Banco Bilbao Vizcaya Argentaria, S.A.

€5,000,000

Insufficient fulfilment of information obligations

Dátum rozhodnutia

11. decembra 2020

Úrad

Spanish Data Protection Authority (aepd)

ES

Sektor

Finance, Insurance and Consulting

Krajina

ES

Právo

GDPR

Stav

FINAL

Popis

The Spanish DPA (AEPD) fined Banco Bilbao Vizcaya Argentaria, S.A. EUR 5,000,000 for violating Art. 6 GDPR (EUR 3,000,000) and Art. 13 GDPR (EUR 2,000,000). The bank had not implemented a specific mechanism to obtain the consent of the customers to process their data. Furthermore, it did not use precise terminology in its privacy policy, nor did it provide adequate information about the type of personal data that might be processed. In particular the AEPD notes that the purpose and legal basis for data processing are not sufficiently identifiable in the privacy statement.

Právne citácie

Art. 6Art. 13

Problémy a porušenia

Insufficient fulfilment of information obligations

Aktualizujte informácie o presadzovaní ochrany osobných údajov

Rešpektujeme vaše súkromie. Jeden e-mail mesačne, žiadny spam, odhlásiť sa môžete kedykoľvek.