Issue · Technology

Technology

Every technology bill, vote, and legislator stance in California, automatically classified by Maddy, our AI policy reader.

Total bills
28
2025-2026 Regular Session
Top supporter
Josh Becker
100% support rate
Top opponent
Brian Jones
2% support rate
Ranked legislators
10
5 support · 5 oppose
Key legislators

Who's moving technology in California

Legislators moving technology in California
Legislator Party Stance Support rate Decisive votes
Josh Becker
Josh Becker Senate · District 13
D
Strong +
100% 52
Bob Archuleta
Bob Archuleta Senate · District 30
D
Strong +
98% 60
Caroline Menjivar
Caroline Menjivar Senate · District 20
D
Strong +
98% 54
Catherine Blakespear
Catherine Blakespear Senate · District 38
D
Strong +
98% 53
Susan Rubio
Susan Rubio Senate · District 22
D
Strong +
98% 53
Brian Jones
Brian Jones Senate · District 40
R
Strong −
2% 60
Marie Alvarado-Gil
Marie Alvarado-Gil Senate · District 4
R
Strong −
4% 46
Steve Choi
Steve Choi Senate · District 37
R
Strong −
6% 50
Tony Strickland
Tony Strickland Senate · District 36
R
Strong −
6% 65
Kelly Seyarto
Kelly Seyarto Senate · District 32
R
Strong −
7% 104
Showing 11–20 of 28 bills

All technology bills

passed both · California · Senate Aug 30, 2026

SB 259: Elections: vote by mail ballots.

Existing law makes it a misdemeanor for any person having charge of a completed vote by mail ballot to interfere with a ballot's return to the local elections official. This bill would additionally make it a misdemeanor for any person having charge of a vote by mail ballot to interfere, as defined, with a ballot's delivery to a voter. The bill would make it a felony for a person with authority to direct one or more persons subject to their supervision or authority to interfere with a ballot's return to the local elections official or delivery to a voter. By expanding the scope of an existing crime, this bill would impose a state-mandated local program. The California Constitution requires the state to reimburse local agencies and school districts for certain costs mandated by the state. Statutory provisions establish procedures for making that reimbursement. This bill would provide that no reimbursement is required by this act for a specified reason. This bill would declare that it is to take effect immediately as an urgency statute.
passed both · California · Senate Aug 28, 2026

SB 690: Crimes: invasion of privacy.

Existing law prohibits a person, other than a provider of electronic or wire communication service for specified purposes, from installing or using a pen register or a trap and trace device, as those terms are defined, without first obtaining a court order. Existing law authorizes a person who has been injured by a violation of that prohibition to bring an action against the person who committed the violation to enjoin and restrain the violation, as well as to bring an action for monetary damages, as specified. This bill would instead authorize only the Attorney General to bring that action for a violation of the above-described provision if the action is alleged to arise from conduct occurring on an internet website, online application, or mobile application. The bill would provide that this limitation applies retroactively to any pending claim in an action commenced within 2 years before the operative date of the bill. The bill would declare the severability of its provisions.
passed both · California · Senate Aug 28, 2026

SB 354: Insurance Information and Privacy Protection Act.

