Università Campus Bio-medico di Roma (Polyclinic)

€20,000

Non-compliance with general data processing principles

Dátum rozhodnutia

26. októbra 2020

Úrad

Italian Data Protection Authority (Garante)

IT

Sektor

Public Sector and Education

Krajina

IT

Právo

GDPR

Stav

FINAL

Popis

In a data breach notification pursuant to Art. 33 GDPR, the data protection authority found that patients accessing their online medical reports via their smartphones could also access personal health data of 74 other patients. According to the polyclinic, the reason for this was a human error in the integration of two IT systems.

Právne citácie

Art. 5 (2)Art. 9

Problémy a porušenia

Non-compliance with general data processing principles

Aktualizujte informácie o presadzovaní ochrany osobných údajov

Rešpektujeme vaše súkromie. Jeden e-mail mesačne, žiadny spam, odhlásiť sa môžete kedykoľvek.