Owner of a Pharmacy Office

€6,600

Non-compliance with general data processing principles

決定日

2025年5月9日

権威

Spanish Data Protection Authority (aepd)

ES

セクター

Health Care

国名

ES

法律

GDPR

ステータス

FINAL

説明

The Spanish DPA has imposed a fine on the owner of a pharmacy office. The controller processed data of residents of two geriatric centers without a sufficient legal basis. The controller also failed to inform the data subjects about the fact, that the controller processed their data and that they obtained the data from a third party. Lastly, the controller failed to use encrypted email services. The original fine of EUR 11,000 was reduced to EUR 6,600 due to immediate payment and admission of responsibility by the controller.

法的引用

Art. 6 (1)Art. 14Art. 32

問題と違反

Non-compliance with general data processing principles

プライバシー保護に関する最新情報

あなたのプライバシーを尊重します。メール配信は月1回、迷惑メールはありません。