Committee

€2,500

Insufficient technical and organisational measures to ensure information security

تاريخ القرار

24 أبريل 2024

الهيئة

Polish National Personal Data Protection Office (UODO)

PL

القطاع

Individuals and Private Associations

البلد

PL

القانون

GDPR

الحالة

FINAL

الوصف

The Polish DPA has imposed a fine of EUR 2,500 on a committee. The controller had collected signatures in favor of a legislative initiative and later stored the signature lists unprotected in a church, which led to the sensitive data of the signatories not being sufficiently protected against loss, disclosure etc. During its investigation, the DPA found that the controller had failed to take appropriate technical and organizational measures to protect personal data.

الاستشهادات القانونية

Art. 5 (1)Art. 5 (2)Art. 25 (1)Art. 32 (1)

القضايا والانتهاكات

Insufficient technical and organisational measures to ensure information security

ابق على اطلاع على آخر المستجدات بشأن إنفاذ الخصوصية

نحن نحترم خصوصيتك. بريد إلكتروني واحد في الشهر، لا رسائل غير مرغوب فيها، يمكنك إلغاء الاشتراك في أي وقت.