Dentist

€1,000

Insufficient legal basis for data processing

Sprendimo priėmimo data

2023 m. sausio 31 d.

Institucija

Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)

RO

Sektorius

Health Care

Šalis

IT

Teisė

GDPR

Statusas

FINAL

Aprašymas

The Romanian DPA has fined a dentist EUR 1,000. The controller had published medical information of a patient, such as photos and X-rays, in an article on a medical blog. However, it had failed to obtain the patient's consent before publishing the medical data. Therefore, the DPA found that the controller had unlawfully processed the data.

Teisinės citatos

Art. 6 (1)Art. 9 (2)

Problemos ir pažeidimai

Insufficient legal basis for data processing

Gaukite naujausią informaciją apie privatumo vykdymo užtikrinimą

Gerbiame jūsų privatumą. Vienas el. laiškas per mėnesį, jokių šlamšto, atsisakykite prenumeratos bet kada.