Search results

From GDPRhub
  • Original Language(s): English Original Source: ICO (in EN) Initial Contributor: At33
    6 KB (791 words) - 21:10, 1 June 2023
  • of “aware” likely reflects its meaning under Article 33(1) GDPR (see above). According to Article 33(2) GDPR, the processor has the obligation to notify
    54 KB (6,536 words) - 08:22, 16 June 2023
  • Original Language(s): English Original Source: ICO (in EN) Initial Contributor: At33
    8 KB (949 words) - 18:11, 2 June 2023
  • Original Language(s): English Original Source: ICO (in EN) Initial Contributor: At33
    9 KB (1,218 words) - 21:15, 1 June 2023
  • Original Language(s): English Original Source: ICO (in EN) Initial Contributor: At33
    10 KB (1,376 words) - 21:05, 7 July 2023
  • Original Language(s): English Original Source: ICO (in EN) Initial Contributor: At33
    13 KB (1,758 words) - 23:34, 1 June 2023
  • supervisory authority under Article 33 GDPR. Hence, not all breaches must be communicated. On this point,see Article 33 GDPR. Bensoussan, Reglement europeen
    37 KB (3,962 words) - 15:20, 16 June 2023
  • by a data breach which triggers the notification obligations under Article 33 GDPR and Article 34 GDPR. This provision is closely connected to Article 34(4)
    46 KB (5,825 words) - 11:12, 7 November 2023
  • budget for 2022 amounts to €2,523,000 Year 2020 Complaints: [] Fines: With 33 decisions fines of 90,500 euros were imposed Decisions: [] Opinions: [] Breach
    23 KB (2,039 words) - 08:15, 25 April 2024
  • Fontenoy, TSA 80715, 75334 PARIS CEDEX 07 Webpage: cnil.fr Fax: +33 1 53 73 22 00 Phone: +33 1 53 73 22 22 Twitter: @CNIL and @CNIL_en Procedural Law: n/a
    8 KB (824 words) - 22:52, 27 February 2024
  • under Article 30(1) GDPR, documenting personal data breaches under Article 33(5) GDPR or performing a data protection impact assessment under Article 35
    30 KB (3,458 words) - 10:31, 25 April 2024
  • the other refers to the controller’s." When a data breach occurs (Articles 33-34 GDPR), the processor shall notify the controller without undue delay. The
    72 KB (9,140 words) - 13:12, 2 June 2023
  • unnecessarily disruptive to the use of the service for which it is provided. Recital 33: Consent for Scientific Research It is often not possible to fully identify
    31 KB (3,489 words) - 16:00, 8 March 2024
  • of secrecy are laid down in the EDPB's Rules of Procedure (“RoP”). Article 33(1) RoP stipulates that in “accordance with Art 76 (1) GDPR”, discussions of
    15 KB (787 words) - 08:17, 19 October 2023
  • Valby DENMARK Webpage: datatilsynet.dk Email: dt@datatilsynet.dk Phone: +45 33 1932 00 Twitter: n/a Procedural Law: n/a Decision Database: Link Translated
    6 KB (605 words) - 14:08, 27 April 2021
  • action on the part of the controller or processor, for instance, Articles 33 and 36 GDRP. To illustrate, Article 36 GDPR obliges the controller to consult
    22 KB (2,042 words) - 14:29, 20 November 2023
  • (Article 32), responsibilities of the DPO in case of data breaches (Articles 33 and 34), and preparation of data protection impact assessments and prior consultation
    23 KB (2,165 words) - 15:10, 27 July 2023
  • Article 84, margin number 1 (C.H. Beck 2018, 2nd edition). CJEU, Rewe, Case C-33/76, 16 December 1967 (available here) cited by Lynskey in Kuner et al., The
    19 KB (1,477 words) - 14:12, 7 November 2023
  • Hornung, Spiecker gen. Döhmann, Datenschutzrecht, Article 30 GDPR, margin number 33 (C.H. Beck 2019). Scholars note that the requirement to specify the responsible
    31 KB (3,327 words) - 15:31, 5 June 2023
  • DVI has 33 employees as per 1st October 2022 out of totally approved 34 positions. About 76 % are women, 24% are men.   Historical numbers: 2021: 33 positions
    6 KB (544 words) - 04:39, 11 October 2022
  • personal data breaches and determining the undue delay referred to in Article 33(1) and (2) and for the particular circumstances in which a controller or a
    27 KB (3,038 words) - 12:19, 11 October 2023
  • Transparency under Regulation 2016/679’, 17/EN WP260 rev.01, 11 April 2018, p. 33 (available here).
    47 KB (5,644 words) - 17:49, 5 March 2024
  • Articles 12-23 GDPR; the obligation to notify data breaches pursuant to Article 33 GDPR; the obligation of data protection by design and by default, pursuant
    27 KB (2,452 words) - 14:26, 28 July 2023
  • number 47 (available here). CJEU, Case C-212/13, Ryneš, margin numbers 31 and 33 (available here). Especially, CJEU, C-101/01, Lindqvist, 6 November 2003,
    34 KB (4,652 words) - 12:07, 12 November 2023
  • personal data breaches to the supervisory authority and data subjects (Articles 33 and 34), conducting Data Protection Impact Assessments (Articles 35 and 36)
    37 KB (3,915 words) - 12:49, 24 May 2023
  • on data subject rights - Right of access’, 28 March 2023 (Version 2.0), p. 33 (available here). For example, the District Court of Amsterdam has held that
    73 KB (9,896 words) - 15:46, 18 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    12 KB (295 words) - 08:25, 19 October 2023
  • (available here). Paal, in Paal, Pauly, DS-GVO BDSG Article 23, margin number 33 (C.H.Beck 2021, 3rd Edition) and Bäcker, in Kühling, Buchner, DS-GVO BDSG
    44 KB (4,896 words) - 06:25, 16 June 2023
  • especially where there is a reason for urgency. It must be noted here that Articles 33(3)(b) and 34(2) GDPR on post-data breach communications both require the controller
    43 KB (4,904 words) - 12:59, 21 July 2023
  • rules regarding the processing of personal data of deceased persons. Recital 33: Consent for Scientific Research It is often not possible to fully identify
    29 KB (3,695 words) - 13:44, 21 March 2024
  • Ehmann, Selmayr, Datenschutz-Grundverordnung, Article 12 GDPR, margin number 33 (C.H. Beck 2018, 2nd Edition). XXX FOOTNOTE XXX See Bäcker, in Kühling, Buchner
    76 KB (11,304 words) - 08:37, 4 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    13 KB (674 words) - 13:15, 2 June 2023
  • 'personal data breach' is relevant for the notification duties under Articles 33 and 34 GDPR. The definition of a data breach requires a security breach, such
    125 KB (16,328 words) - 16:01, 8 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    13 KB (530 words) - 09:40, 3 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    13 KB (450 words) - 08:22, 19 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    16 KB (778 words) - 08:24, 19 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    15 KB (660 words) - 09:37, 1 December 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    14 KB (716 words) - 15:19, 28 April 2022
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    15 KB (810 words) - 16:13, 2 November 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    15 KB (718 words) - 15:31, 19 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    15 KB (808 words) - 09:44, 17 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    19 KB (1,335 words) - 13:56, 24 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    51 KB (6,355 words) - 08:25, 18 April 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    17 KB (1,768 words) - 15:41, 18 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    15 KB (943 words) - 09:58, 8 November 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    17 KB (1,142 words) - 15:41, 28 April 2022
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    15 KB (851 words) - 06:55, 29 April 2022
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    21 KB (1,831 words) - 08:51, 27 March 2023
  • Database: n/a Translated Decisions: Category:BayLDA (Bavaria) Head Count: 33 (2021) Budget: 1.893.200 (2021)
    2 KB (174 words) - 13:49, 23 December 2021
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    19 KB (1,436 words) - 12:35, 12 May 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    20 KB (1,347 words) - 14:21, 17 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    17 KB (1,096 words) - 08:19, 19 October 2023
  • Ziebarth, in Sydow, Marsch, DS-GVO/BDSG, Article 57 GDPR, margin numbers 32-33 (Nomos 2022). Boehm, in Kühling, Buchner, DS-GVO BDSG, Article 57 GDPR, margin
    60 KB (7,796 words) - 20:12, 1 April 2024
  • and the rights of data subjects (right of access, right of erasure, etc.). 33 opinions on draft laws or regulations (compared to 24 in 2020) — In addition
    10 KB (1,199 words) - 10:14, 19 October 2022
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    15 KB (1,196 words) - 08:15, 19 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    22 KB (1,634 words) - 14:40, 28 July 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    20 KB (1,590 words) - 16:11, 2 November 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    18 KB (1,327 words) - 12:36, 14 December 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    23 KB (2,489 words) - 23:24, 6 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    41 KB (5,197 words) - 12:17, 17 April 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    19 KB (1,525 words) - 08:18, 19 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    20 KB (1,854 words) - 16:32, 8 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    19 KB (1,530 words) - 14:23, 12 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    18 KB (1,599 words) - 12:26, 29 April 2022
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    23 KB (2,079 words) - 16:07, 2 November 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    20 KB (1,632 words) - 10:01, 11 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    20 KB (1,539 words) - 08:21, 19 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    22 KB (2,177 words) - 10:01, 19 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    25 KB (2,418 words) - 14:11, 24 May 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    24 KB (2,181 words) - 11:46, 15 January 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    22 KB (2,266 words) - 08:26, 17 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    33 KB (3,641 words) - 09:51, 19 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    22 KB (1,915 words) - 13:46, 15 January 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    27 KB (2,604 words) - 14:24, 16 January 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    29 KB (2,951 words) - 14:19, 25 July 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    33 KB (4,215 words) - 09:57, 19 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    29 KB (2,823 words) - 15:15, 28 April 2022
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    43 KB (4,675 words) - 06:43, 16 June 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    25 KB (2,482 words) - 10:04, 19 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    35 KB (4,017 words) - 16:04, 18 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    30 KB (2,720 words) - 14:02, 28 July 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    44 KB (5,905 words) - 14:00, 24 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    26 KB (2,575 words) - 15:50, 9 November 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    27 KB (2,619 words) - 14:52, 16 November 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    34 KB (3,646 words) - 08:53, 27 March 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    31 KB (3,646 words) - 08:51, 21 July 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    33 KB (3,748 words) - 14:25, 7 November 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    29 KB (2,894 words) - 23:06, 1 April 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    31 KB (3,550 words) - 11:11, 29 November 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    32 KB (3,730 words) - 08:43, 7 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    32 KB (3,228 words) - 13:32, 30 November 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    35 KB (3,971 words) - 21:34, 1 April 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    29 KB (3,500 words) - 08:54, 27 March 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    33 KB (4,185 words) - 16:09, 2 November 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    31 KB (4,768 words) - 06:24, 16 June 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    30 KB (3,874 words) - 10:46, 7 December 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    28 KB (3,831 words) - 16:21, 14 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    49 KB (5,993 words) - 06:22, 16 June 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    55 KB (7,622 words) - 14:04, 7 November 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    37 KB (4,635 words) - 13:29, 24 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    34 KB (3,649 words) - 13:19, 30 October 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    61 KB (8,488 words) - 15:47, 18 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    44 KB (5,008 words) - 14:50, 28 July 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    40 KB (5,349 words) - 07:05, 1 June 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    52 KB (7,297 words) - 08:05, 18 July 2023
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    43 KB (5,641 words) - 14:58, 28 April 2022
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    71 KB (9,532 words) - 13:30, 6 March 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    47 KB (5,594 words) - 22:45, 1 April 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    55 KB (7,446 words) - 22:28, 1 April 2024
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    48 KB (5,978 words) - 15:57, 1 February 2024
  • and letter f., Article 5, paragraph Article 6 (1) (a) Article 32 (1), (1), (33) 1 and 35, para. 1. Below is a more detailed review of the case and a justification
