The Auto Data Privacy and Autonomy Act requires automakers to obtain explicit, written consent from vehicle owners before accessing or sharing their vehicle data (including location and personal information), except for safety improvements or emergencies. It prohibits selling personal data to specific foreign governments (like China, Russia, and North Korea) and mandates that owners have free, real-time access to all vehicle data - without fees, proprietary tools, or restrictions - via open interfaces to delete data or adjust settings. The Federal Trade Commission must report to Congress within 180 days on how automakers handle data, including cybersecurity risks and foreign data sharing. The law takes effect three months after enactment and is enforced under existing FTC authority.
This bill directs the Election Assistance Commission (EAC) to create voluntary guidelines for state and local election offices on managing artificial intelligence (AI) in elections. The guidelines must address AI's risks and benefits, cybersecurity threats, how AI affects sharing accurate election information, and how it might spread disinformation. The EAC must also study AI's use in the 2024 federal elections by July 2026 and update the guidelines based on that study. These guidelines are non-binding, meaning election offices choose whether to adopt them, and they aim to help election administrators navigate AI tools responsibly.
This bill directs the Secretary of Agriculture to develop voluntary, industry-led technical standards for precision agriculture equipment within two years, coordinating with NIST and the FCC. It requires these standards to address connectivity needs, cybersecurity, and compatibility across devices like GPS systems, soil sensors, and data management tools used by farmers. The bill also mandates a GAO assessment every two years for eight years to evaluate whether the standards are truly voluntary, developed with industry input, and successfully encourage wider adoption of precision agriculture. The policy affects farmers, ag-tech companies, and equipment manufacturers by creating common technical rules to reduce adoption barriers, without imposing new regulations or costs.
HR 1495, the Digital Economy Cybersecurity Advisory Act of 2025, establishes a new advisory board within the National Telecommunications and Information Administration (NTIA) to provide recommendations on cybersecurity policies. The board, made up of 5-25 members with cybersecurity or supply chain expertise from government, private industry, and network operators, will advise the NTIA on securing internet networks while promoting economic growth and innovation. Key areas of focus include best practices for critical internet protocols like Border Gateway Protocol, secure supply chains, and removing barriers to trust and commercialization in digital networks. The board will operate for four years, with members serving without pay and reporting exclusively to the NTIA.
This bill establishes the Defense Technology Hubs Program, requiring the Secretary of Defense to create 10 regional hubs by 2028. These hubs - formed by partnerships of universities, defense contractors, small businesses, and state/local governments - will focus on accelerating development of defense technologies like AI, quantum computing, and hypersonics. The program authorizes $375 million (2026-2030) for grants, with hubs using funds for research, prototyping, and workforce training while complying with security rules like export controls (ITAR/EAR) and cybersecurity standards. It prioritizes geographic diversity and aims to strengthen collaboration between defense agencies, industry, and academic institutions to boost national security innovation.
The Cybersecurity in Agriculture Act of 2025 establishes five regional centers to strengthen cybersecurity for the agriculture sector, directly benefiting farmers, food producers, and supply chain businesses. Funded with $25 million annually from 2026-2030, the centers will research and develop sector-specific tools like threat-monitoring systems, intrusion detection, and secure network protocols. They will create testing environments for cybersecurity solutions, conduct training for agricultural workers, and coordinate with industry partners to address digital threats. This program aims to improve the sector’s resilience against cyberattacks without advocating for specific policy outcomes.
The PILLAR Act reauthorizes the CISA State and local cybersecurity grant program through fiscal year 2035, expanding its scope to cover operational technology systems and systems using artificial intelligence. It requires grant recipients to adopt multi-factor authentication and other cybersecurity best practices, with higher federal funding rates (up to 75% for multi-entity groups) if these measures are implemented by October 2027. The bill also mandates outreach to rural and small local governments to ensure equitable access to cybersecurity resources and includes a requirement for GAO reviews of artificial intelligence adoption across funded programs.
HR 5764, the "AI for Main Street Act," amends the Small Business Act to require the Small Business Administration (SBA) to provide guidance and training to small business concerns on using artificial intelligence. It directly affects small businesses by adding new SBA responsibilities to help them evaluate AI for operations, including best practices, cybersecurity, data protection, regulatory compliance, and customer trust. Key provisions mandate the SBA to offer information, training, and outreach on incorporating AI into business processes, such as planning for unexpected circumstances. The bill does not authorize new funding for these activities. It defines "artificial intelligence" using the existing term from the National AI Initiative Act.
HR 1766, the NTIA Policy and Cybersecurity Coordination Act, creates a new Office of Policy Development and Cybersecurity within the National Telecommunications and Information Administration (NTIA). The office, led by an Associate Administrator, will coordinate cybersecurity and privacy policies, promote innovation in communications technologies, and develop market-based strategies for internet access, digital inclusion, and network security. It will conduct studies on public internet usage, foster collaboration between security researchers and service providers, and advise the NTIA on cybersecurity policy matters. This procedural bill establishes a dedicated unit to streamline policy development but does not directly change laws affecting specific groups.
HR 7294, the "AI for Secure Networks Act," requires the Secretary of Commerce to conduct a study on how artificial intelligence (AI) technology impacts telecommunications network security. The study must examine AI's potential to improve security through real-time threat detection, network resiliency, and energy efficiency, as well as its use with Open RAN and virtualized security technologies, while also assessing associated risks. The Secretary must consult with the Federal Communications Commission and industry stakeholders and submit a report with findings and potential recommendations to Congress within one year of the bill's enactment. This bill does not create new regulations or directly affect businesses or consumers; it is a procedural step to gather information about AI's role in securing telecom networks.