Health insurance provider
€1,200
Non-compliance with general data processing principles
Decision Date
September 25, 2022
Authority
Hungarian National Authority for Data Protection and the Freedom of Information (NAIH)
HU
Sector
Health Care
Country
HU
Law
GDPRStatus
FINALDescription
The Hungarian DPA has imposed a fine of EUR 1,200 on a health insurance provider. The insurer had published the result of a Covid-19 test of the data subject on its website. This would have allowed unauthorized persons to access the personal data of the data subject. In addition, the insurer had not adequately cooperated with the agency during the DPA's investigation.
Legal Citations
Art. 5 (1)Art. 5 (2)Art. 12 (3)Art. 31
Issues & Violations
Non-compliance with general data processing principles