    48 KB (7,442 words) - 10:24, 12 September 2022
  • with the supervisory authority Article 32: Security of processing Article 33: Notification of a personal data breach to the supervisory authority Article
    108 KB (17,005 words) - 15:39, 18 March 2024
  • the German original. Please refer to the German original for more details. 33 O 376/22 District Court of Cologne IN THE NAME OF THE PEOPLE Judgment In the
    66 KB (9,990 words) - 12:30, 29 January 2024
  • width="15%"><select class="newMainText" id=_piref33_15473_33_15453_15453.etos name=_piref33_15473_33_15453_15453.etos style="width:140px;" ><option value="-1"
    56 KB (7,755 words) - 15:39, 6 December 2023
  • restrictions to this right that Articles 23 GDPR and 33 Law 4624/2019 provide. More specifically, Article 33 mentions that the right to access cannot be fulfilled
    20 KB (2,270 words) - 15:37, 6 December 2023
  • CNIL (France) - SAN-2020-014 (category Article 33 GDPR)
    relieve the doctor of his obligation to notify a breach, as required by Article 33 GDPR? During the hearing before the CNIL, the doctor explained his position
    26 KB (4,050 words) - 17:10, 6 December 2023
  • measures in place to guarantee security of processing. Violation of Article 33(1) for failing to notify the Garante of the violation of personal data Violation
    7 KB (810 words) - 15:52, 6 December 2023
  • UODO (Poland) - DKN.5131.6.2020 (category Article 33(1) GDPR)
    authority in accordance with Article 33(1) of Regulation 2016/679, which must contain the information set out in Article 33(3) of that Regulation, and to notify
    66 KB (10,785 words) - 10:00, 17 November 2023
  • dnung, Bundesdatenschutzgesetz (DS-GVO/BDSG3), C.H. Beck, 2021, Art 15 RZ 33f, the term copy in para. 3 refers to the information to be provided pursuant
    51 KB (8,592 words) - 07:03, 2 November 2021
  • the Federal Constitutional Court has clarified that the provision of Art. 33 Para elected constituency (BVerfG, decision of September 20, 2016 - 2 BvR
    14 KB (1,999 words) - 14:20, 18 July 2023
  • particular the complainant's statement of 22 January 2019, page 2 (OZ 1 p 33). They also rely on the statement of the complainant of 22 January 2019, page
    79 KB (12,652 words) - 09:41, 10 September 2021
  • HDPA - 33/2023 Authority: HDPA (Greece) Jurisdiction: Greece Relevant Law: Article 5(1)(a) GDPR Article 5(1)(c) GDPR Article 6(1)(c) GDPR Article 17(1)
    4 KB (367 words) - 14:07, 20 December 2023
  • deleted when the purposes have been fulfilled (C‑553/07, EU:C:2009:293, point 33). It also held that each processing operation should be compliant with Articles
    49 KB (7,800 words) - 09:22, 5 January 2024
  • ANSPDCP (Romania) - 03.11.2023 (category Article 33 GDPR)
    violation of Article 33 GDPR. The DPA imposed a fine of EUR 3,0000 for breach of Article 32 GDPR and a warning for breach of Article 33 GDPR. Also, the DPA
    6 KB (766 words) - 15:14, 13 December 2023
  • EDPB - Binding Decision 1/2020 - 'Twitter' (category Article 33(1) GDPR)
    of Article 33(1) and 33(5) GDPR found by the LSA: In relation to the objection of the FR SA on the absence of an infringement of Article 33(1) GDPR, the
    183 KB (30,819 words) - 09:50, 20 January 2023
  • HDPA (Greece) - 6/2022 (category Article 33 GDPR)
    subject, and for failing to notify this data breach, in violation of Articles 5, 33 and 34 GDPR. A data subject filed a complaint with the Greek DPA (Hellenic
    6 KB (865 words) - 16:08, 20 April 2022
  • Dutch original for more details. Litigation Chamber Decision on the merits 33/2020 of 19 June 2020 File number : DOS-2019-05200 Subject : Complaint about
    39 KB (6,551 words) - 16:56, 12 December 2023
  • ANSPDCP (Romania) - 31.01.2023 (category Article 33 GDPR)
    being informed of the data breach contrary to the requirements of Article 33 GDPR. Based on a data subject's complaint, the Romanian DPA started investigations
    8 KB (1,123 words) - 15:15, 13 December 2023
  • AEPD (Spain) - PS/00152/2020 (category Article 33 GDPR)
    The Spanish DPA (AEPD) held that a rare disease foundation violated Article 33 GDPR by failing to notify a data breach within the prescribed 72 hours. In
    27 KB (4,243 words) - 14:06, 13 December 2023
  • UODO (Poland) - DKN.5131.7.2020 (category Article 33(1) GDPR)
    in accordance with Art. 33 paragraph. 1 of the Regulation 2016/679, which must contain the information specified in art. 33 paragraph. 3 of the Regulation
    50 KB (8,066 words) - 10:00, 17 November 2023
  • found the violation of the provisions of art. 32 para. (1) and (2) and art. 33 para. (1) of the General Data Protection Regulation. The operator DADA CREATION
    5 KB (547 words) - 15:18, 13 December 2023
  • Datatilsynet (Norway) - 20/02137 (category Article 33 GDPR)
    security breach in its voicemail box function. Had Telenor Norge violated Article 33 GDPR by failing to notify the Datatilsynet of the data breach? Had Telenor
    5 KB (684 words) - 08:06, 7 May 2022
  • AEPD (Spain) - EXP202200399 (category Article 33 GDPR)
    DPA fined a magazine company €31,200 for violating Articles 5(1)(f), 32, and 33 GDPR because of a personal data security breach caused by vulnerabilities
    10 KB (1,343 words) - 13:13, 13 December 2023
  • HDPA (Greece) - 35/2023 (category Article 33(1) GDPR)
    breach to the supervisory authority, in accordance with Article 33 GDPR. Under Article 33, the controller should have reported the breach within 72 hours
    52 KB (8,460 words) - 10:54, 10 January 2024
  • ANSPDCP (Romania) - Actamedica SRL (category Article 33 GDPR)
    been notified with regards to the security incident, in breach of Article 33 GDPR, for which the controller was fined RON 4,918.3 (approximately €1,000)
    7 KB (900 words) - 15:23, 13 December 2023
  • Datatilsynet (Denmark) - 2020-442-8866 (category Article 33(1) GDPR)
    limit mandated by Article 33(1). Did the secretariat of the DPA breach its data security obligations under Articles 32(1), 33(1), and 34(1)? The Datatilsynet
    20 KB (3,045 words) - 16:40, 6 December 2023
  • rambling, abstract explanations in the reasoning for the appeal (pages 12 to 33) were noted and examined, but were not considered to be definitive. They justify
    24 KB (3,847 words) - 15:19, 11 September 2022
  • ANSPDCP (Romania) - 12.01.2023 (category Article 33 GDPR)
    (controller) notified the Romanian DPA of two data breaches in line with Article 33 GDPR. Following the notifications, the DPA launched an investigation which
    5 KB (613 words) - 15:13, 13 December 2023
  • Datatilsynet (Denmark) - 2019-41-0028 (category Article 33 GDPR)
    The Datatilsynet issued a decision on Articles 32 and 33 GDPR due to unencrypted e-mails sent by the controller. After carrying out investigations at its
    24 KB (3,947 words) - 16:24, 6 December 2023
  • Datatilsynet (Norway) - 20/02042 (category Article 33(1) GDPR)
    didn't consider the incident to have triggered this requirement as per Article 33 GDPR. * Innovation Norway is state-owned and the Norwegian government's instrument
    6 KB (810 words) - 18:57, 5 March 2022
  • AEPD (Spain) - E/08158/2019 (category Article 33 GDPR)
    The AEPD approved a transport hub's compliance with Articles 32 and 33 GDPR after having used its investigation powers. After a security guard of Madrid’s
    14 KB (2,108 words) - 13:41, 13 December 2023
  • AEPD (Spain) - E/06179/2019 (category Article 33 GDPR)
    Authority: AEPD (Spain) Jurisdiction: Spain Relevant Law: Article 32 GDPR Article 33 GDPR Article 34 GDPR Type: Investigation Outcome: No further action Started:
    6 KB (386 words) - 13:40, 13 December 2023
  • AEPD (Spain) - PS/00389/2019 (category Article 33 GDPR)
    violation of Articles 32, 33 and 34, violations all of which are typified in article 83.4.a). V The violation of articles 32, 33 and 34 of the RGPD are criminalized
    31 KB (4,819 words) - 14:34, 13 December 2023
  • APD/GBA (Belgium) - 22/2020 (category Article 33 GDPR)
    Belgian DPA assessed whether the controller had violated Articles 5, 24, 28, 33 and 34 GDPR, however they found that none of these provisions were breached
    35 KB (5,526 words) - 16:56, 12 December 2023
  • Commissioner (Cyprus) - 12.10.001.011.001 (category Article 33 GDPR)
    the under General Data Protection Regulation 2016/679. According to Article 33 of GDPR, in the case of a personal data breach, the Data Controller shall
    7 KB (861 words) - 16:53, 6 December 2023
  • LG Essen - 6 O 190/21 (category Article 33 GDPR)
    loss itself, that the information and measures mentioned in Article 33(1)(b) to Article 33(1)(d) GDPR must also be communicated to the data subject. However
    28 KB (4,596 words) - 18:30, 18 November 2021
  • referred to in Article 33(1) of the AVG.15 15 File note 1, Notification of personal data breach 7-2-2019. P 5. 3.4.3 Assessment Article 33(1) of the AVG provides
    77 KB (12,915 words) - 17:15, 12 December 2023
  • APD/GBA (Belgium) - 170/2023 (category Article 33 GDPR)
    data breach was an isolated incident and the controller complied with Article 33 GDPR. An investigation was started on 20 December 2019 over the practices
    24 KB (3,525 words) - 15:29, 26 January 2024
  • CNIL (France) - SAN-2020-015 (category Article 33(1) GDPR)
    à l’obligation de notifier la violation de données à la CNIL 33. Aux termes de l’article 33, paragraphe 1, du RGPD, en cas de violation de données à caractère
    29 KB (4,374 words) - 16:03, 19 January 2024
  • and the minimization of data, as well as the national legislation (d.lgs. 33/2013), which obliges the community to publish the compound emoluments received
    16 KB (2,430 words) - 15:51, 6 December 2023
  • Datatilsynet (Denmark) - 2020-441-4364 (category Article 33 GDPR)
    Protection Agency is of the opinion that Zoo's description, cf. Article 33, subsection Article 33 (3) (d) of the measures taken to deal with the breach was not correct
    33 KB (5,347 words) - 16:39, 6 December 2023
  • HDPA (Greece) - 36/2022 (category Article 33 GDPR)
    notified the DPA too late about the data breach in violation of the Article 33 GDPR. The DPA also ordered the controller to communicate the data breach to
    11 KB (1,522 words) - 09:35, 13 September 2022
  • September 2021, the Danish DPA found violations of Articles 5(2), 5(1)(a), 32(1), (33)(1) and (35)(1) GDPR. It ordered the Municipality to bring its processing
    75 KB (11,733 words) - 16:33, 21 August 2022
  • AP (The Netherlands) - 16.06.2020 (category Article 33(1) GDPR)
    obliged to notify the data breach to the AP within 72 hours pursuant to Article 33(1) GDPR. The AP recalled that the main purpose of this obligation is to encourage
    54 KB (8,224 words) - 17:07, 12 December 2023
  • UODO (Poland) - DKN.5131.5.2020 (category Article 33(1) GDPR)
    in accordance with Art. 33 paragraph. 1 of the Regulation 2016/679, which must contain the information specified in art. 33 paragraph. 3 of Regulation
    47 KB (7,608 words) - 10:00, 17 November 2023
  • UODO (Poland) - DKN.5131.31.2021 (category Article 33(1) GDPR)
    authority, in accordance with art. 33 sec. 1 Regulation 2016/679, which must contain the information specified in art. 33 sec. 3 of this source of law, but
    105 KB (17,237 words) - 09:22, 10 May 2023
  • AEPD (Spain) - E/08452/2019 (category Article 33 GDPR)
    Jurisdiction: Spain Relevant Law: Article 4(12) GDPR Article 32 GDPR Article 33 GDPR Type: Investigation Outcome: No Violation Found Started: Decided: Published:
    11 KB (1,651 words) - 13:42, 13 December 2023
  • NOK 100,000. The notified fee of NOK 150,000 was thus reduced by approx. 33.33% with reference to the company's financial situation. The Authority considers
    31 KB (5,018 words) - 18:44, 5 March 2022
  • BAC (Bulgaria) - 2606/2021 (category Article 33 GDPR)
    Article 67 of the Bulgarian Personal Data Protection Act (PDPA), supra Article 33 of the GDPR, and violation of the requirement for communicating the personal
    13 KB (1,761 words) - 09:58, 14 December 2023
  • CNIL (France) - SAN-2022-022 (category Article 33 GDPR)
    obligation to document a personal data breach (Article 33 GPDR) The DPA also determined a violation of Article 33 GDPR. The documentation provided by the controller
    59 KB (9,623 words) - 17:03, 6 December 2023
  • and officially notified the HDPA of the breach in accordance with Article 33 GDPR. Corrective measures to fix the issue were also implemented. Despite
    9 KB (1,211 words) - 20:32, 8 January 2024
  • Commissioner (Cyprus) - 11.17.001.008.001 (category Article 33 GDPR)
    obligation under the articles5 (1) (f), 5 (2), 15, 32 and 33 of the Regulation, as well as article 33 (1) (y) of Law 125 (1) / 2018and she was asked to submit
    61 KB (9,412 words) - 16:52, 6 December 2023
  • (hereinafter 'the Code'); HAVING REGARD to Article 5, of Legislative Decree no. 33 of 14 March 2013 on "Reorganization of the rules concerning the right of civic
    13 KB (2,045 words) - 15:48, 6 December 2023
  • level of security, as required by article 32, read in conjunction with article 33 GDPR. The Garante examined the notification by the university “la Sapienza”
    34 KB (4,967 words) - 15:46, 6 December 2023
  • AEPD (Spain) - E/05724/2019 (category Article 33 GDPR)
    Authority: AEPD (Spain) Jurisdiction: Spain Relevant Law: Article 32 GDPR Article 33 GDPR Type: Investigation Outcome: No Violation Found Started: Decided: 06
    14 KB (2,124 words) - 13:40, 13 December 2023
  • Datatilsynet (Denmark) - 2019-441-3399 (category Article 33(2) GDPR)
    that BroBizz's processing of personal data was in accordance with Article 33 (2) of the Data Protection Regulation. 1 and Article 34 (1). First The following
