Yliopiston Apteekin

€1,100,000

Non-compliance with general data processing principles

Beslissingsdatum

27 mei 2025

Autoriteit

Deputy Data Protection Ombudsman

FI

Sector

Health Care

Land

FI

Wet

GDPR

Status

FINAL

Beschrijving

The Finish DPA has imposed a fine of EUR 1,100,000 on Yliopiston Apteekin. The controller, who runs an online pharmacy, used various web analytics and monitoring tools. These tools were implemented in a way that allowed the providers, who are based outside the EU, to access personal data. The controller also failed to ensure that the tools complied with the principle of data minimization.

Juridische citaten

Art. 5 (1)Art. 32 (1)

Problemen en overtredingen

Non-compliance with general data processing principles

Blijf op de hoogte van privacybescherming

We respecteren je privacy. Eén e-mail per maand, geen spam, afmelden kan altijd.