News

Poland: erroneous risk analysis

Cybersecurity, Regulated Sectors | 18/07/2025

🔗 Cybersecurity ≠ Protection of rights & freedoms: the error that costs Białystok paediatric hospital fined PLN 66,500 / ~€15,000 🇵🇱 UODO sanction :...

Read more

📢 Spain, excessive data collection!

Data Subject Rights, Retention & Minimisation, Legal basis | 08/07/2025

📢 Do you work in the hotel industry 🇪🇸? Is your privacy policy really up to date? 👁️ If you go to a hotel in Spain 🇪🇸 Expect to fill in a form with 4...

Read more

🇸🇪 Sweden: breathalyser tests

Retention & Minimisation, Legal basis | 30/06/2025

🛳️🫧 When daily breath tests sink GDPR compliance: the WÅAB case (Sweden) Regulator: IMY (Swedish DPA)Source: IMY-2024-1520, 18 June 2025 🔍 The facts...

Read more

🇫🇷 Penalty amounts

Tools & Documentation | 26/06/2025

⚖️ 1. CNIL Penalties📝 No obligation to reveal how fines are calculated“The CNIL must state the legal and factual grounds for a sanction, but it is not...

Read more

🇮🇹 OPT-OUT / Penalty

Data Subject Rights | 26/06/2025

🇮🇹 Italy - 🏠 Estate agency penalised for unwanted calls 🔔 A reminder: a single complaint can trigger an inspection! Regulator: Il Garante (GPDP) Sour...

Read more

⌛ Delay in processing requests for access rights

Data Subject Rights | 26/06/2025

🔍 When emails sent to the DPO are identified as SPAM! Regulator: CNPD, Luxembourg Source: Deliberation no. 1FR/2025 of 6 January 2025 🚦 Response tim...

Read more

🚦 Penalty: vulnerabilities identified by unpatched pentests

Cybersecurity | 26/06/2025

🚨 Spain, a French supermarket chain sanctioned: For failing to correct all the flaws identified by the pentests. Regulator : AEPD Source : ps-00128-2...

Read more

Video surveillance: Use without authorization

Biometrics & Video Surveillance, Confidentiality & Security | 05/05/2025

Source : PS 0345-2024 🎯 Context: A supermarket customer complains about a refund error. An employee shows her the CCTV footage captured on her mobil...

Read more

📣 A lack of confidentiality

Confidentiality & Security | 28/04/2025

🔎 Confidentiality broken in an internal investigation protocol = €120,000 fine. Source: PS 0505-2024 The Spanish regulator, AEPD has fined a company...

Read more

📌 Data Deletion Not Effectively Implemented

Legal basis | 08/04/2025

📜 Data Blocking and Deletion : Breach of Article 32 of the LOPDGDD Source :PS-00176-2024   The AEPD imposed a €20,000 fine (reduced to €16,000 for e...

Read more

🏦 Bank and Access

Confidentiality & Security | 08/04/2025

Source : PS/00477/2023 ·       A bank allowed unauthorized access to a joint bank account by a third party (the mother of one of the holders), withou...

Read more

🍊Cookies and Commercial Prospecting 🇫🇷

Cookies & Trackers | 04/04/2025

📱🍪 €50 Million Fine for a French Telecom Operator 📱🍪 On November 14, 2024, the CNIL imposed a €50 million fine on a French telecom operator for displ...

Read more

Explore all our areas of expertise:

]]>