Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP) · 1 November 2021
IKEA ROMÂNIA SA
Insufficient technical and organisational measures to ensure information security
- Regulator
- Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)
- Decided
- 1 November 2021
- Country
- Romania
- Sector
- Industry and Commerce
- Regulator’s reference
- Not recorded
- Fino case number
- 2021/RO/006
What happened
THE ANSPDCP (Romanian DPA) fined IKEA Romania approx €1,000 for a data breach where personal data was erroneously made available online on an IKEA members' platform. The incident affected the personal data of 114 data subjects, half of which were minors.
Summary from the GDPRhub page for this decision, written by its volunteers, not by Fino. CC BY-NC-SA 4.0.
Rules involved
The source doesn’t list which GDPR articles were involved.
- Data security
Sources
The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.
Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2021/RO/006.