    27 KB (4,231 words) - 16:38, 6 December 2023
  • APD/GBA (Belgium) - 05/2021 (category Article 33 GDPR)
    insufficient took precautions to prevent the data breach b. Articles 33.1 and 33.5 and 34.1 GDPR, given that defendant did not mention it data breach to
    60 KB (9,281 words) - 16:50, 12 December 2023
  • AEPD (Spain) - PS/00268/2022 (category Article 33 GDPR)
    Public Health Service of Madrid for violating Articles 5(1)(f), 25(1), 32 and 33 GDPR due to a website failure which resulted in the exposure of personal data
    63 KB (9,551 words) - 12:33, 13 December 2023
  • AEPD (Spain) - E/08205/2019 (category Article 33 GDPR)
    Jurisdiction: Spain Relevant Law: Article 5(1)(f) GDPR Article 32 GDPR Article 33 GDPR Type: Investigation Outcome: No Violation Found Started: Decided: 06
    17 KB (2,577 words) - 13:42, 13 December 2023
  • outcome of the survey n ° [...] carried out with the public establishment A 33/33
    81 KB (11,895 words) - 16:58, 6 December 2023
  • AEPD (Spain) - PS/00179/2020 (category Article 33 GDPR)
    case. C / Jorge Juan, 6 www.aepd.es 28001 - Madrid sedeagpd.gob.es Page 33 33/35 Regarding the seriousness of the offense, it already concurs as an aggravating
    100 KB (16,401 words) - 14:07, 13 December 2023
  • AEPD (Spain) - E/08501/2019 (category Article 33 GDPR)
    E/08501/2019 Authority: AEPD (Spain) Jurisdiction: Spain Relevant Law: Article 33 GDPR Type: Investigation Outcome: n/a Started: Decided: Published: 21.01.2020
    20 KB (3,029 words) - 13:42, 13 December 2023
  • HDPA (Greece) - 55/2021 (category Article 33 GDPR)
    investigation to determine whether the Ministry of Tourism contravened Articles 33, 34 and 37 GDPR. First, the Ministry of Tourism argued that whilst it is the
    65 KB (10,533 words) - 10:28, 27 January 2022
  • and therefore lacked a legal basis. The Court also held that Articles 32 and 33 UAVG (Dutch law for the implementation of the GDPR) were the only provisions
    28 KB (4,573 words) - 10:04, 14 December 2023
  • properly respond to an access request, in violation of Articles 15(3) and 33 GDPR. The data subject made an access request to the controller, Vodafone
    9 KB (1,251 words) - 12:15, 8 May 2023
  • UODO (Poland) - DKN.5101.25.2020 (category Article 33(1) GDPR)
    art. 24 sec. 1, art. 25 sec. 1, art. 32 sec. 1 lit. d, art. 32 sec. 2, art. 33 paragraph. 1 and art. 34 sec. 1 of the Regulation of the European Parliament
    63 KB (10,088 words) - 09:52, 17 November 2023
  • breach notification to be will-independent information. In view of article 33(5) of the GDPR, OLVG is required to document all personal data breaches, together
    67 KB (11,415 words) - 17:15, 12 December 2023
  • AEPD (Spain) - EXP202104006 (category Article 33 GDPR)
    For its part, the security of personal data comes regulated in articles 32, 33 and 34 of the RGPD, which regulate the security of the processing, notification
    31 KB (4,578 words) - 12:11, 6 March 2024
  • AEPD (Spain) - PS/00028/2022 (category Article 33 GDPR)
    a warning to a local administration for violating Articles 5(1)(f), 32 and 33 GDPR. The administration had mistakenly published an Excel sheet containing
    58 KB (9,301 words) - 12:39, 13 December 2023
  • UODO (Poland) - DKN.5130.1354.2020 (category Article 33(1) GDPR)
    art. 28 sec. 3 lit. h, 32 sec. 1 lit. b and lit. d, art. 32 sec. 2, art. 33 paragraph. 1, art. 34 sec. 1 Regulation of the European Parliament and the
    74 KB (11,513 words) - 09:58, 17 November 2023
  • the competent authority when the conditions for the application of Article 33 of the RGPD are gathered together. In this case, no such notification has
    35 KB (5,853 words) - 16:58, 12 December 2023
  • AEPD (Spain) - PS/00254/2019 (category Article 33(1) GDPR)
    processed, or the unauthorized disclosure of or access to such data. Article 33.1 of the RGPD states the following: In the event of a breach of the security
    39 KB (6,341 words) - 14:23, 13 December 2023
  • APD/GBA (Belgium) - 07/2021 (category Article 33 GDPR)
    against security risks, so that no infringement of Article 32 and Article 33can be established in this case. The defendant 2claims that there is no processing
    72 KB (11,208 words) - 16:51, 12 December 2023
  • Datatilsynet (Denmark) - 2020-432-0037 (category Article 33 GDPR)
    breaches of personal data security to the Authority in accordance with Article 33 of the Data Protection Regulation. Journal number: 2020-432-0037 Summary The
    46 KB (7,343 words) - 16:39, 6 December 2023
  • entry into force of Legislative Decree 101/2018), in relation to Articles 33 and 154, paragraph 1, lett. c) of the same Code; NOTING that, by examining
    27 KB (4,203 words) - 15:49, 6 December 2023
  • no breach of Article 5.2 of the GDPR, Article 24.1 of the GDPR and Article 33 of the GDPR can be established. - As regards the involvement of the Data Protection
    55 KB (8,810 words) - 16:55, 12 December 2023
  • security and at least contain the information and measures referred to in Article 33 (2). 3 (b), (c) and (d). The deadline for compliance is January 7, 2020 .
    24 KB (3,365 words) - 16:37, 6 December 2023
  • Creditinfo reviews the obligations imposed on lenders according to Act no. 33/2013 on consumer loans, which, among other things, aims to prevent lending
    26 KB (4,135 words) - 09:59, 6 May 2021
  • it should be noted that Article 15 of Legislative Decree no. 33 of March 14, 2013, no. 33 regulates the publication obligations concerning the holders
    24 KB (3,852 words) - 15:50, 6 December 2023
  • addition, again in the two-year period, the Company: "imposed 33 penalties" in relation to "33 conduct that did not comply with the provisions of the mandate
    131 KB (21,014 words) - 15:55, 6 December 2023
  • Spanish administrative law were invoked, leading to a reduced fine of EUR 33.000. On 26/12/2018 AEPD received a complaint against XFERA MOVILES, S.A (YOIGO)
    36 KB (6,022 words) - 13:59, 13 December 2023
  • CNIL (France) - SAN-2020-008 (category Article 33 GDPR)
    not strictly necessary for the purpose pursued, and therefore excessive. 33. 33. Nevertheless, it notes that the Company has, prior to the initiation of
    104 KB (16,646 words) - 17:09, 6 December 2023
  • photos showing the plaintiff and bearing his name, the defendant infringed Sec. 33 of the German Data Protection Act (DSG) as well as Sec. 78 of the Copyright
    33 KB (5,113 words) - 09:50, 14 December 2023
  • further surveys. In addition, the discrepancy includes 43 document titles about 33 employees from 2018 - 2019. The breach personal data security has arisen as
    26 KB (3,885 words) - 08:43, 7 May 2022
  • adopted on 29 November 2017 by the Group 29, p. 9-10. Page 33 Substance decision 34/2020 - 33/35 107. Fourth, it should be noted that the retention period
    82 KB (13,250 words) - 16:57, 12 December 2023
  • legal basis for making the decisions is the Personal Data Act 2018 § 26, cf. § 33, cf. Personal Data Act 2000 § 46. On the basis of the Directorate of Customs'
    61 KB (9,133 words) - 18:55, 5 March 2022
  • EU:C:2021:504, paragraph 61, judgment Nowak, C-434/16, EU:C:2017:994, paragraph 33 and judgment Rijkeboer, C-553/07, EU:C:2009:293, paragraph 59. Page 14 of
    121 KB (13,722 words) - 15:16, 5 July 2023
  • municipality "for fifteen consecutive days, unless specific provisions of law". 33/2013, which - respectively - provide that "data, information and documents
    31 KB (5,041 words) - 15:49, 6 December 2023
  • as required by Article 33 GDPR. For the purposes of this Penalty Notice, the Commissioner does not rely on any breach of Article 33 GDPR and any prior finding
    130 KB (21,195 words) - 13:52, 25 April 2021
  • HDPA (Greece) - 44/2019 (category Article 33 GDPR)
    complaint against companies AMPNI and EY Greece for alleged violations of Article 33 GDPR. According to the complainant people related to the defendants entered
    127 KB (21,184 words) - 15:39, 6 December 2023
  • "Robinson List" regardless of the contractual obligation. According to Article 33(2) of the Spanish data protection law (LOPDGDD), Raise Marketing is responsible
    16 KB (2,544 words) - 14:25, 13 December 2023
  • public authority. This is underpinned by the differentiated regulation in Art. 33 and 34 of the GDPR regarding the notification obligations towards the authority
    60 KB (10,254 words) - 11:22, 22 December 2021
  • effects of the PDB and has duly complied with the requirements of Article 33(3) of the GDPR.   DECISION According to Article 83 (4) (a) of the GDPR, the
    37 KB (4,319 words) - 09:20, 17 November 2023
  • notified the Romanian DPA of the data security breach pursuant to Article 33 GDPR, prompting an investigation by the DPA. The investigation revealed that
    6 KB (790 words) - 15:13, 13 December 2023
  • Regulations of 15 December 2000 no. 1265. (2018) § 33. According to the Personal Data Act (2018) § 33, the rules «which applied at the time of action» shall
    19 KB (2,942 words) - 09:03, 14 September 2023
  • number. Furthermore, the defendant violated the obligation set out in Art. 33 GDPR to inform the competent supervisory authority in the event of a data
    39 KB (6,362 words) - 14:01, 22 June 2023
  • legal prosecution. and dismiss the defendant's appeal. The defendant requests,,33The defendant requests, 34 rejecting the plaintiff's appeal, the judgment of
    40 KB (6,325 words) - 16:12, 18 May 2022
  • of 04.05.2016, p. 1, hereinafter referred to as "the Regulation"): DSGVO). 33 § Section 12 sentence 1 BMG old stipulated that if stored data are incorrect
    112 KB (19,310 words) - 08:08, 23 June 2022
  • country transfers must be assessed based on its specific legal context (point 33). 7 The security-enhancing measures mainly consist of the responsibility for
    131 KB (14,752 words) - 08:36, 5 July 2023
  • 1(g) Law 4629/2019 Article 9 Law 4629/2019 Article 15 Law 4629/2019 Article 33 Law 4629/2019 Type: Complaint Outcome: Other Outcome Started: Decided: 30
    9 KB (1,089 words) - 15:35, 6 December 2023
  • "Hospital") notified the Authority of two personal data violations, pursuant to art. 33 of the Regulation, dated XX and XX, concerning, respectively: a) entering
    63 KB (9,916 words) - 11:28, 16 August 2022
  • describe the categories of personal data concerned, in accordance with Article 33 (1) of the Data Protection Regulation. In a specific case, which was further
    14 KB (1,696 words) - 16:30, 6 December 2023
  • call to order against him. 2. Regarding the taking of corrective measures 33. In his additional letter to the statement of objections of 3 August 2020
    26 KB (3,862 words) - 17:41, 25 June 2022
  • notified this Authority of the personal data breach referred to in Article 33 of the Regulation, consisting in the loss of a device containing personal
    24 KB (3,672 words) - 15:54, 6 December 2023
  • .................33 5.3 Positionofthe LSA onthe objections ........................................................................33 5.4 Analysisofthe
    289 KB (33,568 words) - 15:00, 1 February 2023
  • becoming aware of the incident, it shall be immediately investigated and Article 33 (1) of the General Data Protection Regulation has been notified to the Authority
    67 KB (10,492 words) - 10:11, 17 November 2023
  • ("Terms and Conditions") (Exhibit 33). 32 CJEU judgment of 10 July 2018,C-25/17, Jehovah's Witnesses, ECLI:EU:C:2018:551. 33Terms and Conditions for the IAB
    429 KB (58,279 words) - 09:12, 2 November 2022
  • 2020. In total, these third parties had copied and stolen 389,000 records of 33,200 affected persons. The attackers were able to access the whole IT system
    25 KB (4,028 words) - 07:10, 8 February 2022
  • of appeal in labour and social law cases of 12 August 2019, GZ 11 Ra 45/19w-33, which did not allow the appeals of both parties against the judgment of the
    24 KB (3,763 words) - 09:49, 14 December 2023
  • dispensation from the licensing obligation pursuant to the Personal Data Act § 33 third paragraph, as the relevant processing of sensitive personal data lacks
    144 KB (23,058 words) - 18:48, 5 March 2022
  • Federal Public Service Finance, with registered office in Koning Albert II-laan 33/014, with company number 0308.357.159, hereinafter “de defendant” Decision
    13 KB (1,908 words) - 08:54, 29 June 2023
  • regards the relevance of compliance with Protocol No. 7 to the Treaties on the 33 Privileges and Immunities of the European Union (the ‘Protocol’) , the EDPS
    73 KB (9,347 words) - 13:28, 26 July 2023
  • the website Nieuwbouw-Eindhoven.nl used price indication. This amounts to 33 homes in total at € 11,046,775. The homes have been sold individually. This
    103 KB (17,620 words) - 10:13, 29 November 2023
  • data breaches from more than twenty Danish banks in accordance with Article 33 GDPR. The reported data breaches concern the accidental disclosure of personal
    16 KB (2,399 words) - 16:34, 6 December 2023
  • 1 March 2021: "The appeal is rejected, cf. the Public Administration Act § 33 second paragraph." A submitted a timely appeal against the Data Inspectorate's
    18 KB (2,791 words) - 18:36, 5 March 2022
  • paragraph33. 313AT SAObjection,p.11;DESAs Objection,p.9;FI SAObjection,paragraph43;NLSAObjection,paragraph33. 314 NLSAObjection,paragraphs32-33. 315NLSAObjection
    468 KB (51,340 words) - 14:10, 30 January 2023
  • legislation”. As such, the court also refused to grant summary judgement. [31]-[33] On Misuse of Private Information and Breach of Confidence: The court found
    61 KB (8,986 words) - 08:40, 22 February 2022
  • to theprotection of the processing of personal data.23. Pursuant to article 33 § 1 LCA, the Litigation Chamber is the litigation bodyadministrative ODA.
