French Data Protection Authority (CNIL) · 14 June 2021
BRICO PRIVÉ
Non-compliance with general data processing principles
Fine€500,000Fine issued
- Regulator
- French Data Protection Authority (CNIL)
- Decided
- 14 June 2021
- Country
- France
- Sector
- Industry and Commerce
- Regulator’s reference
- Not recorded
- Fino case number
- 2021/FR/010
What happened
The CNIL fined a DIY company a total of €500,000 for violating Articles 5(1)(e), 13, 17, and 32 GDPR and for infringing national provisions concerning cookies and unsolicited commercial communications.
Summary from the GDPRhub page for this decision, written by its volunteers, not by Fino. CC BY-NC-SA 4.0.
Rules involved
- Art. 5Principles relating to processing of personal data5(1)(e)Read →
- Art. 13Information to be provided where personal data are collected from the data subjectRead →
- Art. 17Right to erasure (‘right to be forgotten’)Read →
- Art. 32Security of processingRead →
- Data principles
- Data security
- Data subject rights
- Transparency
Sources
The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.
Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2021/FR/010.