
2025 wrapped and 2026 predictions
18/12/2025 | 48 mins.
In our annual âLook Back, Look Forwardâ edition of The Data Chronicles, Scott Loughlin and Eduardo Ustaran, co-leads of Hogan Lovellsâ Global Data, Privacy and Cybersecurity practice, reflect on the most important developments in privacy, cybersecurity, and data regulation in 2025 and share their outlook for 2026. It has become the most popular episode of the year, drawing strong interest from listeners across regions and sectors. Â The conversation covers the global impact of artificial intelligence, evolving regulatory priorities in the UK, EU, and US, and the ongoing balance between innovation and regulation. Topics include potential GDPR reform, biometrics and age verification, geopolitics and data protection, international data transfers, and the growing focus on AI governance and childrenâs data.

A new FTC era | Evolving data enforcement and the road to 2026
11/12/2025 | 38 mins.
What can businesses expect from the U.S. Federal Trade Commission on privacy and data enforcement as we move into 2026? In this episode of The Data Chronicles, host Scott Loughlin is joined by Cobun Zweifel-Keegan, Managing Director at the IAPP, for a practical year-end review of the FTCâs 2025 enforcement priorities and what they signal for the year ahead. Â Together, Scott and Cobun break down how a change in administration reshaped the agencyâs focus this year, with heightened attention on childrenâs and teensâ privacy, COPPA enforcement, cross-platform data collection, and growing concerns around the sale of Americansâ sensitive information to foreign adversary countries. They also discuss the FTCâs evolving view of privacy as both a consumer protection and national security issue. Â The conversation also covers the operational and strategic impact of the FTC operating with only two sitting commissioners, and how todayâs enforcement posture compares with the more aggressive approach under the prior administration.

Indiaâs DPDPA brought into force
04/12/2025 | 40 mins.
India has taken a major step in reshaping its digital future. After years of drafts and debate, the country has finalized the Digital Personal Data Protection Act (DPDPA) and issued detailed rules that bring the law fully to life. With implementation now scheduled over the next 18 months, organizations have clear timelines and a more definitive view of the significant compliance work ahead. In this episode, host Scott Loughlin is joined by Stephen Mathias, partner and head of the Bangalore office at Kochhar & Company, and Hogan Lovells partner Charmian Aw, who leads the Hogan Lovells APAC Data, Privacy and Cybersecurity practice. Together, they discuss the core features of Indiaâs new law, including its consent-based framework, extraterritorial reach, and parallels with the EU GDPR. The conversation covers the key steps companies should be taking now, from redesigning data architecture and consent flows to assessing breach response readiness. The episode also explores global business implications, enforcement expectations, and how the DPDPA fits into the broader regional privacy landscape. Whether youâre operating in India or serving customers there, this discussion offers practical insights on whatâs changing, why it matters, and how to prepare.

The Data Chronicles | The U.S. Data Security Program and the future of cross-border data
20/11/2025 | 41 mins.
The U.S. Department of Justiceâs Data Security Program is reshaping how companies manage cross-border data activities. This episode of The Data Chronicles breaks down what the rule does, why it was created, and the types of transactions it restricts or prohibitsâfrom data brokerage to vendor access to bulk genomic data. Host Scott Loughlin is joined by Hogan Lovells partner James Denvil and associate Lorea Mendiguren to walk through the ruleâs core elements and the open questions around implementation, risk, and compliance. They share practical insights from advising companies in e-commerce, health, and life sciences as they adjust to this new national-security-driven framework.

Checking in on APAC | Regulating for innovation
13/11/2025 | 49 mins.
In this episode of The Data Chronicles, host Scott Loughlin is joined by Hogan Lovells partners Eduardo Ustaran and Charmian Aw to examine how regulators are rethinking the relationship between AI, innovation, and privacy. They discuss why many regulators view data protection rules not as obstacles, but as guardrails that can support responsible AI development through tools like impact assessments, transparency, and data minimization. Â Eduardo shares insights from the Global Privacy Assembly, which brought together more than 140 data protection authorities from over 90 countries for regulator-led discussions on AI in daily life, cross-border data transfers, childrenâs privacy, privacy-enhancing technologies, and other issues shaping global enforcement trends. Charmian, who leads the firmâs Asia-Pacific Data, Privacy and Cybersecurity team, adds an APAC perspective with takeaways from the Global Cross-Border Privacy Rules Forum and the regionâs growing push for interoperability in data transfers and enforcement cooperation. Â We also highlight the launch of our Asia Pacific Privacy Legislation Tracker, a new tool that compares privacy requirements across APAC jurisdictions designed to support companies in navigating the regionâs evolving data protection landscape.



The Data Chronicles