PrivacySignal
News

The Intersection of MoCRA and Data Privacy

The National Law Review · · International · Privacy Law

The Modernization of Cosmetics Regulation Act (MoCRA) and data privacy law are intersecting in ways that affect how cosmetics companies collect, use, and protect consumer information. The overlap creates compliance considerations for businesses operating under both regulatory frameworks.

Why this matters: Cosmetics companies collect a lot of personal data. Skin concerns, health conditions, photos, purchase habits. MoCRA gave the FDA new authority over cosmetics safety, but it also means companies are gathering more detailed consumer information to meet reporting and labeling requirements. When health-adjacent data meets weak privacy rules, consumers can end up exposed in ways they did not expect. If you buy skincare products, the data trail is longer than you think.

Who should care: General readers · Privacy officers · Policy

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Related stories

News
Inside Privacy (Covington) · · International

California Legislature Passes CIPA Pen Register Reform Bill and Sends It to Governor

On August 28, 2026, the California Legislature passed SB 690, a significant bill aimed at curbing the flood of demand letters and lawsuits asserting “pen register” claims under the California Invasion of Privacy Act (“CIPA”). If enacted, the bill would eliminate the private right of action for website-based pen register claims and could affect many... Continue Reading…

Who should care: General readers · Privacy officers · Policy