France's data protection authority (CNIL) has imposed a €5 million fine on IQVIA OPERATIONS FRANCE after finding multiple GDPR and French Data Protection Act violations relating to two large health data warehouses containing...
The Dutch data protection authority, Autoriteit Persoonsgegevens, has imposed a fine of €100 million on the taxi app Yango. The reason was the unauthorized transfer of personal data belonging to European users to Russia. Although...
The French data protection authority CNIL has imposed a fine of €3.5 million on a French retail company. The reason was the unauthorised disclosure of personal customer data to a social network without a sufficient legal basis and...
In a case of non-cooperation, the Romanian data protection authority ANSPDCP imposed a fine of 2,000 euros on a dental clinic. The case began when the clinic itself reported a data breach to the authority.
A company received a data access request under GDPR Article 15. The data subject received a 15-page document labeled as a data privacy disclosure. At the same time the company confirmed that the data subject’s personal data...
France’s data protection authority (CNIL) has imposed significant fines totalling €42 million on Free Mobile (€27 million) and its parent company Free (€15 million) following a massive data breach that exposed millions of customers’ personal information...
The Spanish supervisory authority Agencia española protección datos (AEPD) imposed several fines on a pharmacy in Catalonia. The pharmacy had accessed the health data of nursing home residents without legal basis...
Hamburg sets a precedent for automated decisions. A company in Hamburg was fined ( 492,000 EURO ) for rejecting credit applications through fully automated algorithms without proper explanation or human review.