Azienda Sanitaria Locale Roma

€46,000

Insufficient legal basis for data processing

Sprendimo priėmimo data

2022 m. gegužės 26 d.

Institucija

Italian Data Protection Authority (Garante)

IT

Sektorius

Health Care

Šalis

IT

Teisė

GDPR

Statusas

FINAL

Aprašymas

The Italian DPA has fined Azienda Sanitaria Locale Roma EUR 46,000. The healthcare facility had published the names and health information of 1337 patients on its website. In most cases, this involved the health records of the data subjects, including medical documents, disability assessments, tests, technical reports, etc.... In this context, the DPA found that the healthcare institution had processed the data unlawfully as well as violated principle of data minimization.

Teisinės citatos

Art. 5 (1)Art. 6 (1)Art. 6 (2)Art. 9 (1)Art. 2Art. 2

Problemos ir pažeidimai

Insufficient legal basis for data processing

Gaukite naujausią informaciją apie privatumo vykdymo užtikrinimą

Gerbiame jūsų privatumą. Vienas el. laiškas per mėnesį, jokių šlamšto, atsisakykite prenumeratos bet kada.