An Act relative to protecting sensitive information from security breaches
This bill updates Massachusetts data privacy laws by expanding the types of sensitive information that require protection. It specifically adds new definitions for biometric data, genetic information, and precise geolocation data to the list of personal information that must be secured. Additionally, the legislation clarifies what constitutes a security breach, defining it as the unauthorized access to unencrypted data or encrypted data where the encryption key has been compromised. These changes aim to ensure that organizations handling these specific categories of data have stronger obligations to safeguard them against theft or misuse.
Bill status
passed
3 of 4 stages cleared
Introduction
Feb 2023
Committee Review
Feb 2023
House Passage
Feb 2023
Governor
Introduced Feb 16, 2023
Last action Dec 28, 2023
Floor votes
How they voted
This bill passed the House. No roll call record of that vote is available.
Full legislative history
Actions timeline
Total actions
5
Key actions
1
Committee
1
Feb 16, 2023
Lower · Passed
House concurred
lower
Feb 16, 2023
Committee
Referred to the committee on Advanced Information Technology, the Internet and Cybersecurity
upper
1 primary · 0 co-sponsors
Sponsors
Role
Legislator
Party
State
District
P
Barry Finegold
DDemocratic
Ask Maddy
·
AI policy assistant
Ask Maddy about S 30
Scope: MA
Hi! I can help you understand S 30. What would you like to know?
Try one of these
i
Maddy answers using official bill text and legislative records. Always verify before sharing.
Sources cited inline