    85 KB (13,724 words) - 16:52, 12 December 2023
  • Section 17 of the Administrative Court Procedure Act, Federal Law Gazette I No. 33/ 2013 as amended (VwGVG) in conjunction with Section 38 of the General Administrative
    87 KB (14,194 words) - 10:07, 15 February 2024
  • insurer (see Armbrüster in MüKo VVG, 2nd edition 2016, § 3 marginal number 51). 33d) Likewise, a claim does not follow from Section 3 (3) VVG, since the defendant
    17 KB (2,758 words) - 14:10, 15 December 2021
  • presumably follows from the transitional rules in the Personal Data Act 2018 § 33, cf. the Privacy Board's decision PVN-2018-14. This also has support in the
    38 KB (6,275 words) - 16:13, 6 December 2023
  • security and at least contain the information and measures referred to in Article 33 (2). 3 (b), (c) and (d). The deadline for compliance is January 7, 2020 .
    21 KB (2,901 words) - 16:37, 6 December 2023
  • notified Datatilsynet of several personal data breaches pursuant to Article 33 GDPR concerning the use of the Vigilo-app. Through the use of the app, biological
    3 KB (253 words) - 18:52, 5 March 2022
  • of which has been adopted on April 11, 2018 (hereinafter: “WP 260 rev.01”). 33. Note that the EDPS took up and reapproved the documents adopted by the said
    96 KB (13,984 words) - 16:57, 6 December 2023
  • controller notified the Greek DPA of a personal data breach under Article 33 GDPR by the processor related to the transmission of the data. The DPA considered
    25 KB (3,943 words) - 14:32, 28 September 2022
  • Poliambulatorio Talenti S.r.l. with registered office in Rome, via Padre Semeria, 33 C.F. 1961330584/ P.IVA 01021921000, (hereinafter the "health facility"), the
    21 KB (3,092 words) - 15:54, 6 December 2023
  • notification of data security breach, according to the provisions of art. 33 of the RGPD.
    4 KB (383 words) - 15:17, 13 December 2023
  • the new law came into force. It follows from the Personal Data Act 2018 § 33 that the rules on the processing of personal data that applied at the time
    43 KB (6,983 words) - 09:09, 21 August 2022
  • 2017 - 2 A 662/17 - juris, marginal 38; Schild, in: BeckOK Datenschutzrecht, 33 Ed. 1 August 2020, DS-GVO, Art. 4, marginal 34). b) Personal data are also
    58 KB (9,665 words) - 08:51, 25 November 2020
  • notwithstanding the findings of the inspection report and the terms of the complaint 33. On several occasions in its submissions, the second defendant points out
    127 KB (21,484 words) - 17:01, 12 December 2023
  • inseparably linked with those of the data controller, in this case Google LLC. 33. At this stage, the Litigation Chamber makes a preliminary observation on
    131 KB (22,429 words) - 16:57, 12 December 2023
  • this was addressed by management and that awareness was being looked into. 33 After the first four data leaks in 2016, UWV decided to take organizational
    106 KB (14,502 words) - 17:09, 12 December 2023
  • that 2 co-owners [indicating their names and financial situation] do not pay 33 their monthly advances”. He believed that the controlled "used the personal
    76 KB (11,147 words) - 16:58, 6 December 2023
  • of the RGPD with penalty of warning. 2. Infringement of articles 25, 32 and 33 of the RGPD in relation to the article 5.1.f) of the RGPD, typified in article
    51 KB (7,770 words) - 14:08, 13 December 2023
  • interested parties and the consequent active amendment provided for by art. 33 GDPR for data breach situations "which, therefore, would be" attributable
    50 KB (8,001 words) - 15:52, 6 December 2023
  • these terms have an ordinary meaning and do not create legal uncertainty (B.30-33). The creation of the passenger database and its administration by the PIU
    6 KB (801 words) - 16:31, 24 March 2022
  • (2000). There is a special transitional rule in the Personal Data Act (2018) § 33 first paragraph infringement fine, which reads: «The rules on the processing
    30 KB (4,302 words) - 18:53, 5 March 2022
  • breach and contain at least the information and measures referred to in Article 33 paragraph 3 points b), c) and d) of Regulation 2016/679 , i.e: (1) the name
    27 KB (4,390 words) - 09:50, 17 November 2023
  • structure of 7 faculties, 2 schools, 4 research institutes, 27 departments, 33 services and administrative Units, and 4 management centres, and the data
    29 KB (4,607 words) - 13:38, 13 December 2023
  • MB and the BF1 for comments. I.7. With a statement of May 4th, 2021 (VWA ./33, see point II.2), the MB stated that they only use the free version of XXXX
    158 KB (26,392 words) - 08:25, 7 June 2023
  • Article 32 paragraph (1) and paragraph (2) of the GDPR, as well as of Article 33 paragraph (1) of the GDPR, which led to imposing an administrative fine in
    5 KB (568 words) - 15:10, 13 December 2023
  • this decision is taken by the chairman Hielke Hijmans, sitting alone (Article 33, §1, paragraph 3 WOG). 27. On March 4, 2022, the Disputes Chamber rules in
    102 KB (15,787 words) - 07:39, 6 September 2023
  • e and i FGO § 32a Paragraph 1 No. 1, Paragraph 2, § 32c Paragraph 1 No. 1§ 33, § 90 a, § 115 Paragraph 2 No. 1 and 2, § 135 Paragraph 1 VwGO § 40 paragraph
    97 KB (16,519 words) - 09:57, 22 February 2023
  • the crisis Covid-19 ”from the Ministry of Health, dated May 14, 2020. - "Law 33/2011, of October 4, General of Public Health". - “Law 31/1995, of November
    56 KB (8,737 words) - 09:35, 26 May 2021
  • Language(s): French Original Source: GBA (in French) Initial Contributor: kv33
    7 KB (681 words) - 10:43, 15 January 2024
  • received Report on the violation of personal data, in accordance with Article 33, paragraph 1 of the General Regulation on Data Protection. Also, the data
    7 KB (855 words) - 15:30, 30 October 2023
  • for the deletion of personal data other than those referred to in Section 33 of the Act. According to Section 34, Subsection 1, Clause 4 of the Act, other
    26 KB (4,072 words) - 12:18, 27 March 2024
  • equivalence and effectiveness (compare the judgment of 16 December 1976, C-33/76, Rewe, ECLI:EU:C:1976:188, and the judgment of 13 July 2006, C-295/04 -
    34 KB (5,179 words) - 07:10, 7 April 2020
  • of non-compliance from the municipality (the data controller) under Article 33 GDPR. On the 7 December 2023, the Norwegian DPA imposed a reprimand on the
    34 KB (5,375 words) - 10:07, 17 November 2023
  • implementation is taking longer than the UWV had hoped. Review Assessment framework 33. In the investigation report, the AP established that the UWV in the employer
    33 KB (5,112 words) - 17:10, 12 December 2023
  • the Communication has been largely in line with the requirements of Articles 33 and 34 of the General Data Protection Regulation. However, the notice included
    8 KB (1,064 words) - 09:48, 17 November 2023
  • letter a, cf. Article 6, subsection 1, and Article 32, subsection 1, Article 33, subsection 1, and Article 35, subsection 1. Furthermore, the Danish Data
    117 KB (18,075 words) - 10:19, 12 September 2022
  • unnecessarily disruptive to the use of the service for which it is provided. Recital 33: It is often not possible to fully identify the purpose of personal data processing
    182 KB (24,065 words) - 13:40, 9 July 2021
  • on video devices, paragraph 33. 223EDPB Guidelines 3/2019 on video devices, paragraph 36. 224Case C-13/16 Rīgas, paragraph 33; and WP29 Opinion 06/2014 on
    276 KB (38,206 words) - 09:46, 20 January 2023
  • equivalence and effectiveness (compare the judgment of 16 December 1976, C-33/76, Rewe, ECLI:EU:C:1976:188, and the judgment of 13 July 2006, C-295/04 -
    37 KB (5,721 words) - 12:41, 16 September 2021
  • was not specifically shown. However, this must actually have been suffered. 33Any alleged material losses that are said to be related to the registration
    27 KB (4,216 words) - 13:26, 8 January 2024
  • Original Language(s): Dutch Original Source: AP (in NL) Initial Contributor: kv33
    10 KB (1,351 words) - 17:05, 12 December 2023
  • Cooperation with the supervisory authority Article 32: Processing security Article 33: Notification of personal data breach Article 34: Notification of personal
    9 KB (1,168 words) - 15:30, 6 December 2023
  • 95/46 Paragraph 13 Swedish Law on Personal Data, ‘the PUL (1998:204) Paragraph 33 Swedish Law on Personal Data, ‘the PUL (1998:204) Paragraph 36 Swedish Law
    10 KB (1,172 words) - 06:16, 8 January 2023
  • - corr., 10/17, 46/19 - US decision, 47 / 19). In accordance with Article 33 of the ZNPPol, the collection and processing of data is one of the police
    10 KB (1,575 words) - 13:37, 10 August 2021
  • Dutch Original Source: APD/GBA (Belgium) (in Dutch) Initial Contributor: Kv33
    8 KB (919 words) - 09:54, 14 December 2023
  • 0308.357.753, North Galaxy Towers, 1030 BRUSSELS, Boulevard du Roi Albert lI33, requesting party, having acted as counsel Maître VAN GYSEGHEM Jean-Marc,
    11 KB (1,467 words) - 09:40, 6 July 2023
  • complied with its obligations under Article 33(1) but as well with Article 33(5). In relation to Article 33(1), the DPC view was that, on the basis of the
    10 KB (1,404 words) - 07:47, 19 October 2021
  • Transavia about a security breach of personal data as referred to in article 33 of the AVG.In this notification is indicated by Transavia that a malicious
    66 KB (8,861 words) - 17:08, 12 December 2023
  • CJEU - C-33/22 Österreichische Datenschutzbehörde Court: CJEU Jurisdiction: European Union Relevant Law: Article 2(2)(a) GDPR Article 4(7) GDPR 16(2) TFEU
    8 KB (1,127 words) - 08:53, 30 January 2024
  • Articles 33 and 34 GDPR. The DPA held that although controllers can investigate potential data breaches before the 72-hour time limit in Article 33 GDPR starts
    21 KB (3,220 words) - 17:44, 27 April 2022
  • aimed at ensuring "a minimum level of protection of personal data" (see art. 33 of Legislative Decree no. 196 of 30.6.2003, Personal Data Protection Code
    34 KB (5,420 words) - 15:51, 6 December 2023
  • duty on the controller to report such a breach is required by law in Article 33 GDPR. When arguing for a smaller fine, the municipality claimed their case
    38 KB (5,967 words) - 11:48, 7 May 2022
  • three communications relating to violations of personal data pursuant to art. 33 of the Regulation, in relation to the findings of the controls periodically
    38 KB (5,724 words) - 15:47, 6 December 2023
  • the data controller concerned by this procedure. C. On the applicable law 33. The first paragraph of Article 87 of the Data Protection Act, Article I of
    39 KB (6,015 words) - 17:11, 6 December 2023
  • Sectorial Committee of the National Register (CSRN) or by way of an order royal.9 33. The Contentious Chamber underlines that in this case, the Royal Decree of
    43 KB (6,670 words) - 16:58, 12 December 2023
  • APD/GBA (Belgium) - 33/2022 (category Article 33 GDPR)
    and 32 GDPR. Moreover, the DPA noted that the controller violated Article 33 GDPR by not notifying the DPA of the data breach. The DPA issued a warning
    26 KB (4,116 words) - 15:36, 30 March 2022
  • Datatilsynet (Norway) - 20/03046 (category Article 33(1) GDPR)
    they did not adhere to Article 33(5) GDPR, nor Article 33(1). The Norwegian DPA held that Trumf had breached Article 33(1) for failing to notify them of
    87 KB (13,389 words) - 08:08, 24 June 2022
  • Datatilsynet (Denmark) - 2021-32-2067 (category Article 33 GDPR)
    to the Danish DPA in accordance with Article 33(1) of the Danish Data Protection Ordinance (i.e. Article 33 GDPR). Share your comments here! Share blogs
    18 KB (2,588 words) - 16:07, 3 November 2021
  • measures to ensure the security of personal data, in violation of Articles 32(1), 33, and 34 GDPR. The controller is Bank of Ireland (BOI). Between 9 November
    6 KB (723 words) - 16:24, 6 April 2022
  • technical measures to prevent the breach in violation of Article 5(1)(f), Article 33 and Article 34 GDPR. The data breach also revealed that personal and special
    10 KB (1,225 words) - 12:13, 24 March 2022
  • Datatilsynet (Norway) - 21/03126 (category Article 33(1) GDPR)
    Article 33(1) GDPR by failing to notify a personal data breach without undue delay. Our inquiry has only focused on Argon’s compliance with Article 33(1) GDPR
    133 KB (19,309 words) - 05:16, 24 March 2023
  • not encrypting a USB flash drive which contained personal data, and Article 33(1) GDPR by not reporting the data breach to the DPA after the USB flash drive
    8 KB (1,031 words) - 13:32, 18 May 2022
  • DSB (Austria) - 2023-0.603.142 (category Article 33(1) GDPR)
    accordance with Article 33(3) GDPR. In this respect, the DPA noted that the controller failed to fulfil its obligation under Article 33(1) GDPR because it did
    76 KB (12,550 words) - 09:24, 28 February 2024
  • approximately €5000 (24.740 RON) for violating Articles 5(1)(a), (c), (2), 6, 9 and 33 GDPR. The ANSPDCP especially found that legitimate interest is not a legal
    5 KB (610 words) - 19:23, 25 November 2022
  • DPC (Ireland) - DPC ref: IN-20-4-1 (category Article 33(1) GDPR)
    fined a teaching council €60,000 for violations of Articles 5(1)(f), 32(1) and 33(1) GDPR by failing to notify a data breach in due time, and lacking appropriate
    5 KB (602 words) - 08:39, 3 March 2022
  • ANSPDCP (Romania) - 07.12.2023 (category Article 33(1) GDPR)
    controller did not notify the data breach to the DPA with the observance of Article 33(1) GDPR, respectively within 72 hours of having become aware of it. Therefore
    4 KB (410 words) - 10:12, 17 January 2024
  • HDPA (Greece) - 4/2023 (category Article 33 GDPR)
    5(1)(a) and (f), and for failing to notify the breach in line with Articles 33 and 34 GDPR. The data controller, Piraeus Bank, provided data relating to
    10 KB (1,249 words) - 12:16, 8 May 2023
  • DPC - Tusla Child and Family Agency (category Article 33(1) GDPR)
    the children. The DPC also held that the third breach also violated Article 33(1), because of a failure to notify the DPC without undue delay. Aside from
    6 KB (761 words) - 21:06, 24 February 2021
  • online Did the breaches reported by UCD infringe Articles 5(1)(f)- 5(1)(e) and 33(1) GDPR? The DPC held that UCD infringed: - Articles 5(1)(f) and 32(1) GDPR
    5 KB (626 words) - 16:35, 28 October 2021
  • within 72 hours from the moment the controller became aware of it under Article 33 GDPR. Thus it issued a warning as the controller failed notify the DPA. In
    7 KB (933 words) - 11:12, 31 August 2022
  • thus questioning the content of a standard issued by the executive branch." 6 33. Within the framework of its missions set out in Article 4 of the CPC, the
    206 KB (30,485 words) - 09:54, 14 December 2023
  • notification of personal data breaches. In particular, pursuant to Article 33(2) GDPR in the event of a personal data breach, the processor is required
    52 KB (8,196 words) - 15:46, 27 March 2024
  • ANSPDCP (Romania) - Valoris Center S.R.L. (category Article 33 GDPR)
    customers who used the internet banking service. Hence, pursuant to Article 33 GDPR, the controller notified the Romanian DPA of a personal data breach.
    5 KB (624 words) - 15:10, 15 December 2021
  • generalised civic access - pursuant to art. 5, paragraph 2, of Legislative Decree n. 33/2013 - to several schools in the province of Modena aimed at obtaining data
    24 KB (3,805 words) - 13:05, 19 May 2021
  • Datainspektionen - DI-2019-9432 (category Article 33(1) GDPR)
    by encryption. The DPA found that the University violated Article 33(1) and Article 33(5) by failing to timely document and report a data breach. According
    59 KB (8,959 words) - 11:43, 7 April 2022
  • UODO (Poland) - DKN.5131.43.2022 (category Article 33 GDPR)
    The Polish DPA found that the controller was in breach of Article 33(1) GDPR, Article 33(3) GDPR, Articles 34(1) and 34(2) GDPR, and Article 5(2) GDPR, Firstly
    57 KB (9,261 words) - 08:13, 25 October 2023
  • Datatilsynet (Denmark) - 2021-442-14071 (category Article 33(1) GDPR)
    article 32, subsection 1. 3.2. Article 33 of the Data Protection Regulation It follows from the regulation's article 33, subsection 1, that in the event of
    17 KB (2,465 words) - 14:29, 27 July 2022
  • 31st, 2013 WAG 2018 § 33 today WAG 2018 § 33 valid from June 15, 2018 last changed by Federal Law Gazette I No. 37/2018 WAG 2018 § 33 valid from January 3
    137 KB (21,991 words) - 12:01, 20 September 2023
  • AEPD (Spain) - PS/00080/2022 (category Article 33 GDPR)
    dates 07/10/2020, 10/30/2020 (2:33 p.m.), 10/30/2020 (12:37 p.m.), 12/03/2020 and 01/26/2021. In the one dated 10/30/2020 (2:33 p.m.), addressed to a "collaborator"
    47 KB (7,265 words) - 10:05, 21 July 2022
  • UODO (Poland) - DKN.5131.16.2021 (category Article 33(1) GDPR)
    Article 33(1) GDPR. Moreover, it violated Article 34(1) GDPR since it did not provide the data subjects with the information listed in Article 33(3)(b),
    88 KB (14,432 words) - 10:31, 24 November 2021
  • business is the retail trade of computers, their peripherals and software. Sales 33. According to information received from Verkkokauppa.com Oyj on November 2
    77 KB (12,352 words) - 07:20, 23 April 2024
  • and to submit relevant evidence. Written submissions PPN-01-33#6/01.02.2022 and PPN-01- 33#7/01.02.2022 were submitted in response, expressed respectively
    71 KB (11,948 words) - 17:01, 8 February 2023
  • CNIL (France) - SAN-2023-008 (category Article 33 GDPR)
    browser and the server hosting the site. 8. Failure to comply with Article 33 GDPR The controller was aware of the breach since 29th September 2020, when
    10 KB (1,254 words) - 16:37, 8 January 2024
  • UODO (Poland) - DKN.5110.12.2021 (category Article 33(1) GDPR)
    authority, pursuant to Art. 33 paragraph 1 of the Regulation 2016/679, which must contain the information specified in Art. 33 paragraph 3 of this regulation
    51 KB (8,343 words) - 14:16, 15 June 2022
  • APD/GBA (Belgium) - 29/2023 (category Article 33 GDPR)
    Relevant Law: Article 25(1) GDPR Article 25(2) GDPR Article 32 GDPR Article 33 GDPR Article 34 GDPR Article 60 GDPR Type: Complaint Outcome: Rejected Started:
    5 KB (536 words) - 14:11, 21 March 2023
  • Datatilsynet (Denmark) - 2021-441-9356 (category Article 33(1) GDPR)
    better user management and logging. 3.2. Article 33 of the Data Protection Regulation It follows from Article 33 (1) of the Regulation 1, that the data controller
    14 KB (2,142 words) - 12:58, 14 June 2022
  • Datatilsynet (Denmark) - 2021-31-4596 (category Article 33(1) GDPR)
    data has been made in advance. 3.2. Article 33 of the Data Protection Regulation It follows from Article 33 (1) of the Regulation 1, that the data controller
    22 KB (3,525 words) - 12:17, 2 February 2022
  • considerable delay and in any case beyond 72 hours as required by Article 33 GDPR. The data breach was notified to the affected controllers about two weeks
    129 KB (20,678 words) - 08:25, 8 May 2024
  • UODO (Poland) - DKN.5131.11.2020 (category Article 33(1) GDPR)
    authority, in accordance with Art. 33 paragraph 1 of the Regulation 2016/679, which must contain the information specified in art. 33 paragraph 3 of Regulation
    51 KB (8,179 words) - 12:07, 11 August 2021
  • APD/GBA (Belgium) - 101/2022 (category Article 33(1) GDPR)
    controller failed to respect its notification duty under Article 33(1) and Article 33(5). Article 34 was not vioated, as, the data subject was already
    88 KB (13,264 words) - 09:09, 29 June 2022
  • NAIH (Hungary) - NAIH-2894-3/2021 (category Article 33(1) GDPR)
    Law: Article 32(1)(a) GDPR Article 32(1)(b) GDPR Article 32(2) GDPR Article 33(1) GDPR Article 34(1) GDPR Type: Investigation Outcome: Violation Found Started:
    6 KB (656 words) - 09:33, 28 July 2021
  • [may] 32GwH 51/2014, March 27, 2014, p. 15. 33 cf. supra marginal 8. Decision on the merits 66/2021 - 28/33 exceed one year from receipt of the request
    88 KB (13,010 words) - 20:12, 30 December 2021
  • Federal Finance Court, is regulated by the VwGVG, Federal Law Gazette I 2013/33 as amended by Federal Law Gazette I 2013/122 (§ 1 leg.cit.). Pursuant to Section
    46 KB (7,140 words) - 13:24, 13 March 2023
  • Persónuvernd (Iceland) - 2021061419 (category Article 33 GDPR)
    Authority, cf. Paragraph 2 Article 27 Act no. 90/2018, Coll. Paragraph 1 Article 33 of the Regulation. According to the answers of the Directorate of Labor, it
    12 KB (1,601 words) - 15:28, 4 October 2021
  • in February 2021. The Finnish DPA found that the firm had violated Articles 33(1) GDPR (notification of data breaches to the DPA) and Article 34(1) GDPR
    153 KB (24,570 words) - 15:11, 26 March 2024
  • UODO (Poland) - DKN.5131.34.2021 (category Article 33(1) GDPR)
    The Polish DPA held that a medical facility violated Articles 33(1) and 34(1) GDPR by not notifying the DPA and the data subject of a data breach after
    61 KB (9,994 words) - 08:37, 14 September 2022
  • UODO (Poland) - DKN.5131.49.2021 (category Article 33(1) GDPR)
    authority, in accordance with Art. 33 sec. 1 of Regulation 2016/679, which must contain the information specified in art. 33 sec. 3 of Regulation 2016/679 and
    63 KB (10,380 words) - 08:26, 17 October 2023
  • UODO (Poland) - DKN. 5131.27.2022 (category Article 33(1) GDPR)
    Polish DPA held that the Polish Chief National Surveyor violated Articles 33(1) and 34(1) GDPR by not notifying the DPA and the data subjects after it
    80 KB (13,127 words) - 07:57, 14 September 2022
  • implementeren die later zou worden gevolgd door een definitieve oplossing.”. 33 33 Repliekconclusie verweerder, rn. 15. Beslissing ten gronde 82/2020- 35/48
    124 KB (18,772 words) - 17:01, 12 December 2023
  • body (Article 33 (3) of Regulation 2016/679), procedures for keeping an internal register of data protection breaches referred to in Art. 33 paragraph. 5
    156 KB (25,012 words) - 10:01, 17 November 2023
  • version of which has been adopted April 11, 2018 (hereafter: "WP 260 rev.01"). 33. Note that the European Data Protection Board (hereafter: "EDPS"), which replaced
    52 KB (7,520 words) - 13:13, 20 July 2021
  • □□□□ 2220406-0032- □□ 41- □ 9- □ 1-THE[!]_J Page 33 Court of Appeal Brussels - 2020 / AR / 1111 p. 33Means 6 (mainly): The contested Decision complies
    37 KB (5,919 words) - 08:54, 20 August 2021
  • Act (2018) or the Personal Data Act (2000). The Personal Data Act (2018) § 33 first paragraph contains a special transitional rule infringement charge,
    45 KB (6,645 words) - 14:40, 28 March 2022
  • 2018 pursuant to Act 15 June 2018 no. 38 on the processing of personal data § 33 other joint. At the same time, the Ministry of Justice and Emergency Preparedness
    16 KB (2,010 words) - 14:32, 8 November 2022
  • the authority may obtain the information in the CPR, cf., however, section 33 (2). First Information collected through the CPR subscription includes non-sensitive
    13 KB (1,990 words) - 16:22, 6 December 2023
  • LG Ravensburg - 2 O 228/22 (category Article 33 GDPR)
    Article 34 GDPR or the data protection supervisory authority under Article 33 GDPR because the requirements of the legal definition in Article 4(12) GDPR
    26 KB (4,057 words) - 13:39, 11 April 2024
  • signature of the applicant or his lawyer. Decision on the substance 57/2023 – 33/33 a contradictory petition must be submitted to the Registry of the Market
    99 KB (15,129 words) - 09:21, 31 May 2023
  • damage from criminal offenses (cf. § 34 Para. 1 No. 1 in conjunction Section 33 (1) no. 2 letters a, b, d, f, g BDSG) is not provided for. c) An interest
    32 KB (5,093 words) - 16:07, 11 September 2022
