Get emailed when this bill changes status, is amended, or advances.
Disclaimer: This page provides general informational summaries only and does not constitute legal advice. AI-generated content may contain errors. Always consult a qualified attorney for guidance specific to your situation.
Read full disclaimer →
Senate Bill 169 focuses on consumer protection regarding biometric data privacy in Maryland. It requires private entities to develop and publicly share policies on how they handle biometric data, including retention schedules and destruction guidelines. Individuals will have the right to sue if they believe their biometric data rights have been violated, making compliance crucial for businesses that utilize such data.
Key Provisions
Private entities must develop a written policy for biometric data retention and destruction.
The policy must be made publicly available.
Individuals can bring civil actions for violations of the Act.
Violations are classified as unfair, abusive, or deceptive trade practices.
Latest Legislative Action
Approved by the Governor - Chapter 788
Bill Sponsors
Name
Role
Beidle
Primary
Feldman
Primary
Guzzone
Primary
Lam
Primary
Love
Primary
Compliance Checklist
Develop a written policy for biometric data retention and destruction Who: Private entities collecting biometric data Penalty: Civil action by individuals for violations
Make the biometric data policy publicly available Who: Private entities collecting biometric data Penalty: Civil action by individuals for violations
Senate Bill 169 aims to regulate the handling of biometric data by private entities in Maryland. It requires these entities to develop a written policy that outlines a retention schedule for biometric data and guidelines for its permanent destruction. This policy must be made publicly available, ensuring transparency in how biometric data is managed. The bill also empowers individuals to bring civil actions against entities that violate these provisions, categorizing such violations as unfair, abusive, or deceptive trade practices. This legislation reflects a growing trend in data privacy laws that seek to protect consumers from potential misuse of their biometric information, which is increasingly collected through various technologies, including AI-driven systems. The bill text provided does not specify a compliance deadline, but entities should prepare to implement these policies promptly to avoid potential legal repercussions. The penalties for non-compliance could include civil lawsuits initiated by affected individuals, which may result in financial liabilities for the offending entities. Key definitions, such as what constitutes 'biometric data,' will be critical for businesses to understand as they develop their compliance strategies. While the bill does not explicitly state alignment with laws in Illinois and California, it indicates a nationwide movement towards stricter data privacy protections.
We use cookies for analytics to understand how visitors use this site. We also use essential cookies for site functionality.
See our Privacy Policy for details.