NATIONAL BANK OF GREECE S.A.

€20,000

Insufficient fulfilment of information obligations

Дата на решението

3 октомври 2022 г.

Орган

Hellenic Data Protection Authority (HDPA)

GR

Сектор

Finance, Insurance and Consulting

Държава

GR

Право

GDPR

Статус

FINAL

Описание

The Hellenic DPA has imposed a fine of EUR 20,000 on NATIONAL BANK OF GREECE S.A.. In the context of the use of certain debit/credit cards, information of the last 10 transactions were stored on the chip of the card without the customers' explicit consent. This information could be read out later. The DPA found that the bank had failed to inform affected customers about this storage of transaction information and therefore violated Art. 13 GDPR.

Правни цитати

Art. 13

Въпроси и нарушения

Insufficient fulfilment of information obligations

Бъдете информирани за прилагането на поверителността

Уважаваме поверителността ви. Един имейл на месец, без спам, отпишете се по всяко време.