Tietosuojavaltuutetun toimisto (Finland) · 29 October 2021
Cleaning company
Name not published.
About: Accountability, Data principles, Data security
- Regulator
- Tietosuojavaltuutetun toimisto (Finland)
- Decided
- 29 October 2021
- Country
- Finland
- Sector
- Not given
- Regulator’s reference
- 9024/181/19
- Fino case number
- 2021/FI/017
What happened
The Finnish DPA ruled that a cleaning company breached the GDPR by using WhatsApp instant messaging services with its employees as a mean to share information about its customers, including their names, address, door code or key box code. Among other things, the controller had no means to oversee the use of personal data via WhatsApp, or otherwise impose restrictions on possible further use.
Summary from GDPRhub (noyb), written by its volunteers, not by Fino. CC BY-NC-SA 4.0.
Rules involved
- Art. 5Principles relating to processing of personal data5(1)(f)Read →
- Art. 24Responsibility of the controllerRead →
- Art. 25Data protection by design and by defaultRead →
- Art. 32Security of processingRead →
- Accountability
- Data principles
- Data security
Sources
The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.
Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2021/FI/017.