Intesa Sanpaolo Vita S.p.a.

€20,000

Non-compliance with general data processing principles

Data della decisione

7 luglio 2022

Autorità

Italian Data Protection Authority (Garante)

IT

Settore

Finance, Insurance and Consulting

Paese

IT

Legge

GDPR

Stato

FINAL

Descrizione

The Italian DPA has fined Intesa Sanpaolo Vita S.p.a. EUR 20,000. The data subject, who had taken out a life insurance policy with the controller, had filed a complaint with the DPA against the controller for the unauthorized disclosure of their personal data. In the course of its investigation, the DPA found that the controller had disclosed personal data, such as first name, last name and information about the policy, to third parties without authorization. The unauthorized disclosure had occurred due to an employee's error.

Citazioni legali

Art. 5 (1)

Problemi e violazioni

Non-compliance with general data processing principles

Rimanete aggiornati sull'applicazione della privacy

Rispettiamo la vostra privacy. Un'email al mese, niente spam, cancellazione in qualsiasi momento.