Fino

Garante per la protezione dei dati personali (Italy) · 27 November 2024

Regione Molise

About: Accountability, Data principles, Data security

Fine€10,000Violation found
Regulator
Garante per la protezione dei dati personali (Italy)
Decided
27 November 2024
Country
Italy
Sector
Not given
Regulator’s reference
10095791
Fino case number
2024/IT/138
Export as PDF

What happened

The DPA fined a region €10,000 due to a data breach that made several data subjects' health records accessible to all users. The breach was caused by the insufficient security measures implemented by the region's sub-processor.

Summary from GDPRhub (noyb), written by its volunteers, not by Fino. CC BY-NC-SA 4.0.

Rules involved

  • Accountability
  • Data principles
  • Data security

Sources

The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.

Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2024/IT/138.