СледваСледващо ръководство
GDPR и автоматизирано вземане на решения
общество
РЪКОВОДСТВО за обществото
The California Privacy Protection Agency's automated decisionmaking technology (ADMT) regulations cover businesses that use technology to replace or substantially replace human decision-making in significant decisions about consumers.
Those businesses must give a pre-use notice, offer an opt-out or a human appeal, and answer access requests about how the technology was used. The rules sit under the California Consumer Privacy Act and were finalized in 2025, making California one of the first US jurisdictions with detailed rules for algorithmic decisions in hiring, lending, housing, education and healthcare.
The CCPA, as amended by the California Privacy Rights Act, directed the California Privacy Protection Agency (CPPA) to write rules on automated decisionmaking, risk assessments and cybersecurity audits. The CPPA board adopted the final package in July 2025; it was approved in September 2025 and took effect January 1, 2026, with later compliance dates for several duties. What counts as ADMT: technology that processes personal information and uses computation to replace, or substantially replace, human decision-making. "Substantially replace" means using the output to make a decision without meaningful human involvement. To count, a human reviewer must know how to interpret the output, actually review it alongside other relevant information, and have authority to change the decision. The final rules are narrower than earlier drafts, dropping behavioral advertising and some forms of extensive profiling from the ADMT obligations. Significant decisions: the ADMT duties apply to decisions that result in providing or denying financial or lending services, housing, education enrollment or opportunities, employment or contracting opportunities or compensation, or healthcare services. Consumer rights: Before use, businesses must give a pre-use notice describing the purpose, the rights to opt out and to access information, and how the ADMT works. Consumers can opt out unless an exception applies. The main exception is offering an appeal to a qualified human reviewer; narrower ones cover certain admission, hiring and work-allocation uses where the tool works as intended and does not discriminate. Access requests entitle consumers to information about the logic and the output. Businesses using ADMT for significant decisions must comply by January 1, 2027. Risk assessments: these apply more broadly, for example to selling or sharing personal information and processing sensitive data. Existing processing must be assessed by the end of 2027, with summaries submitted to the CPPA starting in 2028. A common misconception is that any use of AI triggers these rules. What matters is whether the tool replaces human judgment in a significant decision.
Катастрофалните и ежедневните вреди от ИИ зависят от това кой разбира рисковете и кой може да действа.
Обществената и професионалната грамотност определя дали силната политика за безопасност е политически възможна.
Ясните обяснения намаляват улавянето от шум, лабораторен PR и неясен етичен театър.
The practical questions are about enforcement: how strictly the CPPA reads "substantially replace", and which industries it examines first. Other states have passed or proposed their own laws on algorithmic decisions, and some are more stringent. Companies with national operations may therefore standardize on the strictest common practices. Further changes to the rules, and interaction with any federal AI legislation, remain possible. Businesses should treat the current compliance dates as fixed while keeping an eye on updates.
An employer uses software that automatically rejects job applicants below a score cutoff, with no human review. Before using it, the employer must give applicants a pre-use notice explaining the tool and their rights.
A staffing platform uses a model to decide which contractors are offered assignments. Instead of an opt-out, it can offer an appeal to a qualified human reviewer who has authority to overturn the decision.
A for-profit online education company uses an algorithm to screen applicants to its programs. It must document a risk assessment weighing the processing's privacy risks against its benefits.
A consumer denied an apartment asks the landlord's screening company for information. The company must explain the logic of its ADMT and how the output was used in the decision.
Третирането на екзистенциалния риск като научна фантастика, докато способностите се смесват.
Объркваща безопасност на повърхностния продукт с подравняване при висока автономност.
Оставяйки неанглийската и неекспертната публика само с източници с ниско качество.
Отделете рисковете от увреждане на продукта, неправилна употреба и загуба на контрол/неправилно подравняване.
Попитайте кои доказателства биха променили мнението ви за сроковете и тежестта.
Предпочитайте първичните източници и конкретните оценки пред маркетинговите твърдения.
Определете един път на действие: кариера, политика, финансиране или умения - не само информираност.
Free newsletter
Three verified AI stories every weekday morning, written in plain English. Free forever, no ads.
One email each weekday. Unsubscribe in one click. We never sell or share your address.
Test yourself
Instant feedback on every answer, and a shareable certificate with a verifiable ID once you pass a course.
Support free AI education. AI Understanding is a 501(c)(3) nonprofit — no ads, no paywall, ever. Make a donation
The California Privacy Protection Agency's automated decisionmaking technology (ADMT) regulations cover businesses that use technology to replace or substantially replace human decision-making in significant decisions about consumers. Those businesses must give a pre-use notice, offer an opt-out or a human appeal, and answer access requests about how the technology was used. The rules sit under the California Consumer Privacy Act and were finalized in 2025, making California one of the first US jurisdictions with detailed rules for algorithmic decisions in hiring, lending, housing, education and healthcare.
The definition turns on replacing or substantially replacing human decision-making, not on whether the technology counts as AI.
Significant decisions cover financial or lending services, housing, education, employment and healthcare. Recommendations and advertising are not on the list.
The standard requires real understanding, actual review, and authority to change the outcome. A rubber stamp does not qualify.
The regulations took effect January 1, 2026, and the ADMT duties apply from January 1, 2027.
A human appeal with real authority can replace the opt-out. Narrower exceptions exist for some admission, hiring and work-allocation uses.
Продължавай да учиш
Още ръководства, избрани за тази тема
СледваСледващо ръководство
GDPR и автоматизирано вземане на решения
общество