PIRAEUS BANK S.A.

€20,000

Insufficient fulfilment of information obligations

Fecha de la decisión

3 de octubre de 2022

Autoridad

Hellenic Data Protection Authority (HDPA)

GR

Sector

Finance, Insurance and Consulting

País

GR

Ley

GDPR

Estado

FINAL

Descripción

The Hellenic DPA has imposed a fine of EUR 20,000 on PIRAEUS BANK S.A.. In the context of the use of certain debit/credit cards, information of the last 10 transactions were stored on the chip of the card without the customers' explicit consent. This information could be read out later. The DPA found that the bank had failed to inform affected customers about this storage of transaction information and therefore violated Art. 13 GDPR.

Citas legales

Art. 13

Problemas e infracciones

Insufficient fulfilment of information obligations

Manténgase al día sobre la aplicación de las normas de protección de la intimidad

Respetamos su intimidad. Un correo electrónico al mes, sin spam, darse de baja en cualquier momento.