Debt collector

€1,560

Non-compliance with general data processing principles

결정 날짜

2019년 2월 20일

권한

Hungarian National Authority for Data Protection and the Freedom of Information (NAIH)

HU

섹터

Finance, Insurance and Consulting

국가

HU

법률

GDPR

상태

FINAL

설명

A data subject requested information about and erasure of the data processed, which the debt collector refused stating that it could not identify the subject. For identification purposes he requested place of birth, mother’s maiden name and further details from the data subject. After the controller succeeded to identify the data subjects he refused to comply with the deletion request, arguing he is legally obliged to retain backup copies according to the Accountancy Act and internal policies. Since he did not properly inform about these policies, the NAIH held the controller breached the principle of transparency. The fine constitutes 0.0025% of the annual profit of the controller.

법적 인용

Art. 5 (1)Art. 5 (1)

문제 및 위반 사항

Non-compliance with general data processing principles

개인정보 보호 정책 시행에 대한 최신 정보

당사는 사용자의 개인정보를 존중합니다. 한 달에 한 번, 스팸 없이, 언제든지 구독을 취소할 수 있습니다.