The California Consumer Privacy Act of 2018 (CCPA) grants to a consumer various rights with respect to personal information that is collected by a business, including the right to request that a business delete personal information about the consumer that the business has collected from the consumer. The California Privacy Rights Act of 2020, an initiative measure approved by the voters as Proposition 24 at the November 3, 2020, statewide general election, amended, added to, and reenacted the CCPA. Existing law, the Insurance Information and Privacy Protection Act, establishes privacy standards for the collection, use, and disclosure of information gathered in connection with insurance transactions by insurance institutions, agents, and insurance-support organizations. The Insurance Information and Privacy Protection Act imposes various monetary penalties for violations of the act and makes a person who knowingly and willfully obtains information about an individual from an insurance institution, agent, or insurance-support organization under false pretenses guilty of a misdemeanor. On and after July 1, 2028, this bill would revise the Insurance Information and Privacy Protection Act to establish new standards for the processing and sharing of consumers' personal information by insurance licensees, surplus line insurers, reinsurers, and third-party service providers. The bill would authorize processing or sharing of a consumer's personal information for specified purposes, including sharing in connection with an insurance transaction. The bill would require a licensee, surplus line insurer, reinsurer, or third-party service provider to provide a clear and conspicuous privacy notice presented as a stand-alone document that includes specified information to a consumer within a specified period of time, and would prohibit the sharing of a consumer's personal information unless it is reasonably necessary and proportionate to achieve specified purposes related to an insurance transaction or another purpose that is fully disclosed to the consumer and to which the consumer has consented. The bill would also require a licensee to provide a privacy rights notice, as specified, to each consumer with whom the licensee has an ongoing business relationship. The bill would require a licensee, surplus line insurer, reinsurer, or third-party service provider to obtain a consumer's consent to take specified actions, and would set forth the means by which consent is obtained. The bill would authorize a licensee, surplus line insurer, or reinsurer to retain personal information, as specified, and would require a licensee, surplus line insurer, or reinsurer to develop a written records retention policy and schedule. The bill would require a licensee, surplus line insurer, or reinsurer to provide specified information to a consumer if it makes an adverse underwriting decision, and would provide a process by which a consumer may access, correct, amend, or delete any personal information about the consumer in the possession of the licensee, surplus line insurer, reinsurer, or its third-party service providers. The bill would require a contract between a licensee, surplus line insurer, or reinsurer and a third-party service provider to govern the processing and sharing of personal information performed on behalf of the licensee, surplus line insurer, or reinsurer. The bill would prohibit retaliation against a consumer because the consumer exercised or attempted to exercise their rights under the act. The bill would prohibit public disclosure of specified systems, processes, policies, procedures, and plans that are disclosed to the Insurance Commissioner. The bill would also make technical and conforming changes. This bill would authorize a penalty of at least $5,000, not to exceed $1,000,000 in the aggregate for multiple violations of the act. The bill would increase the fine if a cease and desist order is violated to at least $15,000 for each violation, and would increase a fine to at least $50,000 for each violation if the commissioner finds the violations to be a general business practice. Under the bill, a person who knowingly and willfully obtains information about a consumer from a licensee, surplus line insurer, reinsurer, or third-party service provider under false pretenses would be guilty of a misdemeanor, punishable by a fine of up to $50,000, imprisonment in a county jail for up to 6 months, or both, thus expanding the applicability of a crime and imposing a state-mandated local program. Existing constitutional provisions require that a statute that limits the right of access to the meetings of public bodies or the writings of public officials and agencies be adopted with findings demonstrating the interest protected by the limitation and the need for protecting that interest. This bill would make legislative findings to that effect. This bill would incorporate additional changes to Sections 791.07, 791.11, and 791.12 of the Insurance Code proposed by AB 1798 to be operative only if this bill and AB 1798 are enacted and this bill is enacted last. The California Constitution requires the state to reimburse local agencies and school districts for certain costs mandated by the state. Statutory provisions establish procedures for making that reimbursement. This bill would provide that no reimbursement is required by this act for a specified reason.
passed · California · Senate Aug 27, 2026

SB 1013: Automated license plate recognition systems.

