SF710 (Legislative Session 94 (2025-2026))

Public postsecondary institutions requirement to keep certain student information private establishment; consent requirement before collecting student location data

AI Generated Summary

The legislative bill SF No 710, introduced in the Minnesota Senate, focuses on the privacy of student data at public postsecondary institutions. Key points of the bill include:

  1. Privacy of Personal Information: It prohibits educational institutions from designating personal contact information like home addresses, telephone numbers, email addresses, or identification card photos as publicly accessible "directory information".

  2. Consent for Collecting Location Data: Colleges cannot collect data on a student's location without the student’s explicit consent, and they cannot make such consent a condition for enrollment, financial aid, or other basic university services. Students can withdraw their consent at any time.

  3. Notification Requirements: Institutions must annually inform students about any contracts with technology providers that involve collecting location data. This notice must be in plain language, specify the data being collected, and clarify the consent process.

  4. Contract Transparency: Institutions must publish the full contract with technology providers on their website for the duration of the contract, covering what data is collected and how it is used.

  5. Data Control and Security: Technology providers must treat location data they handle as belonging to the institution, not as their own property. They must delete or return all such data when the contract ends, and they are not allowed to sell or use this data for commercial purposes, such as advertising.

  6. Security Breach Protocols: In case of a data breach, technology providers must promptly inform the institution about the breach and what data was involved.

Overall, the bill aims to strengthen the control that students and educational institutions have over personal and location data, enhancing privacy protections and setting clear guidelines on the handling and use of such data.

Bill text versions

Actions

DateChamberWhereTypeNameCommittee Name
January 26, 2025SenateFloorActionIntroduction and first reading
January 26, 2025SenateFloorActionReferred toHigher Education

Citations

 
[
  {
    "analysis": {
      "added": [
        "Allows sharing of personal student contact information for transition planning and services."
      ],
      "removed": [
        "No previously existing provisions are removed."
      ],
      "summary": "The bill addresses the sharing of student contact information for students served in special education programs under section 125A.08.",
      "modified": [
        "Clarifies requirements for sharing information with the Department of Employment and Economic Development."
      ]
    },
    "citation": "125A.08"
  },
  {
    "analysis": {
      "added": [
        "Includes provisions for sharing information to coordinate services."
      ],
      "removed": [
        "No previously existing provisions are removed."
      ],
      "summary": "The bill references section 125A.023 regarding coordination of services for students with disabilities.",
      "modified": [
        "Aligns with other sections for coordinated service efforts."
      ]
    },
    "citation": "125A.023"
  },
  {
    "analysis": {
      "added": [
        "Ensures personal contact information can be shared for effective service delivery."
      ],
      "removed": [
        "No previously existing provisions are removed."
      ],
      "summary": "Section 125A.027 is referenced in relation to service coordination for students with disabilities.",
      "modified": [
        "Facilitates information sharing with relevant departments."
      ]
    },
    "citation": "125A.027"
  },
  {
    "analysis": {
      "added": [
        "Technology providers must report security breaches to postsecondary institutions."
      ],
      "removed": [
        "No previously existing provisions are removed."
      ],
      "summary": "Section 13.055 is referenced regarding breach notification requirements.",
      "modified": [
        "Obligates providers to disclose breach details under this section."
      ]
    },
    "citation": "13.055"
  },
  {
    "analysis": {
      "added": [
        "Assigns responsibilities to providers for maintaining data privacy."
      ],
      "removed": [
        "No previously existing provisions are removed."
      ],
      "summary": "Section 13.05, subdivision 11, is referenced concerning data privacy procedures for technology providers.",
      "modified": [
        "Details safeguarding procedures for location data of students."
      ]
    },
    "citation": "13.05 subdivision 11"
  }
]