Azienda Sanitaria Locale Roma

€46,000

Insufficient legal basis for data processing

Data da decisão

26 de maio de 2022

Autoridade

Italian Data Protection Authority (Garante)

IT

Setor

Health Care

País

IT

Lei

GDPR

Status

FINAL

Descrição

The Italian DPA has fined Azienda Sanitaria Locale Roma EUR 46,000. The healthcare facility had published the names and health information of 1337 patients on its website. In most cases, this involved the health records of the data subjects, including medical documents, disability assessments, tests, technical reports, etc.... In this context, the DPA found that the healthcare institution had processed the data unlawfully as well as violated principle of data minimization.

Citações legais

Art. 5 (1)Art. 6 (1)Art. 6 (2)Art. 9 (1)Art. 2Art. 2

Problemas e violações

Insufficient legal basis for data processing

Mantenha-se atualizado sobre a aplicação da privacidade

Respeitamos sua privacidade. Um e-mail por mês, sem spam, cancele sua inscrição a qualquer momento.