Merchant

€10,000

Non-compliance with general data processing principles

Datum rozhodnutí

17. září 2019

Úřad

Belgian Data Protection Authority (APD)

BE

Sektor

Industry and Commerce

Země

BE

Právo

GDPR

Stav

FINAL

Popis

The Belgian data protection authority has imposed a fine of 10,000 euros on a merchant who wanted to use an electronic identity card (eID) to create a customer card. The DPA's investigation revealed that the merchant required access to personal data located on the eID, including the photo and barcode which is linked to the data subject's identification number. In the meantime, the decision of the data protection authority has been annulled by a court: link

Právní citace

Art. 5 (1)

Problémy a porušení

Non-compliance with general data processing principles

Aktualizujte informace o prosazování ochrany osobních údajů

Respektujeme vaše soukromí. Jeden e-mail měsíčně, žádný spam, kdykoli se můžete odhlásit.