SC Raiffeisen Bank SA
€2,000
Non-compliance with general data processing principles
Decision Date
9 de setembro de 2022
Authority
Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)
RO
Sector
Finance, Insurance and Consulting
Country
RO
Law
GDPRStatus
FINALDescription
The Romanian DPA has imposed a fine of EUR 2,000 on SC Raiffeisen Bank SA. An individual had filed a complaint with the DPA for receiving text messages about money transfers to certain persons that they had not effected. During its investigation, the DPA found that the bank had accidentally used the telephone number of the data subject for transaction purposes in 44 cases. The data subject was not a customer of the bank and had not requested the transactions.
Legal Citations
Art. 5 (1)
Issues & Violations
Non-compliance with general data processing principles