Consumer Reports Advocates Against Surveillance Pricing in Colorado and California
Article Content
- •Consumer Reports supports bills in Colorado and California to ban surveillance pricing.
- •Both bills prohibit using personal data to set customized prices based on consumer characteristics.
- •The legislation includes protections for transparent discounts and specific industry exemptions.
On May 3, 2026, Consumer Reports expressed support for two bills aimed at prohibiting surveillance pricing in Colorado and California. The Colorado bill, HB26-1210, seeks to ban the use of personal data to set prices or discounts based on consumer characteristics, behaviors, or biometrics. Similarly, California's AB 2564 aims to prevent companies from using personal data collected through electronic surveillance to customize prices for goods. Both bills protect transparent discounts, such as group discounts and loyalty program offers. These legislative efforts are designed to safeguard consumer privacy and prevent discriminatory pricing practices. The bills include specific exemptions for certain industries, such as insurance. Consumer Reports has actively participated in legislative hearings to advocate for these measures. The current status of both bills is that they are under consideration in their respective state legislatures.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…