handlers may use simplified notice\, audit and assessment
  methods.\n\nProvisions on Simplified Personal Information Protection Meas
 ures for Small Personal Information Handlers (China)\n\nSource: https://ww
 w.cac.gov.cn/2026-07/24/c_1786638889704872.htm\n\nhttps://regulations.fru.
 dev/regulations/cn-small-pi-handlers
URL:https://regulations.fru.dev/regulations/cn-small-pi-handlers
CATEGORIES:China,privacy,data-residency
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-126@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260911
DTEND;VALUE=DATE:20260912
SUMMARY:South Korea PIPA: 2026 PIPA amendments take effect
DESCRIPTION:10%-of-revenue fines\, CEO accountability\, and notice duties f
 or possible breaches apply.\n\nPersonal Information Protection Act (as ame
 nded by Act No. 21445\, 2026) (South Korea)\n\nSource: https://www.law.go.
 kr/법령/개인정보보호법\n\nhttps://regulations.fru.dev/regulations
 /kr-pipa
URL:https://regulations.fru.dev/regulations/kr-pipa
CATEGORIES:South Korea,privacy,breach-notification,biometrics,data-residenc
 y
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7044@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260912
DTEND;VALUE=DATE:20260913
SUMMARY:Australia Social Media Minimum Age: Strengthened enforcement amendm
 ents commence
DESCRIPTION:The Online Safety Amendment (Strengthening Enforcement for the 
 Social Media Minimum Age) Act 2026 (No. 83\, 2026) commences. The maximum 
 civil penalty for platforms doubles from 30\,000 to 60\,000 penalty units\
 , and eSafety gains new information-gathering powers.\n\nOnline Safety Ame
 ndment (Social Media Minimum Age) Act 2024 (Australia)\n\nSource: https://
 www.legislation.gov.au/C2026A00083/asmade\n\nhttps://regulations.fru.dev/r
 egulations/au-social-media-min-age
URL:https://regulations.fru.dev/regulations/au-social-media-min-age
CATEGORIES:Australia,children,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7022@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20260916
DTEND;VALUE=DATE:20260917
SUMMARY:Thailand Cybersecurity Act: Website Security Standard B.E. 2568 enf
 orced
DESCRIPTION:The website security standard announced on 16 September 2025 be
 comes enforceable for government agencies\, regulators and CII organisatio
 ns.\n\nCybersecurity Act B.E. 2562 (2019) (Thailand)\n\nSource: https://ww
 w.ncsa.or.th/news/3a613ca26532320a0b000264\n\nhttps://regulations.fru.dev/
 regulations/th-cybersecurity-act
URL:https://regulations.fru.dev/regulations/th-cybersecurity-act
CATEGORIES:Thailand,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6995@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20261001
DTEND;VALUE=DATE:20261002
SUMMARY:Japan Active Cyber Defense Act: Registration and incident reporting
  duties start
DESCRIPTION:Main provisions take effect\, including Chapter 2 duties for sp
 ecial social infrastructure operators to register important computers and 
 report specified intrusion incidents.\n\nAct on the Prevention of Damage f
 rom Unauthorized Acts against Important Computers (Act No. 42 of 2025) (Ja
 pan)\n\nSource: https://laws.e-gov.go.jp/api/2/law_revisions/507AC00000000
 42?response_format=json\n\nhttps://regulations.fru.dev/regulations/jp-acti
 ve-cyber-defense
URL:https://regulations.fru.dev/regulations/jp-active-cyber-defense
CATEGORIES:Japan,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-117@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20261113
DTEND;VALUE=DATE:20261114
SUMMARY:India DPDP Act: Consent Manager registration rule in force (12 mont
 hs)
DESCRIPTION:Rule 4 (registration and obligations of Consent Managers) comes
  into force one year after publication.\n\nDigital Personal Data Protectio
 n Act\, 2023 and Digital Personal Data Protection Rules\, 2025 (India)\n\n
 Source: https://egazette.gov.in/WriteReadData/2025/267650.pdf\n\nhttps://r
 egulations.fru.dev/regulations/in-dpdp
URL:https://regulations.fru.dev/regulations/in-dpdp
