New York 2025 Session Status: Introduced

S8169 — Requires all state entities to notify affected individuals in the event of a data breach where information is compromised

Last action — In Assembly Committee

  1. 1
    Introduced
  2. 2
    In Committee
  3. 3
    Passed Senate
  4. 4
    Passed Assembly
  5. 5
    To Executive
  6. 6
    Enacted

This bill has been introduced in the Senate. Introduced May 16, 2025. It must pass committee before a floor vote.

Next likely step: a committee referral and hearing.

Prognosis

Not enough signal yet

Where this bill stands today.

Odds of enactment

Low

How often bills like it became law.

Not enough signal yet to read this bill's trajectory — we surface a likelihood only once there's real movement (stage, sponsorship, committee, or votes) to point to.

Prognosis reads this bill's own signals — stage, sponsorship breadth, committee status, recorded votes and cross-state momentum. Odds come from a model trained on which bills have become law.

In plain language

The bill requires state entities to notify individuals about data breaches affecting their information.

State entities must inform individuals when their information has been compromised in a data breach. The bill also provides a definition for 'cybersecurity incident'.

What this means for you
  • Consumers: You will be notified if your personal information is compromised in a data breach by state entities.

Summary

Requires all state entities, including local governments, to notify affected individuals in the event of a data breach where information is compromised; defines "cybersecurity incident".

Bill Text

Action History

  1. REFERRED TO GOVERNMENTAL OPERATIONS

  2. DELIVERED TO ASSEMBLY

  3. PASSED SENATE

  4. ADVANCED TO THIRD READING

  5. 2ND REPORT CAL.

  6. 1ST REPORT CAL.1323

  7. REFERRED TO INTERNET AND TECHNOLOGY

  8. RETURNED TO SENATE

  9. DIED IN ASSEMBLY

  10. REFERRED TO GOVERNMENTAL OPERATIONS

  11. DELIVERED TO ASSEMBLY

  12. PASSED SENATE

  13. ORDERED TO THIRD READING CAL.1569

  14. COMMITTEE DISCHARGED AND COMMITTED TO RULES

  15. REPORTED AND COMMITTED TO FINANCE

  16. REFERRED TO INTERNET AND TECHNOLOGY

Sponsors

Sponsorship breakdown

Export CSV (upgrade) →

1 sponsors · 0 co-sponsors · 218 not signed on

Sponsors (1)

Co-sponsors (0)

None.

Not signed on (218)

218 members have not signed on to this bill.

Show all 218 →

"Not signed on" means a member has not sponsored or co-sponsored this bill — it does not imply opposition. Members flagged Voted No have a recorded No vote on this bill.

Whip count is in markup. Polling the chamber and every recorded vote this session. Only the first open is slow. It’s instant for you after this. Calling the roll · Tallying · Engrossing

Subjects

Cross-referencing the record. Reading this bill against every other bill in the corpus by meaning, not keywords. Only the first open is slow. It’s instant for you after this. Matching · Ranking · Engrossing

Frequently asked questions

What does S8169 do?
Requires all state entities, including local governments, to notify affected individuals in the event of a data breach where information is compromised; defines "cybersecurity incident".
Who sponsors S8169?
S8169 is sponsored by Siela Bynoe.
What is the current status of S8169?
This bill has been introduced in the Senate. Introduced May 16, 2025. It must pass committee before a floor vote.
Where can I track S8169?
Track S8169 free on One Click Politics — get push/email alerts when it moves.

Make your voice heard on S8169

Find the representatives who decide this bill and tell them where you stand — for yourself, or mobilize your whole list in one click with One Click Politics advocacy software.

Stay ahead of S8169

Last checked for changes 3 months ago · updated continuously

One Click Politics tracks every bill in Congress and all 50 states.

Track this bill →