  • the FISA (Foreign Intelligence Surveillance Act) and Executive Order 123331. 33. The TJEU concluded that such interference is not proportionate under EU law
    30 KB (4,708 words) - 16:56, 6 December 2023
  • For its part, the security of personal data comes regulated in articles 32, 33 and 34 of the RGPD, which regulate the security of the processing, notification
    34 KB (5,184 words) - 13:22, 13 December 2023
  • interested party C/ Jorge Juan, 6 www.aepd.es 28001 – Madrid sedeagpd.gob.es 33/33 expresses its intention to file a contentious-administrative appeal. If this
    103 KB (17,238 words) - 13:27, 3 April 2023
  • PRESIDENT SECURITY OFFICE PERSONAL DATA Warsaw, January 19, 2022 DECISION DKN.5131.33.2021 Based on Article. 104 § 1 of the Act of June 14, 1960, Code of Administrative
    81 KB (13,351 words) - 14:48, 2 March 2022
  • UODO (Poland) - DKN.5131.42.2022 (category Article 33 GDPR)
    authority, in accordance with Art. 33 section 1 of Regulation 2016/679, which must include the information specified in Art. 33 section 3 of Regulation 2016/679
    95 KB (15,337 words) - 16:38, 19 March 2024
  • the interests of the Medical List and the users. That is not the case here. (33) The Norwegian Medical Association has filed the following claim: «1. The
    46 KB (7,024 words) - 06:18, 6 March 2022
  • violating Italian national law according to Article 26(4) Legislative Decree 33/2013 that sets - among others - limits to publish personal data on recipients
    77 KB (12,455 words) - 09:35, 15 September 2021
  • UODO (Poland) - DKN.5131.59.2022 (category Article 33(1) GDPR)
    controller. Regarding the personal data breach in itself, under Articles 33(1) and 33(3) GDPR, the controller is obliged to notify the competent national supervisory
    108 KB (17,728 words) - 07:57, 25 April 2024
  • 82 GDPR (cf. Kühling/Buchner/Jandt, 3rd edition 2020, GDPR Art. 33 para. 81 acc. Art. 33 Para. I S. I GDPR, in the event of a violation of the protection
    66 KB (11,183 words) - 09:28, 12 July 2023
  • Rb. Den Haag - SGR 20/1516 (category Article 33(1) GDPR)
    Since OLVG was legally required to report the data breaches under Article 33(1) GDPR, OLVG claimed that the data breach reports were evidence that it involuntarily
    14 KB (2,003 words) - 10:07, 10 September 2021
  • nature is only permitted with due observance of Articles 32 and 33. (…). Articles 32 and 33 of the Implementing Act are an elaboration of the option offered
    38 KB (6,263 words) - 16:40, 15 June 2022
  • of, at least, C/ Jorge Juan, 6 www.aepd.es 28001 – Madrid sedeagpd.gob.es 33/33 20% of the amount of the proposed penalty, these being cumulative with each
    106 KB (15,486 words) - 14:32, 15 May 2024
  • interests required within the meaning of mildest means (hereinafter (1)). 33 Furthermore, it overlooks the fact that conflicting interests, Fundamental
    65 KB (9,647 words) - 11:40, 4 October 2023
  • APD/GBA (Belgium) - 62/2022 (category Article 33(1) GDPR)
    was not obliged to report the data breach to the DPA according to Article 33(1) GDPR. Regarding the newsletter, the DPA considered it partly as direct
    58 KB (9,477 words) - 18:41, 1 June 2022
  • used the new urgency procedure for handling revenge porn based on Article 33-bis of its internal procedural regulation. The DPA introduced the Article
    12 KB (1,636 words) - 15:13, 13 July 2022
  • three reports of breaches of personal data security in accordance with Article 33 of the Data Protection Ordinance [1], has become aware that MaCom A / S as
    14 KB (2,119 words) - 16:36, 6 December 2023
  • subparagraph c (See KHO's decision (1671/23) of 5 June 2023, paragraphs 31-33, 35, 40 and 42.) Personal data must be appropriate and relevant and limited
    15 KB (2,137 words) - 20:18, 27 March 2024
  • violated her portrait right. The paintiff also saw a violation of Articles 33, 35 and 36 of the GDPR, which the defendant has not contested. The Court found
    24 KB (3,863 words) - 16:19, 10 March 2022
  • Datatilsynet (Denmark) - 2020-442-8862 (category Article 33(3) GDPR)
    this notification satisfied the requirements of Article 34(2) and Article 33(3) GDPR. The DPA expressed serious criticism to the controller for violating
    24 KB (3,735 words) - 17:29, 23 February 2022
  • UODO (Poland) - DKN.5131.3.2021 (category Article 33(1) GDPR)
    supervisory body, pursuant to Art. 33 paragraph 1 of the Regulation 2016/679, which must contain the information specified in art. 33 sec. 3 of Regulation 2016/679
    129 KB (20,850 words) - 12:13, 7 July 2021
  • always communicated to the defendant's partners against direct marketing. 33. With regard to the conclusion of the processor agreement in accordance with
    113 KB (18,732 words) - 16:50, 12 December 2023
  • (the Disputes Chamber underlines). Decision on the merits 24/2021 - 10/44 33. In its case law, the Court of Justice has defined the concept of 'controller'
    110 KB (18,238 words) - 16:56, 12 December 2023
  • individuals with regard to the processing of personal data Page 33 Decision 55/2021 - 33/34personal character, it cannot impose a fine on the defendant
    81 KB (13,211 words) - 16:59, 12 December 2023
  • two members, this decision is made by the chairman, sitting alone (Article 33, §1, paragraph 3 WOG). II. Motivation a) Competence of the Data Protection
    84 KB (12,933 words) - 16:46, 12 December 2023
  • complainants and defendants present as well as counsel for the defendants. 33. The details and additions were made in the minutes of the hearing adopted
    82 KB (12,100 words) - 17:01, 12 December 2023
  • as required by Article 33(5) GDPR 16. Secondly, with regard to the investigation of incidents within the meaning of Article 33(5) GDPR, the Inspectorate
    66 KB (9,820 words) - 10:13, 13 September 2023
  • particular articles L.111-1, L.111-2, L.111-3, L.221- 15, L.224-30, L.224-29, L.224-33, L.212-1, L.212-3, L.2141-1, L.211-1, L.232-1, R.631-3, L.621-1, L.621-2,
    392 KB (67,730 words) - 15:27, 17 March 2022
  • 21. … 22. … 23. … 24. … 25. … 26. … 27. … 28. … 29. … 30. … 31 .. .. 32. .. 33. .. 34. .. 35. . public interest" for the professional activities of the complainant
    36 KB (5,761 words) - 17:19, 22 April 2024
  • disclosure of the information was mandatory under Italian law (legislative decree 33/2013). The candidate later submitted a complaint to the Italian DPA. The controller
    49 KB (7,883 words) - 15:12, 13 July 2022
  • Federal Law Gazette I No. 33/2013 VwGG § 33 valid from 03/01/2013 to 12/31/2013 last changed by BGBl. I No. 33/2013 VwGG § 33 valid from 07/01/2008 to 02/28/2013
    25 KB (4,053 words) - 11:11, 10 March 2023
  • Article 8(3) of the Charter of Fundamental Rights of the European Union. 33. 33. The Litigation Chamber refers in this respect to the judgment of the Court
    52 KB (8,603 words) - 16:55, 12 December 2023
  • CNIL (France) - SAN-2023-015 (category Article 33 GDPR)
    Article 14 GDPR, Article 15 GDPR, Article 28 GDPR, Article 32 GDPR and Article 33 GDPR, as well as of Article L. 34-5 of the French Post and Electronic Communications
    67 KB (10,546 words) - 13:55, 25 October 2023
  • of Art. 33 Para. 3 lit. b GDPR, providing the contact details. 59 (b) The defendant also informed the plaintiff within the meaning of Art. 33 Para. 3 lit
    31 KB (5,017 words) - 15:08, 20 October 2023
  • Paragraph9 1. The fiscal remedy is inadmissible. Paragraph10 a. Pursuant to section 33(1) no. 1 of the Financial Court Code (Finanzgerichtsordnung - FGO), recourse
    19 KB (2,925 words) - 11:09, 27 July 2022
  • and does not distinguish between those and the personal data (...Paragraph 33: However, it is the search engine manager who determines the purposes and
    17 KB (2,620 words) - 14:51, 13 December 2023
  • OF HRK 1,200.00 (in letters: one thousand two hundred kuna). Based on Art. 33, paragraph 11 of the Misdemeanor Code, the defendant is obliged to pay a fine
    16 KB (2,404 words) - 15:46, 30 October 2023
  • exceptions listed in Articles 32 and 33 Implementation Act. Although Brein can rely on the exception laid down in Article 33(2)(b) Implementation Act, since
    59 KB (9,649 words) - 08:09, 20 October 2022
  • LG Bielefeld - 19 O 147/22 (category Article 33 GDPR)
    decision: 30The admissible action is unfounded. 31A. 32The action is admissible. 33I. 34The admissibility of the claim does not conflict with the vagueness of
    37 KB (5,986 words) - 14:50, 9 May 2023
  • should have also been notified to the DPA and the claimant pursuant to Articles 33 and 34 due to the high risks to her rights and freedoms. Claimant did not
    57 KB (9,344 words) - 10:03, 7 April 2021
  • according to Art. 15 (4) GDPR (Gola GDPR/Franck, 2nd ed. 2018, GDPR Art. 15 Rn. 33, 34). It is argued that this restriction is not only limited to the right
    18 KB (2,724 words) - 08:24, 14 March 2022
  • above the base interest rate since lis pendens. 32 The defendant requests, 33 dismiss the appeal. 34 The defendant defends the judgement of the first instance
    51 KB (8,215 words) - 09:55, 13 May 2022
  • balancing of interests that is to be done. The tribunal refers to sections 26 to 33, which apply to the data subject's right to protest, and the exceptions to
    36 KB (5,859 words) - 06:40, 6 July 2022
  • information, such as in particular: a) political background information [...] " 33. It follows from the cited provisions of Section 2 f (1) FOG that the Respondent
    31 KB (4,648 words) - 13:56, 12 May 2023
  • proceedings would therefore have to be discontinued due to a procedural impediment. 33 2. The decision on costs is based on §§ 71 OWiG, 467 paragraph 1, paragraph
    36 KB (5,810 words) - 13:09, 21 January 2022
  • for the processing must be, cf. Prop. 56 LS (2017-2018) section 6.3.2 page 33. Transparency Overall, it is the Data Inspectorate's assessment that there
    49 KB (7,572 words) - 16:14, 6 December 2023
  • the use of regular mail, the cost of such operation would amount to over PLN 33 749 175 (the amount obtained by multiplying the number of data subjects to
    52 KB (8,444 words) - 10:01, 17 November 2023
  • ICO (UK) - Cabinet Office (category Article 33(1) GDPR)
    within 72 hours of becoming aware of the data breach in accordance with Article 33(1) of the GDPR. 7 ICO. Information Commissioner's Office Circumstances surrounding
    79 KB (10,566 words) - 10:48, 7 December 2021
  • Hospital notified the Italian DPA of a personal data breach pursuant to Article 33 GDPR. The hospital accidentally sent to all the patients involved in a clinical
    59 KB (9,485 words) - 13:30, 29 March 2023
  • (Articles 94-97 WOG)". ' A summary of these four new pleas was included in Rn. 33 of the contested decision. Cf. contested decision, Rn. 34. Cf. contested decision
    92 KB (14,873 words) - 09:03, 20 August 2021
  • regard to the two video cameras numbered 11 and 33. With regard to the two video cameras numbered 11 and 33, which film the corridors in front of the children's
    72 KB (11,993 words) - 14:21, 10 April 2024
  • that focuses on providing consultancy and advice of information technology. 33. The services for NVIS are provided by the following organizational units
    179 KB (22,957 words) - 17:07, 12 December 2023
  • 1863 / 2014, from ANSR, of 02Jan., With periodic verification by IPQ on 10.33.2013. The news report was prepared based on the elements collected through
    21 KB (3,220 words) - 09:51, 6 October 2021
  • and in accordance with, Section 110(1) of the Data Protection Act, 2018: 10 33. An Coimisiin um Chosaint SonraiData Protection Commission d) Whether Airbnb
    20 KB (3,069 words) - 18:48, 24 January 2023
  • attachment has (also) been imposed on this debt and that she will repay € 10.33 per month on this debt. 2.4. The BKR has registered 24 March 2017 as the end