CATEGORIES:India,privacy,children,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20261210
DTEND;VALUE=DATE:20261211
SUMMARY:Australia Privacy Act: Children's Online Privacy Code must be regis
 tered
DESCRIPTION:OAIC must develop and register the Children's Online Privacy Co
 de within 24 months of Royal Assent.\n\nPrivacy Act 1988 (Cth)\, as amende
 d by the Privacy and Other Legislation Amendment Act 2024 (Australia)\n\nS
 ource: https://www.oaic.gov.au/privacy/privacy-registers/privacy-codes/chi
 ldrens-online-privacy-code\n\nhttps://regulations.fru.dev/regulations/au-p
 rivacy-act
URL:https://regulations.fru.dev/regulations/au-privacy-act
CATEGORIES:Australia,privacy,children,breach-notification,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20261210
DTEND;VALUE=DATE:20261211
SUMMARY:Australia Privacy Act: Automated decision-making transparency appli
 es
DESCRIPTION:Privacy policies must disclose the kinds of personal informatio
 n used in substantially automated decisions that significantly affect indi
 viduals (24 months after assent).\n\nPrivacy Act 1988 (Cth)\, as amended b
 y the Privacy and Other Legislation Amendment Act 2024 (Australia)\n\nSour
 ce: https://www.legislation.gov.au/C2024A00128/asmade\n\nhttps://regulatio
 ns.fru.dev/regulations/au-privacy-act
URL:https://regulations.fru.dev/regulations/au-privacy-act
CATEGORIES:Australia,privacy,children,breach-notification,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7017@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20261228
DTEND;VALUE=DATE:20261229
SUMMARY:Malaysia Online Safety Act: Online Safety Plan due to MCMC
DESCRIPTION:Licensed providers must prepare an Online Safety Plan and submi
 t it to MCMC within 180 days of 1 July 2026. Updates are due each year and
  after material changes.\n\nOnline Safety Act 2025 (Act 866) (Malaysia)\n\
 nSource: https://lom.agc.gov.my/ilims/upload/portal/akta/outputp/3582105/P
 UA%20244_2026.pdf\n\nhttps://regulations.fru.dev/regulations/my-online-saf
 ety-act
URL:https://regulations.fru.dev/regulations/my-online-safety-act
CATEGORIES:Malaysia,online-safety,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-114@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20270116
DTEND;VALUE=DATE:20270117
SUMMARY:Indonesia PDP Law: Implementing regulation GR 33/2026 takes effect
DESCRIPTION:Detailed PDP implementing rules (DPIA\, cross-border\, children
 's consent) apply\, 6 months after the 16 Jul 2026 enactment.\n\nLaw No. 2
 7 of 2022 on Personal Data Protection (Undang-Undang Pelindungan Data Prib
 adi) (Indonesia)\n\nSource: https://www.kk-advocates.com/news/read/indones
 ia-gr-pdp-personal-data-protection-compliance-regime-new-phase\n\nhttps://
 regulations.fru.dev/regulations/id-pdp
URL:https://regulations.fru.dev/regulations/id-pdp
CATEGORIES:Indonesia,privacy,breach-notification,data-residency,children
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-322@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20270301
DTEND;VALUE=DATE:20270302
SUMMARY:Vietnam AI Law: Transition ends for existing AI systems (general)
DESCRIPTION:Existing AI systems in most sectors must comply (12-month trans
 ition).\n\nLaw on Artificial Intelligence (Law No. 134/2025/QH15) (Vietnam
 )\n\nSource: https://www.vilaf.com.vn/blog/vietnam-enacts-its-first-law-on
 -artificial-intelligence-key-regulatory-obligations-from-1-march-2026/\n\n
 https://regulations.fru.dev/regulations/vn-ai-law
URL:https://regulations.fru.dev/regulations/vn-ai-law
CATEGORIES:Vietnam,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-118@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20270513
DTEND;VALUE=DATE:20270514
SUMMARY:India DPDP Act: Main data fiduciary obligations apply (18 months)
DESCRIPTION:Rules 3\, 5-16\, 22 and 23 (notice\, security safeguards\, brea
 ch notification\, retention\, children's consent\, SDF duties\, cross-bord
 er) come into force 18 months after publication.\n\nDigital Personal Data 
 Protection Act\, 2023 and Digital Personal Data Protection Rules\, 2025 (I
