---
title: "State AGs to Businesses: Protect your Customers from Criminal Activity"
date: 2023-03-24T11:09:34-04:00
author: Import Bot
canonical_url: "https://www.kelleydrye.com/viewpoints/blogs/ad-law-access/state-ags-to-businesses-protect-your-customers-from-criminal-activity"
section: Blog Posts
---
# State AGs to Businesses: Protect your Customers from Criminal Activity

  March 24, 2023

 

 

 

 

 

 

This week, 22 State AGs led by Wisconsin, sent Hyundai and Kia a [letter](https://www.doj.state.wi.us/sites/default/files/news-media/AG%20Letter%20to%20Hyundia%20and%20Kia%20final.pdf) criticizing the companies’ lack of anti-theft immobilizers and use of a customer service campaign instead of a recall to address the problem. The letter blames the car makers for ​“lack of responsibility for the crisis” of car thefts with ​“alarmingly high rates of thefts” saying they are harming consumers and affecting public safety. Vehicle owners, the letter states, may be unable to insure their automobiles as insurance companies State Farm and Progressive have announced they have denied policies. The companies made the choice not to follow suit regarding industry practice to include the anti-theft devices as standard in the US, yet included the immobilizers in Canada and Europe. (It should be noted that [Canada](https://www.cbc.ca/news/canada/anti-theft-device-now-mandatory-in-canadian-made-vehicles-1.677141#:~:text=New%20cars%2C%20vans%2C%20light%20trucks,immobilizers%2C%20Transport%20Canada%20has%20decided.) and [EU](https://onlinelibrary.wiley.com/doi/abs/10.1111/ecoj.12196?utm_source=npr_newsletter&utm_medium=email&utm_content=20220819&utm_term=7132032&utm_campaign=money&utm_id=42160537&orgid=650&utm_att1=) transportation agencies appear to require these by law, and NHTSA [does not](https://www.nhtsa.gov/road-safety/vehicle-theft-prevention)).

This is not the first time State AGs have been looking to cover ground of federal transportation regulators. Last September, we described [the letter from 38 AGs](https://www.adlawaccess.com/2022/09/articles/state-ags-dot-needs-an-on-time-departure/) urging Congress to provide additional authority with airlines. Not only are the states treading regulated ground here, but also they are demonstrating again their willingness to hold third parties responsible for fraud or crime that occurs using those third parties’ goods or services.

State AGs have often argued that companies should be responsible for: 1) failing to implement safeguards to protect consumers using their goods or services, 2) failing to disclose security flaws, or 3) misrepresenting safety features, all of which they argue cause consumers to be vulnerable to scams. We have seen AGs take enforcement action against or work with companies to address concerns with [robocalls](https://ncdoj.gov/attorney-general-josh-stein-leads-new-nationwide-anti-robocall-litigation-task-force/), [mobile cramming](https://www.marylandattorneygeneral.gov/press/2014/121914.pdf), [gift card fraud](https://www.attorneygeneral.gov/taking-action/attorney-general-josh-shapiro-announces-nationwide-gift-card-policy-changes-from-walmart-target-and-best-buy-to-protect-consumers-from-scams/), [money](https://www.texasattorneygeneral.gov/news/releases/attorney-general-ken-paxton-announces-agreement-protect-consumers-reform-privacy-and-security) [transfers](https://ag.ny.gov/press-release/2022/attorney-general-james-and-consumer-financial-protection-bureau-sue-major), and more. This same underlying policy position is how AGs combat [data](https://www.adlawaccess.com/2022/06/articles/carnival-cruise-brings-multistate-data-breach-into-port/) [breaches](https://www.adlawaccess.com/2023/03/articles/dna-diagnostics-center-settles-data-breach-with-ohio-and-pennsylvania-attorneys-general/) and data security issues, routinely focusing on companies that were victims of a third-party attack and alleging UDAP and other privacy law violations related to their data security practices.

Companies need to take a close look at what they represent to consumers about the safety and security of their products, and should remember not to put their heads in the sand if they see fraud or crime happening using their goods or services. AGs likely expect businesses to take action against such fraud through measures including:

- Fraud or crime detection programs

Internal policies to prevent fraudClear policies to customers regarding responsibility for third-party actionsDisclosures or consumer alerts to customers to help make them aware of potential for crime While these measures can help keep you off AG radar, if the amount of fraud or crime is overwhelming, AGs may suspect something inherently flawed in your products or services. Be prepared to respond with information about all actions taken to mitigate potential consumer harm.

 

 

 - Share this entry 
    - 
    - 
    - 
    -
- [  View entry pdf ](https://s3.amazonaws.com/cdn.kelleydrye.com/content/uploads/pdf-snapshots/state-ags-to-businesses-protect-your-customers-from-criminal-activity-20230914223353.pdf)
 
 

### Search Blog

  

### Subscribe

  

### Explore Topics

- [State Attorneys General](https://www.kelleydrye.com/viewpoints/blogs/ad-law-access/state-attorneys-general)
 
 

### Related Services

- [Advertising and Marketing](https://www.kelleydrye.com/practices/advertising-and-marketing)
