ANALYSISMEMBER

4 critical compliance areas companies should review after CPPA's Honda settlement

Published
Subscribe to IAPP Newsletters

Contributors:

Jodi Daniels

CIPP/US

Founder and CEO

Red Clover Advisors

Editor's note: The IAPP is policy neutral. We publish contributed opinion and analysis pieces to enable our members to hear a broad spectrum of views in our domains.

The recent California Privacy Protection Agency settlement with American Honda Motor Company over violations of the California Consumer Privacy Act, highlights four key areas companies should review and focus on immediately.

The USD632,500 settlement resolves claims around various aspects of Honda's privacy practices, including use of an "online privacy management tool that failed to offer Californians their privacy choices in a symmetrical or equal way" and sharing consumer data without "contracts that contain the necessary terms to protect privacy."

Cookie consent management

In the wake of the settlement, companies should review their cookie setup immediately.

Regulators don't like dark patterns. Customers don't either. Cookie consent technology needs to be properly established to comply with privacy laws and routinely reviewed and tested.

The CCPA requires symmetry in privacy choices. This means if companies have a cookie banner, there should be two equally prominent buttons: "Accept All" and "Reject All." If it takes one click to opt in, it should equally take just one click to opt out. 

Note that the CCPA wants companies to avoid dark patterns so these boxes shouldn't differ in color, font size, or have boxes around the more favorable option to the company. It's also important companies include a "Reject All" button within the manage settings section to make it easy for consumers to opt out. 

Contributors:

Jodi Daniels

CIPP/US

Founder and CEO

Red Clover Advisors

MEMBER

Unlock this exclusive content and more

Join the IAPPAlready a member? Sign in

Membership opens up a world of resources

In-depth knowledge

From original research reports and daily news coverage to legislative trackers and infographics, we have the information you need to stay ahead of change.

A global network

Make valuable professional connections through more than 160 local IAPP KnowledgeNet chapters in 70 countries.

Access to the experts

Connect with top thinkers in privacy, AI governance and cybersecurity for fresh ideas and insights.

Learn what you get from membership