IMY (Sweden) · 29 March 2022
Ellos Group AB
About: Data principles, Data security
FineNo fineViolation found
- Regulator
- IMY (Sweden)
- Decided
- 29 March 2022
- Country
- Sweden
- Sector
- Not given
- Regulator’s reference
- DI-2021-4664
- Fino case number
- 2022/SE/012
What happened
In an Article 60 GDPR procedure, the Swedish DPA determined that the controller violated Article 32(1) GDPR by failing to provide an appropriate level of security for the internal handling of customers' accounts.
Summary from GDPRhub (noyb), written by its volunteers, not by Fino. CC BY-NC-SA 4.0.
Rules involved
- Art. 5Principles relating to processing of personal data5(1)(f)Read →
- Art. 32Security of processing32(1)Read →
- Art. 58Powers58(2)(b)Read →
- Data principles
- Data security
Sources
The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.
Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2022/SE/012.