HNHacker News
TopNewBestAskShowJobs

richartruddie

34 karma · joined December 5, 2016

Richart Ruddie. Working on building a coding bootcamp for impovershiped students to help them develop skills and the ability to earn higher wagers and not be limited by local labor jobs.

If you're passionaite about making the world a better place and have any input in the coding bootcamps then please do ping me.

submissionscomments
richartruddie··on Dario Just Said Pump the Brakes on AI
Embedded Evaluators, Democratic Coordination, Global Coordination and pacing are some of the parts that stood out.
richartruddie··on [dead]
The demand letters are still rolling in despite being labeled as a vexatious litigant by the central california courts. Now in this breakdown video everything from the search bar privacy lawsuits to the CIPA demand letters with a litigation filing in there is broken down and what to do if you have a cookie consent banner that is not respecting Viveks privacy. Take 30 minutes to learn and get protected against Viveks data privacy claims.
richartruddie··on CalPrivacy 2nd Fine in As Many Days Against a data broker
Just two days after fining LocateSmarter, the California Privacy Protection Agency has issued its second data broker enforcement action of the week.

On August 13, 2026, the CalPrivacy Board ordered Boston-based Cybba, Inc. to pay a $52,400 fine for failing to register with the state’s Data Broker Registry by the 2025 deadline. The company sells personal information—including geolocation data, internet activity data, and inferences—primarily to support targeted advertising. One of its services analyzes purchasing behavior signals to identify likely repeat customers and other high-intent buyers.

richartruddie··on Breaking News Drop Act First Data Broker Fine
Breaking news just now in the privacy world out of California the first DROP Act penalty today August 11th has been made against a mid-west data broker with a $116,490 fine.
richartruddie··on Kill The Cookie Banner
The banner is needed because I want to toggle settings depending on the website. A one size fits all model does not give agency and choice thats easy to adjust for a website visitor. Thats how I feel but you can call me biased.
richartruddie··on Kill The Cookie Banner
Captain Compliance consent banners work but most do not and that is the issue but in time enforcement will make it that they will all work or else there will be consequences.
richartruddie··on Received a Vivek Shah CIPA Demand Letter? Don't Pay Yet
If you are like the thousands of other business owners who are getting hit with data privacy lawsuits and filing an insurance claim or going to your legal counsel to defend this you will want to read this advice on how to beat these meta-pixel lawsuits...Somewhere in your organization a general inbox, a registered agent, a front-desk mail pile there may already be an envelope from Vivek Shah. Thousands of businesses and nonprofits across the country have received one since Fall 2025: a demand letter alleging privacy violations and an ask for compensation because you have a faulty cookie banner or a search bar without proper disclosures set up on your website..... These claims are coming hot and heavy. JD Supra has the guide on how to defend and get these privacy lawsuits dismissed.
richartruddie··on Phia Under Fire: Privacy Overreach, Full-Page HTML Capture and Cookie Stuffing
Cookie stuffing and false attribution on top of a privacy scandal has gotten Phia being talked about but not for the right reasons....
richartruddie··on Vivek Shah CIPA Claims as Serial Litigant
Serial Litigant Vivek Shah has been sending out not hundreds but thousands of privacy violation demands to business owners all across the USA. Thankfully Captain Compliance has been a solution to block these privacy lawsuits with their consent management and privacy tools. Now California Assembly is looking to amend the law as the Los Angeles, California court systems would be overwhelmed with these cases if they were to move forward with Vivek Shah as the plaintiff.
richartruddie··on Forbes Settling Privacy Lawsuit for total of 17.5M
Two lawsuits. Two settlements. Seventeen and a half million dollars. And a media company that, by all external appearances, did exactly what hundreds of other digital publishers are doing right now — deploying advertising and analytics technology to monetize its audience — discovering that the legal infrastructure of digital publishing has fundamentally changed around it.

Privacy Software company covers rise in litigation.

richartruddie··on Sued, Breached, and Betrayed Mercor's Data Breach and Delve's Scandal
Paper Shields and Stolen Data: How a Fake Compliance Empire and a 40-Minute Supply Chain Attack Left 40,000 People Exposed — and Silicon Valley Facing a Legal Reckoning.
richartruddie··on Delve Scandal Just Keeps Getting Worse
The spiral continues and the comments on X/Twitter are not going easy. Ycombinator the site this is being posted on has removed them from their site and kicked them out after it surfaced about non-sourcing or crediting the Sim.ai. TLDR overview:

The major scandal started over allegedly fake SOC 2 audits, fabricated compliance evidence, and stolen open-source code, and that it has now parted ways with Y Combinator. It portrays the company as initially celebrated, then rapidly unraveling after anonymous investigations raised claims that most of its audit reports were nearly identical and that its enterprise product may have been a fork of open-source software without proper attribution.

The core accusation is that Delve generated hundreds of SOC 2 reports that were effectively templated, with the same wording, typos, and conclusions repeated across clients. The piece also says customers were allegedly shown compliance evidence that was fabricated or prewritten before auditors reviewed anything. In addition, it claims Delve marketed itself as more automated and credible than it really was, which made the situation look less like sloppy compliance and more like deliberate fraud.

Code theft claim

A second major allegation is that Delve’s “Pathways” workflow product was a modified version of the open-source tool SimStudio, allegedly sold without attribution despite Apache 2.0 licensing requirements. The article says Delve hired outside developers to maintain it and presented it as built internally, which intensified criticism around both ethics and licensing. This part of the story broadened the scandal beyond compliance fraud into possible IP misuse.

The backlash was immediate: the story spread quickly, investors and supporters distanced themselves, Delve disabled parts of its demo pipeline, and Y Combinator cut ties with the company. The overall tone is that Delve went from high-profile startup to cautionary tale almost overnight.

richartruddie··on OneTrust Talking to Private Equity to Sell
Market leader in data privacy software is continuing the M&A trend with buyout talks under way.
richartruddie··on Anthropic AI Cyber Espionage Attack Thwarted
Anthropic state sponsored attack used by operators who selected targets (technology corporations, financial institutions, chemical manufacturers, and government agencies) and provided campaign-level authorization at critical decision gates. Human involvement represented approximately 10-20% of total operational effort, concentrated at 4-6 critical decision points per campaign.
richartruddie··on Privacy Risks of 1x Neo Robot
This new robot is going to be awesome but the 1X NEO is going to have some privacy risks that need to be addressed.
richartruddie··on California's "Opt Me Out Act" Makes Browser-Based Opt-Out a Baseline
On October 8, 2025, California enacted the “Opt Me Out Act” (AB 566), the first U.S. law requiring web browsers that operate in California to ship an easy-to-find, built-in setting allowing users to send a universal opt-out preference signal (often implemented via Global Privacy Control, or “GPC”). When enabled, the browser signal instructs websites not to sell or share personal information, operationalizing California Consumer Privacy Act (CCPA/CPRA) opt-out rights at scale. The law authorizes the California Privacy Protection Agency (CPPA) to adopt implementing regulations and takes effect January 1, 2027. This editorial explains what the law does (and does not) cover—especially the status of mobile browsers—how it interacts with existing universal opt-out regimes in states like Colorado and Connecticut, what it means for opt-out requests and DSAR workflows, and the practical pros and cons for businesses. Finally, it outlines why this shift is advantageous for enterprise privacy programs and how leading solutions such as CaptainCompliance.com can reduce risk and cost through automation.
richartruddie··on Google and Shein Fined for Cookie Violations by CNIL in France
France's CNIL fines Google €325M and Shein €150M for deceptive cookie consent practices under GDPR and ePrivacy rules. The penalties highlight ongoing issues with "dark patterns" in user interfaces that make opting out harder than accepting tracking. This adds to Google's history of EU privacy fines and marks Shein's first major data protection hit amid its rapid growth.

Captain Compliance a leader in data privacy software solutions provides an analysis.

richartruddie··on The Tea App Breached Again – Class Action Privacy Suit Underway
As predicted with the Team App breach for the 2nd time in as many weeks there is a class action already starting and expect private right of action lawsuits under CCPA and other privacy laws.
richartruddie··on Mcbot McHacked
McDonalds AI Chatbot was hacked and is creating McProblems for third party risk. Why didn't the 3rd party risk assessments and DPIA's find this risk? One thing is for sure if they were using captain compliance this could have been avoided...
richartruddie··on Why Having a Cookie warning notice is a good idea
With privacy litigation heating up and regulators at the recent IAPP DC Privacy summit saying that they are wanting to be more aggressive for privacy violations its a good time to start having privacy protections in place including cookie warning disclosures.
richartruddie··on AI Pendulum Innovation vs. Privacy Protection
A fine line sits between innovation and privacy protections when it comes to AI regulations.
richartruddie··on Website Privacy Compliance Checker
I Created a section on our compliance website where users can input their domain or website and we will run a scan to determine all the 1st party, 3rd party cookies, which potential privacy and compliance gaps the website has and what should be fixed such as missing cookie consent banners, outdated privacy notices, and policy corrections.
richartruddie··on GDPR Fine Tracker in One Place
Together in one place a list of all the GDPR fines and amounts.
richartruddie··on Pacific Trial Attorneys CIPA Lawsuits
Scott Ferrell has been leading the way in helping to enforce privacy through litigation related to violations of the California Invasion of Privacy act using the pen test when a website is using tracking software or a chat bot.
richartruddie··on Swigart Law Group CIPA Litigation and How to Deal with It
Like the ADA compliance violations before it now the litigation is happening over the California Invasion of Privacy Act and one law firm called Swigart Law Group out of San Diego, California is leading the charge with claims. Luckily if you're reading this you can get ahead of this and get compliant and avoid the $30,000 per violation and rest easy at night.
richartruddie··on PDPL Saudi Arabia Comes to the Data Privacy Table
Saudi Arabia has a data privacy law with on premise needs for compliance purposes.
richartruddie··on How to Check for tracking Cookies on a website
Guide for those using Google Chrome, Safari, Firefox, or another browser can use inspection or developer tools and see all the cookies being displayed regarding 1st party and 3rd party cookies.
richartruddie··on Universal Consent and Preference Management Guide
Guide for UCP otherwise known as universal consent and preference management.
richartruddie··on GDPR Compliance Guide
While we're at it Mail Fence is covering gdpr compliance.
richartruddie··on Ferpa Violations to Avoid
Doing work in the education field? You may know about COPPA but the other acronym that pops up is FERPA. Trust Worthy provides a guide on violations and what to avoid.
Page 1 of 3Next →