Vodafone España, S.A.U. – €30,000 Fine (Spain, 2020)
General GDPR enforcement action
This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.
Vodafone ESPAÑA was fined for sending a payment request for a fraudulent contract that the complainant did not authorize. This matters because it shows that companies need to verify customer identities before processing transactions. The case serves as a reminder for businesses to implement better security measures to protect against fraud.
What happened
Vodafone ESPAÑA sent an SMS requesting payment for a contract that was not authorized by the complainant.
Who was affected
The complainant, who received a payment request for a fraudulent contract they did not authorize.
What the authority found
The authority found that Vodafone ESPAÑA failed to take necessary precautions to verify the identity of the contracting party, violating GDPR rules.
Why this matters
This case underscores the need for companies to authenticate their customers properly to prevent fraud. Other businesses should strengthen their verification processes to avoid similar mistakes.
GDPR Articles Cited
View original scraped data
Original data from scraper before AI verification against source document.
Processing of personal data of a data subject without sufficient legal basis due to errors in the correct assignment of customer contracts. In this case, Vodafone demanded a debt from a data subject due to a mixing up of customers.
Related Enforcement Actions (20)
Other enforcement actions involving Vodafone España, S.A.U. in ES
Fine
€30K
Details
Fine Date
3 November 2020
Authority
Agencia Española de Protección de Datos
Fine Amount
€30,000
Enforcement Tracker ID
ETid-435
About this data
Cite as: Cookie Fines. Vodafone España, S.A.U. - Spain (2020). Retrieved from cookiefines.eu
Last updated: