AI Regulations Tracker

Every AI and algorithmic decision-making regulation XIRA tracks, organized by state. Updated as new laws are signed.

Tracking 99 regulations across 24 states and jurisdictions. Every entry verified against enrolled statute text. Last updated April 9, 2026.

All regulations by state

Filter by category, status, and state search to find what matters now.

Category

Status

99 total | 90 in effect | 6 upcoming | 25 with PRA | 24 states

Arkansas(3 tracked)

California(21 tracked)

Colorado(2 tracked)

  • Colorado AI Act (SB 24-205)

    Requires developers and deployers of high-risk AI systems to use reasonable care to protect consumers from algorithmi...

    COAI-SpecificHigh riskEffective June 30, 2026
    $20,000/violationEffective
  • Colorado Privacy Act (CPA profiling and ADM)

    Colorado profiling rules define three tiers: Solely Automated Processing, Human Reviewed Automated Processing, and Hu...

    COPrivacy ADMHigh riskIn Effect
    $20,000/violationEffective

Connecticut(3 tracked)

Delaware(1 tracked)

Illinois(8 tracked)

Indiana(2 tracked)

Iowa(2 tracked)

Kentucky(1 tracked)

Maryland(5 tracked)

Minnesota(2 tracked)

Montana(2 tracked)

  • Montana Consumer Data Privacy Act - Profiling Provisions

    Grants Montana consumers the right to opt out of profiling for decisions with legal or significant effects. 2025 amen...

    MTPrivacy ADMMedium riskIn Effect
    See penalty termsEffective
  • Montana Right to Compute Act (SB 212)

    Requires deployers of critical infrastructure facilities controlled by AI to develop a risk management policy based o...

    MTAI-SpecificMedium riskIn Effect
    See penalty termsEffective

Nebraska(1 tracked)

New Hampshire(1 tracked)

New Jersey(2 tracked)

  • New Jersey Data Privacy Act (Profiling Provisions)

    Uniquely covers nonprofits with no revenue threshold. Universal opt-out mechanism (UOOM) requirement effective July 1...

    NJPrivacy ADMMedium riskIn Effect
    $10,000 penaltiesEffective
  • New Jersey Deepfake Penalties (S2544)

    Establishes civil and criminal penalties for creating and distributing deepfakes, including AI-manipulated images and...

    NJAI-SpecificMedium riskIn Effect
    Criminal penalties PRAEffective

New York(6 tracked)

New York City(1 tracked)

Oregon(3 tracked)

  • Oregon Consumer Privacy Act - Profiling Provisions

    Grants Oregon consumers the right to opt out of profiling for decisions with legal or significant effects. Opt-out li...

    ORPrivacy ADMMedium riskIn Effect
    $7,500/violationEffective
  • Oregon Synthetic Intimate Imagery (HB 2299)

    Criminal penalties for creating or distributing AI-generated nonconsensual intimate imagery in Oregon. Expands intima...

    ORAI-SpecificMedium riskIn Effect
    Criminal penaltiesEffective
  • Oregon Election Deepfake Disclosure (SB 1571)

    Requires disclosure statement on political communications containing synthetic media in Oregon elections.

    ORAI-SpecificLow riskIn Effect
    See penalty termsEffective

Rhode Island(1 tracked)

Tennessee(2 tracked)

Texas(6 tracked)

Utah(5 tracked)

Virginia(2 tracked)

Washington(7 tracked)

  • Washington SB 5395 (AI in Health Insurance Prior Authorization)

    Enacted as Chapter 157, Laws of 2026; Governor signed March 23, 2026; effective June 11, 2026. AI tools may be used t...

    WAAI-SpecificHigh riskEffective June 11, 2026
    See penalty termsEffective
  • Washington My Health My Data Act

    Broad health data privacy law covering health data collected outside HIPAA, including data from health-related AI too...

    WAPrivacy ADMHigh riskIn Effect
    $7,500/violation PRAEffective
  • Washington AI Chatbot Safety for Minors (HB 2225)

    First-in-nation law requiring AI chatbot operators to disclose AI nature at regular intervals (every 3 hours for adul...

    WAAI-SpecificMedium riskEnacted, effective January 1, 2027
    See penalty terms PRAEffective
  • Washington AI Content Disclosure Act (HB 1170)

    AI content provenance and watermarking requirements for providers with 1 million or more monthly Washington users. Re...

    WAAI-SpecificMedium riskEffective January 1, 2028
    See penalty termsEffective
  • Washington Fabricated Intimate Images (2024)

    Criminalizes creation and distribution of AI-generated intimate images without consent. Provides civil remedies for v...

    WAAI-SpecificMedium riskIn Effect
    Criminal penalties PRAEffective
  • Washington Election Deepfake Disclosure (SB 6280)

    Requires clear and conspicuous disclosure when AI-generated or AI-manipulated media is used in political advertising...

    WAAI-SpecificMedium riskIn Effect
    See penalty termsEffective
  • Washington Forged Digital Likenesses (HB 2459)

    Extends Washington's existing forgery and identity theft statutes to cover AI-generated digital likenesses used for f...

    WAAI-SpecificMedium riskIn Effect
    Criminal penaltiesEffective

Federal(10 tracked)

  • EEOC Guidance on AI in Employment Selection

    NON-BINDING TECHNICAL ASSISTANCE applying existing Title VII law to AI use cases. Not voted on or approved by the ful...

    EEOCFederalHigh riskIn Effect
    See penalty termsEffective
  • FTC Enforcement Policy on AI and Algorithmic Fairness

    COMPOSITE ENFORCEMENT POSTURE, not a single regulation. The FTC applies existing laws (FTC Act Section 5, COPPA, ECOA...

    FTCFederalHigh riskIn Effect
    $50,120/violationEffective
  • TAKE IT DOWN Act (S. 146)

    Requires covered online platforms to remove reported nonconsensual intimate imagery, including AI-generated deepfakes...

    FederalFederalHigh riskIn Effect
    $53,088/violationEffective
  • DOJ AI Litigation Task Force

    Coordinates federal civil litigation strategy on AI-related matters across the Department of Justice. Executive order...

    DOJFederalMedium riskIn Effect
    See penalty termsEffective
  • FDA AI/ML Medical Device Framework

    FDA requires pre-market review (510(k), De Novo, PMA) for AI/ML-based software that meets the definition of a medical...

    FDAFederal guidanceMedium riskIn Effect
    See penalty termsEffective
  • HUD AI Guidance in Housing

    Fair Housing Act disparate impact standard applies to AI-driven tenant screening, lending algorithms, and property va...

    HUDFederal guidanceMedium riskIn Effect
    See penalty terms PRAEffective
  • NIST AI Risk Management Framework (AI RMF 1.0)

    NIST AI RMF is a voluntary framework used as a practical benchmark by regulators and lawmakers. NIST released AI RMF...

    NISTFrameworkMedium riskIn Effect
    See penalty termsEffective
  • SEC AI Guidance in Financial Services

    SEC enforces existing fiduciary duties and disclosure requirements as applied to AI. Pursuing AI washing enforcement...

    SECFederal guidanceMedium riskIn Effect
    See penalty termsEffective
  • Executive Order 14110 on AI (Revoked)

    Established federal policy priorities for AI safety, security, and rights protections across agencies. Directed agenc...

    Executive BranchFederalLow riskIn Effect
    See penalty termsEffective
  • DOL AI in Workplace Guidance

    Non-binding principles for AI in the workplace covering transparency, human oversight, informed consent, data protect...

    DOLFederal guidanceLow riskIn Effect
    See penalty termsEffective

Find which regulations apply to you.

Start your free scan

Free. No account required.

or

Get monthly regulatory updates