Fino

French Data Protection Authority (CNIL) · 17 December 2020

Doctor

Insufficient technical and organisational measures to ensure information security

Fine€3,000Fine issued
Regulator
French Data Protection Authority (CNIL)
Decided
17 December 2020
Country
France
Sector
Health Care
Regulator’s reference
Not recorded
Fino case number
2020/FR/003
Export as PDF

What happened

The French DPA (CNIL) imposes a 3,000 euros fine on a doctor for failing to comply with the security obligation, due to the free access on the web of his patients' health data.

Summary from the GDPRhub page for this decision, written by its volunteers, not by Fino. CC BY-NC-SA 4.0.

Rules involved

  • Data breach
  • Data security

Sources

The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.

Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2020/FR/003.