PELAYO, MUTUA DE SEGUROS Y REASEGUROS A PRIMA FIJA – €42,000 Fine (Spain, 2023)

€42,000Agencia Española de Protección de Datos1 June 2023Spain
reduced
Fine

General GDPR enforcement action

This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.

Spain's data protection authority fined PELAYO EUR 42,000 for accidentally sharing personal data with unauthorized people. The company didn't have strong enough security measures in place to protect this information. Businesses should learn from this to improve their data protection systems and prevent leaks.

What happened

PELAYO disclosed personal data to unauthorized third parties due to an internal error.

Who was affected

Individuals whose personal data was shared without permission by PELAYO.

What the authority found

The Spanish authority decided that PELAYO failed to protect personal data adequately, violating GDPR requirements for data security.

Why this matters

This case emphasizes the need for robust data protection measures to prevent unauthorized data sharing. Companies should review their security practices to avoid similar fines.

GDPR Articles Cited

Art. 32 GDPR
Art. 5(1)(f) GDPR
Full Legal Summary
Detailed

The Spanish DPA has imposed a fine on PELAYO, MUTUA DE SEGUROS Y REASEGUROS A PRIMA FIJA. An individual had filed a complaint with the DPA because the controller had disclosed their personal data to unauthorized third parties due to an internal error. The DPA found that the controller had failed to implement adequate technical and organizational measures to protect personal data. The original fine of EUR 70,000 was reduced to EUR 42,000 due to voluntary payment and admission of guilt.

Related Enforcement Actions (0)

No other enforcement actions found for PELAYO, MUTUA DE SEGUROS Y REASEGUROS A PRIMA FIJA in ES

This is the only recorded action for this entity in this jurisdiction.

Details

Fine Date

1 June 2023

Authority

Agencia Española de Protección de Datos

Fine Amount

€42,000

Enforcement Tracker ID

ETid-1862

About this data

Data: CMS GDPR Enforcement Tracker
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. PELAYO, MUTUA DE SEGUROS Y REASEGUROS A PRIMA FIJA - Spain (2023). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: