Get emailed when this bill changes status, is amended, or advances.
Disclaimer: This page provides general informational summaries only and does not constitute legal advice. AI-generated content may contain errors. Always consult a qualified attorney for guidance specific to your situation.
Read full disclaimer →
This bill restricts private entities from requiring biometric data for goods or services, with exceptions for certain sectors, and mandates written consent and disclosure.
HB2411 amends the Biometric Information Privacy Act to limit the conditions under which private entities can require biometric data from individuals. It exempts medical services, law enforcement, and governmental entities, focusing on protecting consumer privacy in biometric data collection. It also requires written consent and disclosure.
Key Provisions
Private entities cannot require biometric data for goods/services, except for background checks or security protocols.
Exemptions apply to medical service providers, law enforcement, and governmental entities.
Entities must develop a public policy on the retention and destruction of biometric data.
Private entities must inform individuals in writing and obtain written consent before collecting biometric data.
Latest Legislative Action
Session Sine Die
Bill Sponsors
Name
Role
District
Sam YinglingD
Sponsor
HD-062
Compliance Checklist
Ensure biometric data is not required for goods/services unless exempted. Who: Private entities collecting biometric data. Penalty: Potential legal action for non-compliance.
Develop and publicly share a policy on biometric data retention and destruction. Who: Private entities in possession of biometric data. Penalty: Potential legal action for non-compliance.
HB2411 amends the Biometric Information Privacy Act by prohibiting private entities from requiring biometric identifiers or information as a condition for providing goods or services, except when necessary for background checks or employee security protocols. This restriction aims to enhance consumer privacy and limit the potential misuse of biometric data. The bill specifically exempts companies providing medical services, law enforcement agencies, and governmental entities from these requirements, recognizing their unique operational needs. Private entities must inform individuals in writing about the collection, purpose, and duration of biometric data storage and obtain written consent before collection.
We use cookies for analytics to understand how visitors use this site. We also use essential cookies for site functionality.
See our Privacy Policy for details.