Existing law prohibits a public agency, which includes the state, a city, a county, a city and county, or any agency or political subdivision of the state, a city, a county, or a city and county, including, but not limited to, a law enforcement agency, from selling, sharing, or transferring automated license plate recognition (ALPR) information, except to another public agency, and only as otherwise permitted by law. Existing law defines ALPR information as information or data collected through the use of an ALPR system. This bill would provide that "public agency" does not include a transportation agency, a public transit operator, department of transportation, public works department, or campus transportation agency, as specified, a public agency or contracted parking operator when engaging in specified activities in a parking facility, a state agency operating specified parking facilities, or the State Air Resources Board. The bill would require a public agency that accesses or provides access to ALPR information to maintain a record of that access, as provided. The bill would, beginning January 1, 2027, require new, updated, renewed, extended, expansions of, or addendums of contractual agreements with ALPR vendors, manufacturers, or suppliers to mandate that no default access is provided to any national ALPR database and that an agency's collected scans are by default not accessible to any other agency, except as specified, and would impose new requirements on sharing between California state law enforcement agencies. This bill would authorize a law enforcement agency to use ALPR information only for purposes of locating vehicles or persons when either are reasonably suspected of being involved in the commission of a public offense or locating an individual who has been reported as missing to a law enforcement agency. The bill, as of January 1, 2028, would require a public agency to archive all ALPR information that has been held for more than 60 days within 14 days, unless that ALPR information is retained in the evidence file of an active investigation or criminal proceeding or matches information on an authorized hot list, as defined, and retain ALPR information that becomes part of an investigation or criminal proceeding in the evidence file as long as the evidence file is required to be held by state law or court order. The bill would prohibit a public agency from querying any archived information except pursuant to a warrant, as specified. By imposing new requirements on public agencies, which include local agencies, this bill would impose a state-mandated local program. Existing law defines an ALPR operator as a person that operates an ALPR system, which does not include a transportation agency. Existing law defines an ALPR end-user as a person that accesses or uses an ALPR system, which does not include, among other things, a transportation agency. This bill would additionally exclude from the definitions of "ALPR operator" and "ALPR end-user" a public transit operator, department of transportation, public works department, campus transportation agency, or an airport or airport operator, as provided. The bill would also exclude from the definition of "ALPR operator" the Department of General Services and its operators when engaging in specified activities in a parking facility and would exclude from the definition of "ALPR end-user" a state agency operating specified parking facilities and the State Air Resources Board. Existing law requires an ALPR operator and ALPR end-user to maintain reasonable security procedures and practices, including operational, administrative, technical, and physical safeguards, to protect ALPR information from unauthorized access, destruction, use, modification, or disclosure. This bill would require those security procedures and practices to include safeguards for managing which employees can see the data from their systems, as specified, and requiring data security training and data privacy training for all employees that access ALPR information. Existing law requires an ALPR operator and ALPR end-user to implement a usage and privacy policy that includes, among other things, a description of the job title or other designation of the employees and independent contractors who are authorized to access and use ALPR information. This bill would require the usage and privacy policy to identify what purpose employees and independent contractors access and use ALPR information for. The bill would also require the Department of Justice to, beginning October 1, 2029, and contingent upon an appropriation of sufficient funds, conduct annual random audits on a public agency that is an ALPR operator or ALPR end-user to determine whether they have implemented and are adhering to that usage and privacy policy. Existing law requires an ALPR operator that accesses or provides access to ALPR information to require that ALPR information only be used for the authorized purposes described in the usage and privacy policy and to maintain a record of that access that includes, among other things, the purpose for accessing the information. This bill would instead require that record of access maintained by the ALPR operator to include a brief, accurate, specific, and plain language statement describing the purpose for accessing ALPR information. The bill would include findings that changes proposed by this bill address a matter of statewide concern rather than a municipal affair and, therefore, apply to all cities, including charter cities. The California Constitution requires the state to reimburse local agencies and school districts for certain costs mandated by the state. Statutory provisions establish procedures for making that reimbursement. This bill would provide that, if the Commission on State Mandates determines that the bill contains costs mandated by the state, reimbursement for those costs shall be made pursuant to the statutory provisions noted above.
passed both · California · Assembly Aug 27, 2026

AB 1650: Rental vehicles: law enforcement.

Existing law generally regulates the business of renting passenger vehicles to the public. The law prohibits a rental company from taking various actions, including requiring the purchase of a damage waiver, optional insurance, or another optional good or service, and using electronic surveillance technology to track a renter in order to impose fines or surcharges relating to the renter's use of a rental vehicle. This bill would require any privately owned vehicle rented by, or furnished to, any federal, state, or local law enforcement agency for the use of detaining, arresting, or transporting persons who have violated, or are suspected of having violated, any law, to display a temporary decal displaying the agency name and logo, as specified. The bill would authorize certain attorneys, including the Attorney General, to pursue a civil action against the entity renting the vehicle from the private owner for failure to comply with these provisions. The bill would require the rental car contract to include a term that compliance with state law is mandatory. The bill would exempt privately owned vehicles rented or otherwise furnished or loaned to a law enforcement agency for specified purposes and rental car contracts entered into prior to January 1, 2027, from these provisions. The bill would make related findings and declarations.
signed · California · Assembly Aug 22, 2026

AB 2624: Privacy for immigration support services providers.

Existing law authorizes designated health care services providers, employees, volunteers, and patients, and individuals who face threats of violence or violence or harassment from the public because of their affiliation with a designated health care services facility, to complete an application to be approved by the Secretary of State for the purposes of enabling state and local agencies to respond to requests for public records without disclosing a program participant's residence address contained in any public record and otherwise provide for confidentiality of identity for that person, subject to specified conditions. Existing law defines "designated health care services" to mean gender-affirming health care services or reproductive health care services. Under existing law, any person who makes a false statement in an application is guilty of a misdemeanor. Existing law prohibits a person, business, or association from knowingly publicly posting or publicly displaying, disclosing, or distributing on internet websites or on social media, the personal information or image of any designated health care services patient, provider, or assistant, or other individuals residing at the same home address, with the intent to incite a third person to cause imminent great bodily harm to the person identified in the posting or display, or to a coresident of that person, as specified, or to threaten the person identified in the posting or display, or a coresident of that person, as specified. Existing law additionally prohibits a person, business, or association from soliciting, selling, or trading on the internet or social media the personal information or image of a designated health care services patient, provider, or assistant with the intent described above. Existing law establishes a cause of action for injunctive or declarative relief for a violation of these prohibitions. Existing law prohibits a person from posting on the internet or social media, with the intent that another person imminently use that information to commit a crime involving violence or a threat of violence against a designated health care services patient, provider, or assistant, or other individuals residing at the same home address, the personal information or image of a reproductive health care services patient, provider, or assistant, or other individuals residing at the same home address. This bill would, commencing October 1, 2027, similarly establish an address confidentiality program for a designated immigration support services provider, employee, or volunteer, as defined, who faces threats of violence or harassment from the public because of their affiliation with a designated immigration support services facility. This bill would additionally prohibit a person, business, or association from soliciting, selling, or trading on the internet the personal information or image of a designated immigration support services provider, employee, or volunteer with the intent described above. The bill would also, among other things, prohibit a person from posting on the internet the personal information or image of a designated immigration support services provider, employee, or volunteer, or other individuals residing at the same home address, with the specific intent that another person imminently use that information to commit a crime involving violence or a threat of violence that is likely to occur against such an individual. The bill would define various terms for these purposes. By imposing new duties on local agencies and creating new crimes, this bill would create a state-mandated local program. Existing constitutional provisions require that a statute that limits the right of access to the meetings of public bodies or the writings of public officials and agencies be adopted with findings demonstrating the interest protected by the limitation and the need for protecting that interest. This bill would make legislative findings to that effect. The California Constitution requires the state to reimburse local agencies and school districts for certain costs mandated by the state. Statutory provisions establish procedures for making that reimbursement. This bill would provide that with regard to certain mandates no reimbursement is required by this act for a specified reason. With regard to any other mandates, this bill would provide that, if the Commission on State Mandates determines that the bill contains costs so mandated by the state, reimbursement for those costs shall be made pursuant to the statutory provisions noted above.
passed · California · Assembly Aug 13, 2026

AB 322: Precise geolocation information.

Existing law, the California Consumer Privacy Act of 2018 (CCPA) , grants a consumer various rights with respect to personal information, as defined, that is collected or sold by a business, as defined, including the right to direct a business that collects sensitive personal information about the consumer to limit its use, as prescribed. Existing law defines "sensitive personal information" to mean, among other things, personal information that reveals a consumer's precise geolocation. Existing law, the California Privacy Rights Act of 2020, approved by the voters as Proposition 24 at the November 3, 2020, statewide general election, amended, added to, and reenacted the CCPA. This bill would require a business that collects precise geolocation information to prominently display, when information is being collected, a notice to the consumer whose information is being collected that states certain information related to the collection of the information and its use by the business, including the goods or services requested by the consumer for which the business is collecting, processing, or disclosing the geolocation information and a description of how the business will process the geolocation information to carry out those purposes. This bill would prohibit a business that collects precise geolocation information from, among other things, retaining the information longer than necessary to provide the goods or services requested by the consumer or longer than one year after the consumer's last intentional interaction with the business, whichever is earlier. This bill would declare that its provisions further the purposes and intent of the California Privacy Rights Act of 2020.
passed · California · Senate Jul 1, 2026

SB 238: Workplace surveillance tools.