    19 KB (3,021 words) - 15:48, 15 March 2022
  • access requests. The authority pointed out that the controller did answer to 33% of the access requests with undue delay. Indeed, the Authority underlined
    20 KB (3,084 words) - 16:28, 6 December 2023
  • solution "SelvBooking" was developed. 3.2. Article 33 of the Data Protection Regulation It follows from Article 33 (1) of the Regulation 1, that the data controller
    29 KB (4,593 words) - 07:34, 11 April 2022
  • processing carried out by that controller, in accordance with the procedure set out 33 in Article 60 GDPR. It must, however, be noted that the GDPR establishes exceptions
    99 KB (14,431 words) - 16:20, 6 December 2023
  • Binding Decision 01/2020, paragraph 195. 899 Draft Decision, paragraphs 9.32 - 9.33. 900 DE SAs Objection, p. 19. 901 EDPB Guidelines on calculation of fines
    53 KB (8,413 words) - 14:10, 30 January 2023
  • KHO:2024:34 Issue date: 19 March 2024 Volume number: 707 Diary number(s): 33/2022 ECLI identifier: ECLI:FI:KHO:2024:34 A had asked Google to remove several
    60 KB (9,713 words) - 13:07, 26 March 2024
  • offences in Article 83(4) to (6) of the GDPR (cf. BeckOK, DatenschutzR/Holländer, 33rd ed. 01.08.2020 GDPR Art. 83 Rn. 11, 21; Gola/Heckmann/Ehmann, 13th ed. 2019
    58 KB (9,577 words) - 08:06, 16 September 2021
  • additional data breach notification that it sent to the CNIL on February 26, 2020. 33. It is therefore up to the Restricted Committee to examine, in the light of
    56 KB (9,069 words) - 17:02, 6 December 2023
  • than 60 days after the date of the event causing the breach, and more than 33% of the total number of reports were events identified by the Company more
    105 KB (16,833 words) - 13:48, 15 November 2021
  • Legislative Decree lgs. 14 March 2013, no. 33, upon publication of the determination in question, it is stated that decree no. 33 of 2013 does not contain any specific
    29 KB (4,487 words) - 12:48, 16 June 2023
  • of confidentiality, integrity or availability), the provisions of article 33 of the GDPR for the notification of the incident to the supervisory authority
    102 KB (17,186 words) - 13:46, 26 April 2024
  • For its part, the security of personal data comes regulated in articles 32, 33 and 34 of the GDPR, which regulate the security of the treatment, the notification
    24 KB (3,512 words) - 10:43, 13 December 2023
  • compliance, despite the specific injunctions which had been addressed to it. 33. In addition, the municipality failed in its obligation to cooperate with
    22 KB (3,384 words) - 13:25, 24 January 2024
  • as Data Processor of personal data according to the definition of article 33 of Organic Law 3/2018 (…). However, we would like to inform you that we will
    26 KB (3,997 words) - 18:59, 26 February 2024
  • EU:C:1982:335, para. 21; judgment of 15 September 2005, C-495/03, EU:C:2005:552, para. 33; judgment of 6 December 2005, C-461/03, EU:C:2005:742, para. 16; established
    19 KB (3,209 words) - 13:08, 15 September 2021
  • policyholder must first notify the insurer of the occurrence of the insured event (§ 33 VersVG) and then, upon request, provide the insurer with further information
    23 KB (3,578 words) - 14:03, 12 May 2023
  • cancelled the only invoice generated on January 1, 2018 for an amount of 0.33 euros in relation to the line ***TELÉFONO.1. They indicate that the claimant's
    22 KB (3,523 words) - 13:45, 13 December 2023
  • on the defendants for the infringements of the Articles 5.1.f, 5.2, 24, 32, 33.1 and 5, 34.1 GDPR." By decision of 19 May 2021, the Disputes Chamber withdrew
    24 KB (3,393 words) - 09:25, 10 September 2021
  • information and does not distinguish between these and personal data. (…) Paragraph 33: However, it is the search engine manager who determines the ends and means
    23 KB (3,780 words) - 14:49, 13 December 2023
  • 2021, 410 Rn. 47; Paal / Pauly / Paal, 3rd edition 2021, GDPR Art. 15 Rn. 33 -39) to check the lawfulness of the data processing. 19th 4) According to
    21 KB (3,450 words) - 10:33, 8 February 2022
  • the wording, context and objectives of the regulation (see ibid., paragraph 33) ( ibid., paragraph 37). The provision should be viewed in connection with
    23 KB (3,560 words) - 14:17, 21 February 2024
  • marginal no. 16 et seq. January 2012, Dominguez, C-282/10, EU:C:2012:33, marginal 33 ff.; judgment of 21 November 2018, Ayubi, C-713/17, EU:C:2018:929, marginal
    127 KB (21,367 words) - 16:00, 22 March 2022
  • upon to comply with the provisions of art. 23, c. 1, legislative decree n. 33/2013 and art. 1, co. 16 of the l. n. 190/2012, proceeding with the publication
    75 KB (11,970 words) - 15:39, 3 December 2022
  • complainant confirms that she feels sufficiently heard by the Disputes Chamber. 33. In order to give the defendant the opportunity to defend himself/herself
    62 KB (10,509 words) - 16:58, 12 December 2023
  • recordings resumed. The Debtor has sent a letter dated 15 June 2018 entitled “33. circular ’, which circular 5.4. contains the Debtor's decision to operate
    60 KB (9,820 words) - 10:08, 17 November 2023
  • the oral hearing of these proceedings in the first instance (see paragraph 3.33.). In addition, [the employee] deliberately also recorded work on a day on
    60 KB (10,118 words) - 15:12, 5 October 2021
  • that the C / Jorge Juan, 6 www.aepd.es 28001 - Madrid sedeagpd.gob.es Page 33 33/184 person identified with the name, two surnames and NIF of the claimant
    602 KB (102,229 words) - 14:21, 13 December 2023
  • data breach notification from the controller Vodafone Romania under Article 33 GDPR, the Romanian DPA started an investigation and found that Vodafone had
    4 KB (477 words) - 13:23, 2 June 2021
  • Company") notified the Authority of two personal data violations, pursuant to art. 33 of the Regulation, dated XX and XX, concerning, respectively: a) the delivery
    32 KB (5,041 words) - 18:17, 26 April 2022
  • sanctioned by national supervisory authorities not sitting on this committee. 33. It emphasizes that the EDPS also shares the same interpretation, having specified
    93 KB (14,936 words) - 17:09, 6 December 2023
  • fulfilling transparency obligations under Article 22 of Legislative Decree 33/2013. The controller also contended that it did not process the data received
    44 KB (6,633 words) - 15:46, 5 December 2023
  • seems to him to be contrary to the law. Decision on merits 149/2023 — 10/36 33. Complainant No. 2 produces the email he sent to the first respondent on July
    113 KB (17,325 words) - 08:50, 19 March 2024
  • procedure, one or more of the following measures: 1° A call to order; […] " 33. Under 7° of III of article 20 of the law of January 6, 1978 as amended, in
    27 KB (4,166 words) - 17:06, 6 December 2023
  • data protection. The security of personal data is regulated in articles 32, 33 and 34 of the GDPR. Article 32 of the RGPD "Security of treatment", establishes
    29 KB (4,300 words) - 14:41, 13 December 2023
  • protection of the processing of personal data. 11. In application of article 33, § 1 of the LCA, the Litigation Chamber is the body of administrative litigation
    26 KB (3,856 words) - 08:51, 19 March 2024
  • EU:C:2021:504, paragraph 61, judgment Nowak, C-434/16, EU:C:2017:994, paragraph 33 and judgment Rijkeboer, C-553/07, EU:C:2009:293, paragraph 59. Page 13 of
    113 KB (12,773 words) - 15:20, 6 December 2023
  • deepened by the violations of the GDPR following the scraping incident (Articles 33, 34 GDPR on the one hand and Article 15 GDPR on the other). should have been
    130 KB (21,874 words) - 09:43, 15 February 2024
  • to follow when accessing the trail data collected by the electronic tags. 33. In addition, the Home Office provided the Commissioner with an Appropriate
    129 KB (17,281 words) - 14:57, 10 April 2024
  • subject. The controller also self-reported the breach to the DPA under Article 33. Criminal proceedings were also launched against the controller’s data protection
    60 KB (9,523 words) - 08:00, 23 August 2023
  • Creditinfo refers to the obligations imposed on lenders according to Act no. 33/2013 on consumer loans, which, among other things, aims to prevent lending
    59 KB (9,377 words) - 10:08, 8 October 2020
  • of Directive (EU) 2015/1535 of the European Parliament and of the Council. 33.Article 1(b) of Directive (EU) 2015/1535 of the European Parliament and of
    48 KB (7,926 words) - 16:56, 12 December 2023
  • seconds showing the entrance to the store, and a recording of 1 minute and 33 seconds showing the checkout area in the store. We assume that some of these
    49 KB (7,646 words) - 07:56, 7 March 2022
  • According to § 17 Administrative Court Procedure Act, Federal Law Gazette I No. 33/2013 as amended (VwGVG) in conjunction with § 38 General Administrative Procedure
    47 KB (7,519 words) - 09:28, 13 February 2024
  • forwarded to the DPA the notification of the violation pursuant to Article 33 GDPR ascertaining its willingness to cooperate with the supervisory authority
    51 KB (8,159 words) - 00:03, 18 January 2023
  • result from its disclosure or unauthorized access to them. According to Article 33 (1) of the General Data Protection Regulation, a data protection incident
    50 KB (7,405 words) - 13:58, 28 November 2022
  • notified the Romanian DPA of several data breaches, in accordance with Article 33 GDPR. Following these notifications, the DPA opened an investigation against
    6 KB (726 words) - 13:57, 22 November 2023
  • tax debtor in the sense of § 43 AO and thus a taxpayer in accordance with § 33 AO. Consequently, the plaintiff could now assert all rights to information
    35 KB (5,815 words) - 15:51, 17 March 2022
  • bottom which contained a link to the data protection policy. Not only the 33WP 260 rev.01, point 11. 34 35Idem. 36Annex 1 to the investigation report,
    82 KB (11,472 words) - 16:58, 6 December 2023
  • (lawfulness of the processing) and article 5.1. c) (principle minimization) 33. The Litigation Chamber recalls that pursuant to Article 6 of the GDPR, the
    73 KB (11,604 words) - 16:57, 12 December 2023
  • part of the public highway and a neighbouring property. surrounding land. 13 33. In its letter of 6 May 2019, the auditee stated that it was "currently limiting
    69 KB (11,315 words) - 13:30, 19 January 2022
  • the second defendant [X1 a 32Court of Appeal Brussels -2021 / AR / 163p. 33 c / ary and detailed privacy policy and has endeavored to comply with all
    72 KB (11,389 words) - 08:59, 20 August 2021
  • from Alpha Bank Romania (controller) to the Romanian DPA pursuant to Article 33 GDPR. The controller reported that a document was sent to another recipient
    6 KB (707 words) - 12:43, 7 September 2022
  • controller failed to notify the DPA within 72 hours, in violation of Articles 33; d) the controller failed to implement sufficient technical and organisational
    7 KB (862 words) - 14:35, 23 May 2023
  • DPA of a personal data breach. The notification was made pursuent to Article 33 GDPR. The notification stated that the breach occurred due to a technical
    5 KB (558 words) - 08:06, 26 September 2022
  • managers use C / Jorge Juan, 6 www.aepd.es 28001 - Madrid sedeagpd.gob.es Page 33 33/97 only the database that VDF has provided them and during the periods that
    287 KB (48,336 words) - 13:53, 13 December 2023
  • by letter, date. 1 March 2018. States that pursuant to Article 10 of Law No 33/2013 on consumer credit the lender should an assessment of the creditworthiness
    21 KB (3,344 words) - 18:11, 30 March 2020
  • with the second paragraph of Article 32 and the second paragraph of Article 33 of ZVOP 2, the findings essential for the decision in the subject matter were
    18 KB (2,848 words) - 16:45, 6 November 2023
