Data Protection Authority of Sweden · 24 June 2024
Avanza Bank AB
Insufficient technical and organisational measures to ensure information security
Fine€1,300,000Fine issued
- Regulator
- Data Protection Authority of Sweden
- Decided
- 24 June 2024
- Country
- Sweden
- Sector
- Finance, Insurance and Consulting
- Regulator’s reference
- Not recorded
- Fino case number
- 2024/SE/004
What happened
The DPA fined Avanza Bank AB €1,318,955.55 (SEK 15 million) for a violation of Articles 5(1)(f) and 32 GDPR since the accidental activation of two functions of Meta Pixel led to the unauthorised transfer of personal data to Meta.
Summary from the GDPRhub page for this decision, written by its volunteers, not by Fino. CC BY-NC-SA 4.0.
Rules involved
- Art. 5Principles relating to processing of personal data5(1)(f)Read →
- Art. 32Security of processing32(1)Read →
- Data principles
- Data security
Sources
The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.
Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2024/SE/004.