Loop + Ledger Signal States North Carolina
Signal · North Carolina Live

What does North Carolina require right now?

The current bills, deadlines, enforcement patterns, and what your district should actually be doing about it · curated by Loop + Ledger.

Active Legislation Updated Aug 04, 2026 Source ncleg.gov
Laws tracked
1
In this state
Enacted
1
On the books
In motion
0
Actively moving
On the books
What's the law in North Carolina?
Enacted
NC DPI Policy (Effective Jan 1, 2024)
State-level policy requirement functioning as regulatory standard for K-12 vendors in North Carolina. PSUs report third-party integrations to DPI via an internal reporting form (no public-list requirement in the policy). Vendors must complete a Third Party Data Collection Reporting Worksheet covering data practices, security controls, and justification for requested data. Vendors undergo state security assessments including vulnerability scanning and must align with NIST Cybersecurity Frameworks. Most operationally detailed K-12 vendor cybersecurity requirement in any state.
In motion
What's active right now?
Nothing actively moving in North Carolina right now.
Book a working session
A 20-minute working session on North Carolina compliance.
We show up with the actual bill language, your high-risk vendor exposures, and what to do about it before the next deadline.
Book North Carolina session →
← Back to all 50 states