NATIONAL BANK OF GREECE S.A.

€20,000

Insufficient fulfilment of information obligations

Datum der Entscheidung

3. Oktober 2022

Behörde

Hellenic Data Protection Authority (HDPA)

GR

Sektor

Finance, Insurance and Consulting

Land

GR

Recht

GDPR

Status

FINAL

Beschreibung

The Hellenic DPA has imposed a fine of EUR 20,000 on NATIONAL BANK OF GREECE S.A.. In the context of the use of certain debit/credit cards, information of the last 10 transactions were stored on the chip of the card without the customers' explicit consent. This information could be read out later. The DPA found that the bank had failed to inform affected customers about this storage of transaction information and therefore violated Art. 13 GDPR.

Juristische Zitate

Art. 13

Probleme und Verstöße

Insufficient fulfilment of information obligations

Bleiben Sie auf dem Laufenden über die Durchsetzung des Datenschutzes

Wir respektieren Ihre Privatsphäre. Eine E-Mail pro Monat, kein Spam, jederzeit abbestellbar.