Azienda Sanitaria Locale TO4
€8,400
Non-compliance with general data processing principles
Date de décision
23 mai 2024
Autorité
Italian Data Protection Authority (Garante)
IT
Secteur
Health Care
Pays
IT
Droit
GDPRStatut
FINALDescription
The Italian DPA has imposed a fine of EUR 8,400 on Azienda Sanitaria Locale TO4. The controller had sent an email containing information on medical treatment plans to several pacients in an open distribution list. This allowed the recipients to view the email addresses of all other recipients, 44 in total.
Citations légales
Art. 5 (1)Art. 9
Questions et violations
Non-compliance with general data processing principles