Azienda socio-sanitaria locale n. 1 di Sassari – €18,000 Fine (Italy, 2024)

€18,000Garante per la protezione dei dati personali8 February 2024Italy
final
Fine

General GDPR enforcement action

This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.

The Italian data protection authority fined Azienda socio-sanitaria locale n. 1 di Sassari €18,000 for mistakenly sending health data to the wrong person. This incident shows that organizations must take strong measures to protect sensitive information. Failing to do so can lead to serious financial penalties.

What happened

Azienda socio-sanitaria locale n. 1 di Sassari was fined €18,000 for sending an email with health data to the wrong recipient.

Who was affected

Patients whose health data was improperly shared with unauthorized individuals.

What the authority found

The authority found that the healthcare facility did not implement adequate security measures to protect personal data.

Why this matters

This case highlights the need for organizations, especially in healthcare, to prioritize data security and ensure proper handling of sensitive information to avoid costly fines.

GDPR Articles Cited

AI-verified

Art. 5(GDPR)
Art. 9(GDPR)
Art. 32(GDPR)
View original scraped data
Art. 5(GDPR)
Art. 9(GDPR)
Art. 32(GDPR)

Original data from scraper before AI verification against source document.

Source verified 13 March 2026
articles corrected
Full Legal Summary
Detailed

Ist das gut: The Italian DPA has imposed a fine of EUR 18,000 on Azienda socio-sanitaria locale n. 1 di Sassari. The controller had mistakenly sent an e-mail containing health data of the data subject to the wrong recipient. The DPA found that the healthcare facility had not taken sufficient technical and organizational measures to protect personal data.

Details

Fine Date

8 February 2024

Authority

Garante per la protezione dei dati personali

Fine Amount

€18,000

Enforcement Tracker ID

ETid-2268

About this data

Data: CMS GDPR Enforcement Tracker
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. Azienda socio-sanitaria locale n. 1 di Sassari - Italy (2024). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: