Five U.S. state privacy regulators took a momentary break from their many active investigations to provide updates about their expectations for regulated organizations during recent conferences. They discussed raised expectations for privacy policies, how companies respond to inquiries and tips for navigating investigations, including some recommended wording for responses. Regulators from Connecticut, Colorado, California and Oregon spoke at the IAPP Global Privacy Summit, and a Maryland Assistant AG spoke at the Privacy + Security Forum. This article distills their comments and suggestions. See “Connecticut AG’s Report Reveals Privacy Enforcers Reaching Deeper Into Their State Laws” (Apr. 30, 2025).