On October 29, 2021, the Cyberspace Administration of China ("CAC") released for public comments a draft of the Measures for Security Assessment of Data Export ("Draft"). The Draft aims to refine and implement Article 37 of the Cybersecurity Law, Article 31 of the Data Security Law, Articles 36, 38, and 40 of the Personal Information Protection Law, and provisions of other laws related to data exports. Compared with previous draft rules and standards , the Draft reflects a strict position toward data export administration; for example, the Draft sets a lower data quantity threshold for government assessments, requiring enterprises to adhere to a combination of pre-assessments and continued supervision as well as a combination of risk self-assessments and security assessments, centralizing the authority of security assessments up to the level of the CAC.