Existing law establishes the Department of Industrial Relations in the Labor and Workforce Development Agency to administer and enforce various laws relating to employment and working conditions. This bill would require a business, as defined, to annually provide a notice to the department of all the workplace surveillance tools the employer is using in the workplace. The bill would require the notice to include, among other information, a list of the workplace surveillance tools being used that surveil employees and the categories of information being collected on employees by the workplace surveillance. The bill would also require a business to send the notice to employees and any union that represents employees of the business. The bill would make a business that violates these provisions subject to a civil penalty of $500 per violation. This bill would require the department to submit a report to the Legislature by January 1, 2029, compiling the above-described notices provided by businesses. The bill would require that the report include, among other requirements, a breakdown of notices by industry type.
signed · California · Senate Jun 30, 2026

SB 97: Digital financial assets: stablecoins.

(1) Existing law, the Digital Financial Assets Law, prohibits a person, on or after July 1, 2026, from engaging in digital financial asset business activity, or holding itself out as being able to engage in digital financial asset business activity, with, or on behalf of, a resident, unless any of certain criteria are met, including that the person is licensed with the Department of Financial Protection and Innovation, as prescribed, or the person submits an application on or before July 1, 2026, and is awaiting approval or denial of that application. This bill would revise the above-described latter criterion to specify that the person submits a completed application, as provided. The Digital Financial Assets Law authorizes the Commissioner of Financial Protection and Innovation to issue a conditional license to an applicant who holds or maintains a license to conduct virtual currency business activity in the State of New York, as specified, provided the license was issued or approved no later than January 1, 2023. This bill would revise the above-described authorization to require that the license be issued or approved no later than January 1, 2025. (2) The Digital Financial Assets Law defines "digital financial asset business activity" to mean any of specified activities, including, among others, exchanging, transferring, or storing a digital financial asset, as specified, or exchanging one or more digital representations of value used within one or more online games, game platforms, or family of games, as provided. This bill would remove exchanging one or more digital representations of value used within one or more online games, game platforms, or family of games from the definition of "digital financial business activity." The bill would specify that a "digital financial asset" does not include, among other things, a transaction in which a merchant grants digital representations of value that primarily relate to an affinity or rewards program, as provided, or a digital representation of value issued by or on behalf of a publisher and used primarily within online games or game platforms and that is not otherwise a digital financial asset. The Digital Financial Assets Law declares that its provisions do not apply to specified activity, including by a person who does not receive compensation for providing digital financial asset products or services or for conducting financial asset business activity or that is engaged in testing products or services with the person's own funds. This bill would specify that the above-described exclusion includes a person who merely retains the ability to terminate, suspend, or interrupt a digital financial transaction solely to prevent unauthorized or fraudulent activity and who is not compensated for that service. The Digital Financial Assets Law prohibits a covered person from exchanging, transferring, or storing a digital financial asset that is a stablecoin or engaging in digital financial asset administration of a stablecoin, as specified, unless certain conditions are met. However, existing law authorizes a covered person to exchange, transfer, or store a stablecoin or engage in digital financial asset administration of that stablecoin, as specified, if the stablecoin is approved by the commissioner and complies with certain requirements, restrictions, or prohibitions established by the commissioner. This bill would repeal the above-described provisions related to stablecoins. (3) The Digital Financial Assets Law requires a licensee to submit an annual report, as provided, containing specified information, including a description of any data security breach or cybersecurity event of the licensee. Existing law requires a licensee to file with the department, as applicable, a report of, among other things, a change in the licensee's business for the conduct of its digital financial asset business activity with, or on behalf of, a resident that meets one of specified criteria, including that the proposed change might raise safety and soundness or operational concerns. This bill would revise the above-described annual report to instead include a description of any material data security breach or cybersecurity event of the licensee. The bill would revise the specified criteria in the requirement to file the above-described report of a change in the licensee's business to instead include that the proposed change might raise material safety and soundness or operational concerns. Before engaging in digital financial asset business activity with a resident, the Digital Financial Assets Law requires a covered person, defined as a person required to obtain a license pursuant to that law, to disclose, as provided, certain information, including the resident's right to at least 14 days' prior notice of specified changes that have a material impact on digital financial asset business activity with the resident, or the policies applicable to the resident's account. Existing law requires a covered exchange, as provided, to certify on a form provided by the department that the covered exchange has taken specified actions, except for any digital financial asset approved for listing on or before January 1, 2023. In a transaction for or with a resident, existing law prohibits the covered exchange from interjecting a third party between the covered exchange and the best market for the digital financial asset in a manner inconsistent with specified requirements. This bill would prohibit the 14-day notice requirement from applying to changes in terms, conditions, or policies that are reasonably necessary to address a risk of loss to the resident or covered person, to the extent that the change does not relate to the fee schedule. The bill would instead exclude from the above-described certification requirement a digital financial asset approved for listing on or before January 1, 2025. The bill would require a covered person to provide and make available an up-to-date description of the order execution practices of the covered person, as specified. The bill would exempt a transaction in which a resident receives stablecoin, as defined, in exchange for legal tender or bank or credit union credit from the above-described prohibition against interjecting a third party. The Digital Financial Assets Law requires an applicant, as provided, to create, and during licensure, maintain in a record specified policies and procedures. Existing law requires these policies and procedures be disclosed separately from other disclosures made available to a resident, as specified, except for, among other things, an adopted information security program or an operational security program. This bill would instead exclude from the above-described requirement to disclose separately from other disclosures programs with information that is sensitive to potential security risks, as specified. This bill would declare that it is to take effect immediately as an urgency statute.
vetoed · California · Senate Mar 2, 2026