  • controller did not appropriately notify the security breach as required by Article 33(1) and Article 34(1) GDPR. Regarding its first decision, the DPA pointed out
    19 KB (2,776 words) - 15:39, 6 December 2022
  • the Constituency by contravening the (information) obligations of Articles 33 and 34 Wbp and/or Articles 12, 13 and 14 General Data Protection Regulation3
    243 KB (40,160 words) - 11:54, 5 April 2023
  • €2000). Based on a notification of a personal data breach pursuant to Article 33 GDPR by Casa Rusu SRL, a controller, the Romanian DPA started an investigation
    7 KB (866 words) - 14:23, 21 December 2022
  • Federal Law Gazette I No. 33/2013 VStG § 64 valid from 01.07.2013 to 31.12.2013 last changed by Federal Law Gazette I No. 33/2013 VStG § 64 valid from
    52 KB (8,464 words) - 11:50, 26 July 2023
  • violations of constitutional rights from Articles 2, 14, 21, 22, 23, 25, 32, 33, 34, 35, 38, 42, Articles 49, 50, 53, 67, 74 and 78 of the Constitution and
    30 KB (4,951 words) - 10:08, 8 March 2023
  • is ordered to release the plaintiff from pre-trial legal fees of €282.15. 33. Otherwise the action is dismissed. 44. The plaintiff bears 71% of the costs
    28 KB (4,506 words) - 11:20, 4 November 2022
  • rights of data subjects in favour of the controller (the 'balancing test'). 33. As regards the first condition (the so-called 'purpose test'), the AVG acknowledges
    27 KB (4,363 words) - 16:56, 12 December 2023
  • information and do not distinguish between it and personal data”. Section 33: “Now, the operator of the search engine is the one who determines the purposes
    29 KB (4,648 words) - 12:38, 13 December 2023
  • the file was notified to the respondent, with the date of delivery being 10:33 on 04/03/2019. In accordance with Article 73.1 of the LPACAP, 'The formalities
    27 KB (4,517 words) - 13:44, 13 December 2023
  • has notified the Guarantor of a violation of personal data pursuant to art. 33 of the Regulation in relation to the report made on 29 August 2018 by the
    26 KB (4,162 words) - 15:54, 6 December 2023
  • (cf. Horn/Hofmann, in: Beck VergabeR, 4th ed. 2022, GWB § 160, paras. 26, 33). e. The applicant filed the application for review within the time limit
    62 KB (10,113 words) - 12:48, 17 August 2022
  • Article 48 of the Slovenian Act (No. 21/13, 78/13 - afterwards, 47/15 - ZZSDT, 33/16 - PZ-F, 52/16, 15/17 - dec. US, 22/19 - ZPosS and 81/19, hereafter ‘ZDR-1’)
    8 KB (1,260 words) - 14:29, 24 February 2022
  • defendant 2.1 has not fulfilled his duty to inform according to Art. 14 DSGVO, § 33 BDSG, § 46 BDSG; 2.2 has not fulfilled the plaintiff's rights to information
    117 KB (19,778 words) - 14:27, 13 April 2022
  • that a constructive dialogue with the defendant is apparently impossible. 33. By means of the correspondence communicated by the Primary Care Service to
    79 KB (12,260 words) - 17:00, 12 December 2023
  • connection with personal data processed by NautaDutilh within the meaning of Art. 33 yo. art. 4 preamble and under 12 GDPR, which until the date of the decision
    35 KB (5,770 words) - 07:13, 4 April 2022
  • fulfill a legal obligation under other laws, such as the Consumer Credit Act no. 33/2013. It is noted that the company only requests the information that is necessary
    24 KB (3,629 words) - 09:57, 16 June 2023
  • ZIUOPDVE and 3/22 – ZDeb. 3 Official Gazette of the Republic of Slovenia, no. 33/91-I, 42/97 - UZS68, 66/00 - UZ80, 24/03 - UZ3a, 47, 68, 69/04 - UZ14, 69/04
    11 KB (1,635 words) - 11:03, 21 May 2024
  • interested party. Without invalidating the obligations relating to consent, recital 33 of the Regulation recognizes that “In many cases it is not possible to fully
    97 KB (15,437 words) - 11:27, 16 August 2022
  • the pronouncement of a corrective measure. from the supervisory authority. 33. It notes, in this regard, that this provision must be interpreted in the
    48 KB (7,404 words) - 17:09, 6 December 2023
  • comparable in this respect, the judgments of December 20, 2017, C-434/16, para 33, as well as of May 7, 2009, C-553/07, para 59). It is not overlooked that
    108 KB (17,097 words) - 13:52, 12 May 2023
  • in the communication the right you wantexercise. Via *** URL.2 to *** URL.33.- A text and a control system were available for sending communicationsby
    32 KB (4,992 words) - 14:00, 13 December 2023
  • be noted that the security of personal data It is regulated in articles 32, 33 and 34 of the RGPD. Article 32 of the RGPD "Security of treatment", establishes
    32 KB (4,837 words) - 14:26, 13 December 2023
  • a - possibly vague - restriction cannot be inferred from the application. 33c) The application is unfounded because it is too broad. 34aa) Even if one
    26 KB (4,187 words) - 14:46, 8 May 2024
  • minutes of the meeting of November 18, 2021. Reasons for decision I Paragraph 33 The plaintiff's appeal, which is permissible under Section 64 (2) ArbGG, was
    28 KB (4,527 words) - 15:58, 26 April 2022
  • this point, the principle of minimum data processing (Article 5.1. c) GDPR). 33. In order to check whether the third condition of Article 6.1 f) GDPR - the
    30 KB (4,871 words) - 16:58, 12 December 2023
  • in line with the reporting obligation under the Privacy Ordinance Article 33. The discrepancy was first reported orally, but additional information was
    31 KB (4,380 words) - 06:12, 14 March 2023
  • and able to comply with these requirements certified by the controller. § 33 (6) of the Medicinal Products Act prohibits pharmacies from publishing prescriptions
    28 KB (4,474 words) - 10:31, 13 December 2023
  • AEPD (Spain) - EXP202213323 (category Article 33 GDPR)
    that the controller likely violated Articles 5(1)(c), 5(1)(f), 27, 32 and 33 GDPR. With regard to the data minimisation violation, the AEPD found that
    176 KB (27,432 words) - 07:43, 10 May 2024
  • requested the processor to "report a personal data breach". Under Article 33 GDPR, it is the controller's duty to report breaches, while processors may
    26 KB (3,912 words) - 10:46, 22 November 2023
  • 01-00001823325-0032-0040-02-01-� L _J, Court of Appeal Brussels - 2020/AR/813- p. 33 By registered letter dated 24 July 2019 (document 6 GBA), the Disputes Chamber
    85 KB (12,340 words) - 15:30, 19 August 2022
  • investigation report. 6.3. Violation of lawfulness in the three processing operations 33 Article 5, first paragraph, preamble, under a, of the GDPR specifies that
    87 KB (11,601 words) - 17:08, 12 December 2023
  • the Norwegian legislation and its development case no. 19-014740SIV-HRET (33) As an introduction to my further discussion, I find it appropriate to give
    77 KB (12,671 words) - 06:13, 6 March 2022
  • ENFORCEMENT NOTICE To: Emailmovers Limited Of: C/O Jackson Robson Licence 33-35 Exchange Street Driffield East Yorkshire YO25 6LL 1. The Information Commissioner
    29 KB (4,150 words) - 12:48, 3 August 2021
  • the Regional Court of Cologne (Landgericht Köln, LG Köln) decided in case 33 O 376/22 on an action brought by the North Rhine-Westphalia Consumer Centre
    118 KB (19,824 words) - 10:49, 6 February 2024
  • pharmacy and may only be provided by pharmaceutical staff of this pharmacy. 33. It is therefore irrelevant whether the customer reviews are attributable
    32 KB (5,236 words) - 16:00, 10 March 2022
  • main claim            EUR 2,022.37 32Credit reform file number            N04 33Date of default                         00.00.0000 34Completion Date           
    28 KB (4,215 words) - 15:09, 6 December 2023
  • notification of this decision. For the rest, the requests will be rejected. Penalty 4.33. The requested penalty will be rejected. For the time being, the trust is
    30 KB (4,797 words) - 10:03, 19 May 2021
  • what the applicable lawful base is. Decision on the merits 03/2021 - 11/11 33. Considering the importance of transparency with regard to the decision-making
    32 KB (4,880 words) - 16:50, 12 December 2023
  • to the protection of the processing of personal data. Pursuant to Article 33 §1 of the DPA, the Litigation Chamber is the administrative litigation body
    32 KB (5,190 words) - 16:51, 12 December 2023
  • proceedings are of the same nature as in the earlier phase of the procedure. 33. This means that the WOG itself already provides that the person submitting
    35 KB (5,303 words) - 17:01, 12 December 2023
  • DPA of the breach, within the 72 hour prescribed time-frame under Article 33(1) GDPR. Following the notification, the Hungarian DPA initiated an investigation
    87 KB (14,360 words) - 08:30, 27 September 2023
  • tourist tax – is authorized in execution of this article 5.1.c) of the GDPR. 33. As this tourist tax is calculated annually and on the basis of a flat rate
    33 KB (5,012 words) - 14:07, 26 July 2023
  • scraping incident does not constitute a reportable violation under Article 33 of the GDPR. (No. 37) (editorial principle) 3. Non-material damage that can
    26 KB (4,101 words) - 10:24, 13 March 2024
  • May 2018 on the protection of personal data (Journal of Laws of 2010, No. 33, item 159, as amended). 1 - 3 of Regulation (EU) 2016/679 of the European
    58 KB (9,357 words) - 10:02, 17 November 2023
  • the legal director, himself to the administrative and financial director. " 33. Regarding the establishment of an activity report, the head of the investigation
    66 KB (9,458 words) - 19:42, 4 September 2021
  • of using the telephone number for the CIT as well as a violation of Article 33 GDPR because The scraping incident was not reported to the supervisory authority
    81 KB (13,415 words) - 09:47, 15 February 2024
  • Article 84 of the Law of 17 June 2016 and Articles 33 and 35 of the Law of 18 June 2016. 2016 and 33 and 35 of the Royal Decree of 18 April 2017. The Special
    85 KB (13,820 words) - 09:28, 2 March 2023
  • Berlin-Brandenburg, judgment of January 26, 2011 - OVG 9 N 62.11 - quoted from juris, para. 33; for the administration of a sales volume meter: VG Potsdam, judgment of April
    75 KB (12,396 words) - 12:11, 30 March 2022
  • Programme. The nature of the personal data and special category data disclosed 33. As part of its guidance and resources relating to UK GDPR, the Commissioner
    54 KB (7,579 words) - 16:44, 7 May 2024
  • directly from the provisions in articles 5, subsection 1, letter f, 24, 25, 32, 33, 34, 35, 36 and 39, that the data controller must deal with the risk to the
    31 KB (4,795 words) - 15:40, 12 December 2023
  • EU:C:2021:504, paragraph 61, judgment Nowak, C-434/16, EU:C:2017:994, paragraph 33 and judgment Rijkeboer, C-553/07, EU:C:2009:293, paragraph 59. Page 15 of
    115 KB (12,842 words) - 08:38, 5 July 2023
  • pursuant to art. 33 of the Regulation The Company in relation to the violation of personal data, notified to the Guarantor, pursuant to art. 33 of the Regulation
    96 KB (15,258 words) - 16:36, 19 March 2024
  • However, the result was that the dismissal of the Restore the first judgement. [33] The decision on the costs of the The appeal procedure is based on §§ 41,
    34 KB (5,408 words) - 13:57, 20 September 2021
  • The worker can therefore be considered to have been freely given consent. 33. As to the specific nature of consent, the Litigation Chamber considers that
    34 KB (5,677 words) - 17:00, 12 December 2023
  • from the specific comments on the provision [2]: “It is clear from section 33 of the Personal Data Act that a registered person who has been notified pursuant
    35 KB (5,628 words) - 16:38, 6 December 2023
  • processing of personal data which are or will be contained in a register. Article 33. In the event of a breach of personal data security, the controller shall
    18 KB (2,834 words) - 07:37, 4 October 2021
View (previous 500 | ) (20 | 50 | 100 | 250 | 500)