Fino

Datatilsynet (Denmark) · 22 June 2022

The Danish Health Data Authority

About: Data breach, Data security

FineNo fineViolation found
Regulator
Datatilsynet (Denmark)
Decided
22 June 2022
Country
Denmark
Sector
Not given
Regulator’s reference
2021-442-14071
Fino case number
2022/DK/040
Export as PDF

What happened

The Danish DPA reprimanded the Danish Health Data Authority for violating Article 32(1) GDPR by not testing its medication database for service architecture errors, which led to a data breach affecting 267 data subjects.

Summary from GDPRhub (noyb), written by its volunteers, not by Fino. CC BY-NC-SA 4.0.

Rules involved

  • Data breach
  • Data security

Sources

The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.

Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2022/DK/040.