 ndia)\n\nSource: https://egazette.gov.in/WriteReadData/2025/267650.pdf\n\n
 https://regulations.fru.dev/regulations/in-dpdp
URL:https://regulations.fru.dev/regulations/in-dpdp
CATEGORIES:India,privacy,children,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-127@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20270701
DTEND;VALUE=DATE:20270702
SUMMARY:South Korea PIPA: Mandatory ISMS-P certification
DESCRIPTION:ISMS-P certification becomes mandatory for private entities mee
 ting the statutory criteria.\n\nPersonal Information Protection Act (as am
 ended by Act No. 21445\, 2026) (South Korea)\n\nSource: https://www.law.go
 .kr/법령/개인정보보호법\n\nhttps://regulations.fru.dev/regulation
 s/kr-pipa
URL:https://regulations.fru.dev/regulations/kr-pipa
CATEGORIES:South Korea,privacy,breach-notification,biometrics,data-residenc
 y
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-7020@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20270701
DTEND;VALUE=DATE:20270702
SUMMARY:Vietnam Cybersecurity Law 2025: Transition ends for existing system
 s and products
DESCRIPTION:Information systems classified under the 2015 law\, and securit
 y products already in use\, must meet the new law's conditions within 12 m
 onths of its effective date.\n\nCybersecurity Law 2025 (Law No. 116/2025/Q
 H15) (Vietnam)\n\nSource: https://vanban.chinhphu.vn/?pageid=27160&docid=2
 16499\n\nhttps://regulations.fru.dev/regulations/vn-cybersecurity-law
URL:https://regulations.fru.dev/regulations/vn-cybersecurity-law
CATEGORIES:Vietnam,cybersecurity,data-residency,online-safety
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-323@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20270901
DTEND;VALUE=DATE:20270902
SUMMARY:Vietnam AI Law: Transition ends for existing AI systems in health\,
  education and finance
DESCRIPTION:Existing AI systems in healthcare\, education and finance must 
 comply (18-month transition).\n\nLaw on Artificial Intelligence (Law No. 1
 34/2025/QH15) (Vietnam)\n\nSource: https://www.vilaf.com.vn/blog/vietnam-e
 nacts-its-first-law-on-artificial-intelligence-key-regulatory-obligations-
 from-1-march-2026/\n\nhttps://regulations.fru.dev/regulations/vn-ai-law
URL:https://regulations.fru.dev/regulations/vn-ai-law
CATEGORIES:Vietnam,ai
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6996@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20271122
DTEND;VALUE=DATE:20271123
SUMMARY:Japan Active Cyber Defense Act: Communications data measures in for
 ce (latest date)
DESCRIPTION:Chapters 3 to 7 on agreements with operators and collection of 
 communications data take effect by Cabinet Order within 2 years and 6 mont
 hs of promulgation. e-Gov lists 22 Nov 2027 as the outer limit\, not a fix
 ed date.\n\nTentative: depends on a proposal not yet adopted.\n\nAct on th
 e Prevention of Damage from Unauthorized Acts against Important Computers 
 (Act No. 42 of 2025) (Japan)\n\nSource: https://laws.e-gov.go.jp/api/2/law
 _revisions/507AC0000000042?response_format=json\n\nhttps://regulations.fru
 .dev/regulations/jp-active-cyber-defense
URL:https://regulations.fru.dev/regulations/jp-active-cyber-defense
CATEGORIES:Japan,cybersecurity,breach-notification
TRANSP:TRANSPARENT
END:VEVENT
BEGIN:VEVENT
UID:deadline-6998@regulations.fru.dev
DTSTAMP:20260926T152333Z
DTSTART;VALUE=DATE:20280114
DTEND;VALUE=DATE:20280115
SUMMARY:Taiwan AI Basic Act: Agencies must align laws with the Act
DESCRIPTION:Government agencies must finish amending or adopting laws and a
 dministrative measures within 2 years of entry into force (art. 18). Date 
 is computed from the statute.\n\nTentative: depends on a proposal not yet 
 adopted.\n\nArtificial Intelligence Basic Act (Taiwan)\n\nSource: https://
 law.moj.gov.tw/LawClass/LawAll.aspx?pcode=H0160093\n\nhttps://regulations.
 fru.dev/regulations/tw-ai-basic-act
URL:https://regulations.fru.dev/regulations/tw-ai-basic-act
CATEGORIES:Taiwan,ai
TRANSP:TRANSPARENT
END:VEVENT
END:VCALENDAR
