Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA)
The Rhode Island Data Transparency and Privacy Protection Act (H 6096), signed into law in June 2024 and effective January 1, 2026, establishes consumer data privacy rights for Rhode Island residents. It applies to controllers conducting business in Rhode Island that process personal data of 35,000+ consumers, or 10,000+ consumers while deriving 20%+ revenue from data sales. Follows the Connecticut/Virginia model with universal opt-out mechanism requirements.
Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA) is a compliance framework from United States — Rhode Island with 11 domains and 26 controls that map to 178 other frameworks. The largest domains are RIDTPPA: Controller Duties and Processor Contracts (5 controls), RIDTPPA: Consumer Rights and Opt-Outs (4 controls), RIDTPPA: Scope, Definitions and Effective Date (4 controls). Every control below carries what it requires and what an assessor expects to see.
Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.
Framework Domains (11)
Consumer Rights
| Code | Title |
|---|---|
| RIDTPPA-2 | Consumer Rights (Access, Correction, Deletion, Portability, Opt-Out) |
DPIA
| Code | Title |
|---|---|
| RIDTPPA-6 | Data Protection Impact Assessment |
Enforcement
| Code | Title |
|---|---|
| RIDTPPA-7 | Enforcement and Penalties |
Privacy Notice Requirements
RIDTPPA: Consumer Rights and Opt-Outs
| Code | Title |
|---|---|
| RIDTPPA-03 | Consumer Rights |
| RIDTPPA-06 | Opt-Out of Targeted Advertising |
| RIDTPPA-07 | Opt-Out of Sale of Personal Data |
| RIDTPPA-15 | Verification of Consumer Requests |
RIDTPPA: Controller Duties and Processor Contracts
| Code | Title |
|---|---|
| RIDTPPA-10 | Controller and Processor Contracts |
| RIDTPPA-11 | Data Minimisation and Purpose Limitation |
| RIDTPPA-12 | Security Safeguards |
| RIDTPPA-13 | Non-Discrimination |
| RIDTPPA-16 | Recordkeeping |
RIDTPPA: Enforcement
| Code | Title |
|---|---|
| RIDTPPA-17 | Enforcement by the Attorney General |
RIDTPPA: Notice and Third-Party Disclosure
| Code | Title |
|---|---|
| RIDTPPA-04 | Customer Information Disclosure Requirement |
| RIDTPPA-05 | Privacy Notice Requirements |
| RIDTPPA-14 | Disclosure of Third Parties to Whom Data Is Sold |
RIDTPPA: Scope, Definitions and Effective Date
| Code | Title |
|---|---|
| RIDTPPA-01 | Applicability and Thresholds |
| RIDTPPA-18 | Effective Date and Transition |
| RIDTPPA-19 | Interplay with Other Privacy Laws |
RIDTPPA: Sensitive Data and Assessments
| Code | Title |
|---|---|
| RIDTPPA-08 | Sensitive Data Consent |
| RIDTPPA-09 | Data Protection Assessment |
Scope
| Code | Title |
|---|---|
| RIDTPPA-1 | Scope, Applicability, Definitions |
Your Compliance Coverage
If you comply with Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA), you already cover:
FTC GLBA Safeguards Rule (16 CFR Part 314)
12%
3 controls mapped
Compare →Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018)
12%
3 controls mapped
Compare →Albania Law on Protection of Personal Data (Law No. 9887, 2008, amended 2014)
12%
3 controls mapped
Compare →+ 175 more: Switzerland New Federal Act on Data Protection (nFADP/nDSG, 2023) (12%), Barbados Data Protection Act 2019 (12%)
See all 178 mapped frameworks ↓Maps to 178 other frameworks
What is Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA) and who does it apply to?
Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA) is a compliance framework from United States — Rhode Island with 11 domains and 26 controls. The Rhode Island Data Transparency and Privacy Protection Act (H 6096), signed into law in June 2024 and effective January 1, 2026, establishes consumer data privacy rights for Rhode Island residents. It applies to controllers conducting business in Rhode Island that process personal data of 35,000+ consumers, or 10,000+ consumers while deriving 20%+ revenue from data sales. Follows the Connecticut/Virginia model with universal opt-out mechanism requirements. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.
What does Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA) actually require?
Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA) has 26 controls organised across 11 domains. The largest domains are RIDTPPA: Controller Duties and Processor Contracts (5 controls), RIDTPPA: Consumer Rights and Opt-Outs (4 controls), RIDTPPA: Scope, Definitions and Effective Date (4 controls). Each control defines specific requirements that organisations must implement to achieve compliance.
If I already comply with another framework, how much of Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA) do I already cover?
Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA) maps to 178 other compliance frameworks. The top mapping partners are FTC GLBA Safeguards Rule (16 CFR Part 314) (12% coverage), Austria Data Protection Act (Datenschutzgesetz, DSG, amended 2018) (12% coverage), Albania Law on Protection of Personal Data (Law No. 9887, 2008, amended 2014) (12% coverage). Use our comparison tool to explore control-level mappings between frameworks.
How do I implement Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA)?
Start your Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA) compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about Rhode Island Data Transparency and Privacy Protection Act (RIDTPPA) requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 26 controls and track your progress.
Start Your Compliance Journey
Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 686 frameworks.
Get Started Free →Free forever — no credit card required