Medical association – €3,000 Fine (Italy, 2024)

€3,000Garante per la protezione dei dati personali9 May 2024Italy
final
Fine

General GDPR enforcement action

This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.

The Italian DPA has imposed a fine of EUR 3,000 on a medical association. A doctor had filed a complaint because the professional association suspended them for not fulfilling the COVID-19 vaccination obligation and also informed their employer of this. An email from the association requesting notification of the employer was inadvertently sent to other individuals, as a result of which their email addresses and vaccination status became known.

GDPR Articles Cited

Art. 2-ter Codice della privacy GDPR
Art. 6 GDPR
Art. 5(1)(a) GDPR
Full Legal Summary

The Italian DPA has imposed a fine of EUR 3,000 on a medical association. A doctor had filed a complaint because the professional association suspended them for not fulfilling the COVID-19 vaccination obligation and also informed their employer of this. An email from the association requesting notification of the employer was inadvertently sent to other individuals, as a result of which their email addresses and vaccination status became known.

Details

Fine Date

9 May 2024

Authority

Garante per la protezione dei dati personali

Fine Amount

€3,000

Enforcement Tracker ID

ETid-2361

About this data

Data: CMS GDPR Enforcement Tracker
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. Medical association - Italy (2024). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: