Piraeus Bank

€210,000

Non-compliance with general data processing principles

決定日

2023年6月12日

権威

Hellenic Data Protection Authority (HDPA)

GR

セクター

Finance, Insurance and Consulting

国名

GR

法律

GDPR

ステータス

FINAL

説明

The Hellenic DPA has imposed a fine of EUR 210,000 on Piraeus Bank. During its investigation, the DPA found that the bank had processed personal data of customers in violation of the principle of lawfulness. In addition, the DPA found that the bank had processed personal data without taking appropriate and effective technical and organizational measures to process only the data necessary for the specific purpose. Finally, the DPA found that the bank had failed to properly comply with a data subject's request for access to their personal data.

法的引用

Art. 5 (1)Art. 6Art. 15 (1)Art. 25 (1)

問題と違反

Non-compliance with general data processing principles

プライバシー保護に関する最新情報

あなたのプライバシーを尊重します。メール配信は月1回、迷惑メールはありません。