SB 7: Employment: automated decision systems.

Existing law requires the Department of Technology to conduct, in coordination with other interagency bodies as it deems appropriate, a comprehensive inventory of all high-risk automated decision systems (ADS) that have been proposed for use, development, or procurement by, or are being used, developed, or procured by, any state agency. Existing law establishes the Labor and Workforce Development Agency, which is composed of various departments responsible for protecting and promoting the rights and interests of workers in California, including the Division of Labor Standards Enforcement, led by the Labor Commissioner, within the Department of Industrial Relations. This bill would require an employer to provide a written notice that an ADS, for the purpose of making employment-related decisions, not including hiring, is in use at the workplace to all workers that will foreseeably be directly affected by the ADS, as specified. The bill would require the employer to maintain an updated list of all ADS currently in use. The bill would require an employer to notify, as provided, a job applicant that the employer utilizes an ADS when making hiring decisions, if the employer will use the ADS in making decisions for that position. The bill would prohibit an employer from using an ADS that does certain functions and would limit the purposes and manner in which an ADS may be used to make decisions. The bill would authorize a worker to request, and require an employer to provide, a copy of the most recent 12 months of the worker's own data primarily used by an ADS to make a discipline, termination, or deactivation decision, as specified. The bill would require an employer that primarily relied on an ADS to make a discipline, termination, or deactivation decision to provide the affected worker with a written notice, as specified. This bill would prohibit an employer from discharging, threatening to discharge, demoting, suspending, or in any manner discriminating or retaliating against any worker for taking certain actions asserting their rights under the bill. The bill would require the Labor Commissioner to enforce the bill's provisions, as specified, and would authorize a public prosecutor to bring a civil action. The bill would set forth specified types of relief that a plaintiff may seek and specified penalties that an employer that violates these provisions is subject to, including a $500 civil penalty. The bill would also provide that an employer who complies with the requirements related to notice in this bill is not required to comply with any substantially similar provisions under any other state law, except as specified. The bill would not apply to parties covered by a valid collective bargaining agreement if the agreement contains specified information, including an explicit waiver of the bill's provisions. The bill would declare that its provisions do not prohibit any employer from complying with regulatory or contractual requirements in the provision of products or services to the federal government, as defined. This bill would declare that its provisions are severable.
Showing 11 to 20 of 28 bills