Company – €2,500 Fine (Poland, 2023)

€2,500Urząd Ochrony Danych Osobowych12 July 2023Poland
final
Fine

General GDPR enforcement action

This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.

A company in Poland was fined for not reporting a data breach to the authorities or the affected individuals. The fine of EUR 2,500 highlights the importance of notifying people when their data might be at risk. This case serves as a reminder for businesses to have a plan in place for data breaches.

What happened

A company failed to report a data breach to the data protection authority and the affected individuals.

Who was affected

Individuals whose personal data was compromised in the breach.

What the authority found

The Polish data protection authority fined the company for not complying with GDPR requirements to report data breaches.

Why this matters

This case shows that companies must act quickly to report data breaches. Small businesses should establish clear procedures for responding to data incidents to avoid penalties.

GDPR Articles Cited

AI-verified

Art. 33(1) GDPR
Art. 34(1) GDPR
View original scraped data
Art. 33(1) GDPR
Art. 34(1) GDPR

Original data from scraper before AI verification against source document.

Source verified 15 March 2026
amount discrepancy
Full Legal Summary
Detailed

The Polish DPA has fined a company EUR 2,500 for failing to report a data breach to the DPA and data subjects.

Related Enforcement Actions (11)

Other enforcement actions involving Company in PL

Current
Jul 2023

Fine

€3K

Details

Fine Date

12 July 2023

Authority

Urząd Ochrony Danych Osobowych

Fine Amount

€2,500

Enforcement Tracker ID

ETid-2053

About this data

Data: CMS GDPR Enforcement Tracker
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. Company - Poland (2023). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: