TikTok's $400 million COPPA settlement is a wake-up call on cyber and D&O sub-limits
Summary
TikTok and ByteDance agreed to a $400 million settlement over COPPA violations, one of the largest such recoveries. The case underscores a surge in global privacy enforcement, with regulators issuing $542 million in fines in Q1 2026 alone. Cyber and management liability policies often cover defense costs fully but limit or exclude regulatory fines, creating a coverage gap between headline limits and actual penalties. Companies with prior regulatory contacts must also review retentions and prior‑knowledge exclusions, as these can trigger uncovered exposure. Brokers should use renewals to reassess sub‑limits, retentions, and exclusions to ensure adequate protection against nine‑figure enforcement actions.
(Source:Insurance Business)