- Current statutory text as reflected in CPPA materials.
References and citations
- Rulemaking and effective date updates.
- Official California FAQ.
- Official California regulations hub.
Track the California privacy workstreams that changed under CPRA and the 2026 rules.
Grounded in the California statute, CPPA regulations, and the 2026 California rule changes.
Structured answer sets in this page tree.
Cited legal and guidance references.
The CPRA checklist should tell the team which tasks belong to every in scope business and which tasks depend on sale, sharing, SPI, or high risk processing triggers.
Every in scope business still needs current notices, request methods, request logging, and vendor paper that matches California categories and rights.
The next layer covers sensitive personal information, right to limit, sharing, and the newer contract and due diligence expectations.
The final layer is the California rules effective January 1, 2026. Not every business will trigger them immediately, but the programme should know whether the business is on that path.
Assessment Autopilot can take California CPRA Checklist from turning this checklist into an operational workflow to a reusable workflow inside Sorena. Teams working on California CPRA can keep owners, evidence, and next steps aligned without copying this guide into separate documents.
Start from California CPRA Checklist and turn the guidance into owned tasks, evidence requests, and review checkpoints.
Review your current process, evidence gaps, and next steps for California CPRA Checklist.