News

🧠Private club and GDPR

Biometrics & Video Surveillance, Tools & Documentation, Legal basis | 30/03/2025

πŸ” Guestbook, video surveillance, privacy policy: when a company underestimates the GDPR (way too much). πŸ“Œ The Belgian Data Protection Authority (GBA/A...

Read more

πŸ‡ͺπŸ‡Έ Abusive communication and GDPR

Data Subject Rights | 30/03/2025

πŸ“’ GDPR fine for misuse of professional email addresses Source: PS/00117/2022Spain, AEPD A €2,000 fine was imposed by the AEPD on a works council memb...

Read more

πŸ‡«πŸ‡· Insurance and excessive retention periods

Data Subject Rights, Retention & Minimisation | 29/03/2025

πŸ“’ €1.75 Million Fine for a French Insurance Company Source: SAN 2021-010 πŸ‘‰ The CNIL has sanctioned an insurance company for two serious breaches of ...

Read more

πŸ‡«πŸ‡· Collection form and Processing register

Tools & Documentation, Legal basis | 28/03/2025

πŸ“… December 29, 2023 – CNIL SanctionπŸ’Έ €75,000 fine imposed on a data brokerπŸ“„ Reference: SAN-2023-025 🎯 Why? πŸ”Ή Misleading forms: The company collected ...

Read more

❌ Insufficient association of a dpo

DPO | 28/03/2025

πŸ”’πŸ“‰ Luxembourg: €15,000 Fine for Poor DPO Involvement πŸ“… Decision 20FR/2021 of June 11, 2021The Luxembourg Data Protection Authority sanctioned a compa...

Read more

❌ Failure of a DPO

DPO | 28/03/2025

⚠️When a DPO Oversteps Their Role πŸ” Context:Following the receipt of unsolicited newsletters from a recruitment agency, a data subject submitted an a...

Read more

🚫 Spain Failure to Appoint a DPO

DPO | 28/03/2025

When Glovo Fails to Meet Its Obligations πŸ“¦πŸ‡ͺπŸ‡ΈπŸ“Œ AEPD PS/00417/2019 A Spanish citizen filed a complaint against Glovo (GlovoApp23, SL), a home delivery ...

Read more

❌ Data transfer outside the EU!

Data Transfers | 28/03/2025

πŸ“’ GDPR & Public Procurement: Transferring Data Outside the EU Can Invalidate a Contract Award! 🌍❌ πŸ—“οΈ On December 21, 2023, the Belgian Council of Sta...

Read more

🚨 SS2I Inappropriate legal basis 🚨

Legal basis | 28/03/2025

πŸ“ Greece | HDPA | €150,000 Fine πŸ” Following a complaint, the Hellenic Data Protection Authority (HDPA) investigated an IT services company (SS2I) reg...

Read more

πŸ‡ͺπŸ‡Έ Data security and USB key

Confidentiality & Security | 28/03/2025

Source : PS-00117-2024 πŸ“’ A famous insurance company made a major mistake... πŸ“Œ Facts • πŸ“… Security Incident: On May 11, 2023, the ...

Read more

πŸ‡«πŸ‡· Data security and real estate

Retention & Minimisation, Confidentiality & Security | 28/03/2025

🏠 Real Estate & Personal Data: €400,000 FineπŸ“… CNIL Decision – May 28, 2019 (Ref: 2019-995)πŸ” A security breach + excessive data retention = double GDPR...

Read more

πŸ‡«πŸ‡· Non-compliant video surveillance

Biometrics & Video Surveillance, Retention & Minimisation | 28/03/2025

🚨 Workplace Surveillance: HR Practices Too Intrusive SanctionedπŸ“¦ From Scanners to Cameras: When Performance Oversteps Privacy Rights Source: SAN 2023...

Read more

Explore all our areas of expertise:

]]>