Canada proposes privacy bill covering AI deepfakes and data deletion rights

Bill C-36 privacy law gives Canadians more control over personal data and deepfakes See how the proposed rules could reshape AI, delete requests, and company fines

The federal Liberal government has introduced Bill C36, a privacy law that would give Canadians the right to ask companies to delete their personal information, including AIgenerated deepfakes that use a person’s likeness, with some exceptions. Artificial Intelligence Minister Evan Solomon said the goal is to give people more control over their data and require companies to handle it more carefully. Officials said the law would apply to companies with a substantial connection to Canada and would include stricter rules for children’s data. The bill would also increase transparency around automated decisionmaking, such as systems used in mortgage approvals, by allowing Canadians to ask what information was used and request a review if the data was outdated. It would also create a new commission with power to investigate, recommend changes, and issue fines of up to $25 million or 5 per cent of global revenue.