Search results

From GDPRhub
  • AEPD (Spain) - PS/00057/2020 (category Article 7 GDPR)
    as per Article 22(2) of the Spanish Law on Information Society Services (LSSI) —this is the Spanish law regulating cookies, connected to Article 13 of the
    31 KB (4,757 words) - 13:52, 13 December 2023
  • amount of the fine under Article 83(2) GDPR. The data subjects complains about the violation of its right of access (Article 15 GDPR) by the Istituto Nazionale
    22 KB (3,478 words) - 15:51, 6 December 2023
  • violated Article 12 GDPR, as it did not facilitate the data subject´s exercise of their rights, especially the right to erasure under Article 17 GDPR. In view
    87 KB (14,525 words) - 15:45, 6 December 2023
  • APD/GBA (Belgium) - 137/2022 (category Article 12(3) GDPR)
    Belgian DPA used Article 58(2)(c) GDPR to order a controller to comply with an erasure request of a data subject pursuant to Article 17 GDPR after it failed
    14 KB (1,946 words) - 08:50, 29 June 2023
  • guarantees ”(Article 9, paragraph 2, letter b), of the Regulation). In any case, the dissemination of data relating to health is prohibited (art. 2-septies
    50 KB (8,001 words) - 15:52, 6 December 2023
  • Gerechtshof Amsterdam - C/13/640898/HARK17-386 (category Article 6(1)(c) GDPR)
    decision has been further determined today. 2 Facts 2.1 In the contested decision under 2.1 up to and including 2.17, the court established the facts that
    26 KB (4,225 words) - 16:00, 15 March 2022
  • Datatilsynet (Denmark) - 2019-41-0028 (category Article 32 GDPR)
    is issued pursuant to Article 58 (2) of the Data Protection Regulation. Article 41 (2) (d) of the Data Protection Act. Paragraph 2 (5) shall be punishable
    24 KB (3,947 words) - 16:24, 6 December 2023
  • within the meaning of Article 4(15) GDPR and Article 9(1) GDPR. Processing of sensitive data requires a legal basis under Article 9(2) GDPR. In the present case
    13 KB (1,847 words) - 15:52, 11 December 2023
  • AEPD (Spain) - PS/00247/2019 (category Article 32(2) GDPR)
    employee of the entity - infringes Article 32. 2 and 32.4 of the RGPD, an infringement punishable under Article 83.4.a of the GDPR. Assessing the circumstances
    39 KB (6,720 words) - 14:22, 13 December 2023
  • NAIH (Hungary) - NAIH/2020/32/4 (category Article 5(1) GDPR)
    right of access under Article 15 of the GDPR and the right to erasure (‘forgotten’) under Article 17 of the GDPR, Article 12 of the GDPR on measures to exercise
    75 KB (12,586 words) - 10:10, 17 November 2023
  • Hoge Raad - ECLI:NL:PHR:2023:935 (category Article 5(1)(c) GDPR)
    has engaged another real estate agent for the sale. 2 Process flow First instance 2.1 2.2 2.3 2.4 2.5 PME summoned [plaintiff] on May 9, 2018 (see also
    103 KB (17,620 words) - 10:13, 29 November 2023
  • AEPD (Spain) - PS/00356/2020 (category Article 6(1) GDPR)
    significant negligent action identified (Art. 83 (2) (b) GDPR). -basic personal affected (Art. 83 (2) (g) GDPR). -Actions previously committed, as this is not
    26 KB (3,848 words) - 14:31, 13 December 2023
  • AEPD (Spain) - TD/00129/2020 (category Article 4(2) GDPR)
    recording is "processing" of "personal data" within the meaning of Article 4(1) and 4(2) GDPR. Therefore, the data subject has the right to request access to
    22 KB (3,422 words) - 14:50, 13 December 2023
  • required by Article 12 GDPR. The DPA clarified that the right of information and the right of access are distinct. An access request under Article 15 GDPR is not
    90 KB (14,651 words) - 08:07, 5 September 2022
  • whether Art. 15 GDPR applies to the investigation files at all, since according to Art. 2 Para. 2 d GDPR, Section 2a Para. 4 AO, the GDPR does not apply
    97 KB (16,519 words) - 09:57, 22 February 2023
  • DSB (Austria) - 2021-0.347.702 (category Article 9(2)(f) GDPR)
    or by a third party. The court used Article 9(2)(f) GDPR to interpret legitimate interests under Article 6(1)(f) GDPR as including the establishment, exercise
    25 KB (3,875 words) - 10:36, 11 January 2024
  • CNIL (France) - SAN-2022-020 (category Article 3(2)(a) GDPR)
    Failure to ensure data protection by default (Article 25(2) GDPR) The DPA also found a violation of Article 25(2) GDPR regarding the controllers “X” icon at the
    59 KB (9,566 words) - 17:03, 6 December 2023
  • Datatilsynet (Norway) - 20/02137 (category Article 58(2)(b) GDPR)
    Norge violated Article 33 GDPR by failing to notify the Datatilsynet of the data breach? Had Telenor Norge violated Article 32(1) GDPR by failing to implement
    5 KB (684 words) - 08:06, 7 May 2022
  • AEPD (Spain) - PS/00333/2019 (category Article 58(2) GDPR)
    infringement of article 5.1(b), as defined in Article 83(5)(a) and considered for the purposes of the statute of limitations in Article 72(1)(a), a fine
    16 KB (2,625 words) - 14:29, 13 December 2023
  • HDPA (Greece) - 4/2022 (category Article 5(2) GDPR)
    under Article 35(7) GDPR, for not complying with the principle of transparency under Article 5(1) GDPR and for not anonymising the data under Article 25(1)
    11 KB (1,274 words) - 10:37, 23 February 2022
View ( | ) (20 | 50 | 100 | 250 | 500)