Azienda Usl di Bologna – €18,000 Fine (Italy, 2021)

€18,000Garante per la protezione dei dati personali14 January 2021Italy
final
Fine

General GDPR enforcement action

This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.

The Italian privacy authority fined Azienda Usl di Bologna EUR 18,000 after a hospital mistakenly gave 49 patients discharge letters with other patients' medication details. This error highlights the importance of handling sensitive health information carefully to protect patient privacy.

What happened

Azienda Usl di Bologna mistakenly sent discharge letters containing other patients' medication details to 49 patients.

Who was affected

Patients in the oncology ward of a hospital operated by Azienda Usl di Bologna received incorrect discharge letters.

What the authority found

The Italian DPA found that the hospital violated GDPR by failing to protect sensitive health information, leading to a fine.

Why this matters

This case underscores the need for healthcare providers to implement strict data handling procedures to prevent privacy breaches. It serves as a reminder that even manual errors can lead to significant privacy violations and fines.

GDPR Articles Cited

Art. 9 GDPR
Art. 5(1)(f) GDPR
Full Legal Summary
Detailed

The Italian DPA (Garante) fined Azienda Usl di Bologna EUR 18,000. In a hospital operated by the controller, 49 patients in the oncology ward received discharge letters with detailed pharmacological therapy information that originated from other patients. Fourteen of these patients had already accessed this incorrect documentation before it was corrected. The breakdown had occurred due to a manual error by a technician.

Related Enforcement Actions (0)

No other enforcement actions found for Azienda Usl di Bologna in IT

This is the only recorded action for this entity in this jurisdiction.

Details

Fine Date

14 January 2021

Authority

Garante per la protezione dei dati personali

Fine Amount

€18,000

Enforcement Tracker ID

ETid-563

About this data

Data: CMS GDPR Enforcement Tracker
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. Azienda Usl di Bologna - Italy (2021). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: