Cyber, critical infrastructure & AI standards — all in one place.

The latest standards, laws and regulations, with curated metadata, mapped controls and expert guidance from 6clicks. Built for GRC, compliance and security teams.

Browse by industry

Browse by sector. Each page shows relevant standards, laws, regulations, and frameworks.

Explore all industries

Content Library

Showing 11 of 11

PrivacyRegulation

201 CMR 17.00 — Massachusetts: Standards for the protection of personal information of residents of the Commonwealth

201 CMR 17.00 is a Massachusetts information security regulation that establishes minimum requirements for protecting the personal information of Massachusetts residents through administrative, technical, and physical security safeguards.

Office of Consumer Affairs and Business Regulation • Massachusetts, USA

View details
PrivacyLaw

Maine Notice of Risk to Personal Data — Title 10, Chapter 210-B: Notice of Risk to Personal Data

Maine's Title 10, Chapter 210-B establishes regulations around personal data protection and security breach notifications. It includes provisions on prohibited use of personal data, mandatory breach notification, enforcement mechanisms, and rules for reporting identity theft.

State of Maine • Maine, USA

View details
CybersecurityLaw

Alabama Data Breach Notification Act of 2018 — Chapter 38 Data Breach Notification Act of 2018

The Alabama Data Breach Notification Act of 2018 is a state data protection law that requires organizations to safeguard sensitive personal information, investigate security breaches, and provide timely notification to affected individuals and regulatory authorities when personal data is compromised.

State of Alabama • Alabama, USA • vPolicy 621-01

View details
PrivacyLaw

Arkansas PIPA — Arkansas Personal Information Protection Act

The Arkansas Personal Information Protection Act (PIPA) is a data privacy and security law that requires organizations to protect personal information, implement reasonable security measures, and notify affected individuals in the event of a qualifying data breach.

State of Arkansas • Arkansas, USA

View details
PrivacyRegulation

Nevada Chapter 603A — Security and Privacy of Personal Information

Nevada Chapter 603A - Security and Privacy of Personal Information is a Nevada privacy and data security law that requires organizations to safeguard personal information, notify individuals of certain data breaches, and comply with consumer privacy requirements relating to the collection, use, and protection of personal data.

State of Nevada • Nevada, USA

View details
PrivacyLaw

Hawaii - Security Breach of Personal Information Chapter 487N

Hawaii Security Breach of Personal Information (Chapter 487N) is a Hawaii state law that requires businesses and government agencies to notify affected individuals of data breaches involving personal information and establishes requirements for protecting and managing sensitive personal data.

State of Hawaii • Hawaii

View details
PrivacyLaw

Korea PIPA — Korea Personal Information Protection Act

The Personal Information Protection Act establishes legal principles and requirements for protecting personal information within South Korea. It defines the rights of individuals regarding their data and sets obligations for organizations handling personal information.

South Korean Government • South Korea

View details
PrivacyLaw

Mauritius DPA — Mauritius Data Protection Act 2017

The Data Protection Act 2017 establishes legal protections for privacy rights in Mauritius, regulating the collection, processing, storage, and use of personal information. It aims to safeguard privacy amid technical advancements while balancing the needs of government, businesses, and individuals.

Government of Mauritius • Mauritius

View details
PrivacyLaw

Privacy Act

The Privacy Act of Canada governs the collection, use, retention, and disclosure of personal information by federal government institutions. It ensures that individuals have the right to access and correct their personal information held by the government.

Government of Canada • Canada

View details
PrivacyLaw

APPs — Australian Privacy Principles

The Australian Privacy Principles (APPs) are a set of 13 principles that form the privacy protection framework under the Privacy Act 1988. They govern how personal information is collected, used, disclosed, and managed by organizations and agencies subject to the Act.

Office of the Australian Information Commissioner (OAIC) • Australia

View details
PrivacyLaw

Privacy Act 1988 — Privacy Act 1988

The Privacy Act 1988 is an Australian law that regulates the handling of personal information by businesses, government agencies, and other entities. It includes provisions for the Australian Privacy Principles, credit reporting, and notification of data breaches.

Australian Government • Australia • vNo. 119, 1988

View details

Partner directory

Certified resellers, integrators and advisors to help you implement and manage your GRC program.

Explore all partners (88)

Ready to manage these frameworks?

6clicks maps regulations to controls, evidence and risks — automatically.

Book your strategy call