Dentist

€1,000

Insufficient legal basis for data processing

Tanggal Keputusan

31 Januari 2023

Wewenang

Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)

RO

Sektor

Health Care

Negara

IT

Hukum

GDPR

Status

FINAL

Deskripsi

The Romanian DPA has fined a dentist EUR 1,000. The controller had published medical information of a patient, such as photos and X-rays, in an article on a medical blog. However, it had failed to obtain the patient's consent before publishing the medical data. Therefore, the DPA found that the controller had unlawfully processed the data.

Kutipan Hukum

Art. 6 (1)Art. 9 (2)

Masalah & Pelanggaran

Insufficient legal basis for data processing

Tetap Terupdate tentang Penegakan Privasi

Kami menghormati privasi Anda. Satu email per bulan, tidak ada spam, berhenti berlangganan kapan saja.