OASIP SERVICIO INTEGRAL DE COMUNICACIONES S.L. – €20,000 Fine (Spain, 2021)
General GDPR enforcement action
This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.
OASIP was fined €20,000 by the Spanish data protection authority for making unsolicited sales calls on behalf of Vodafone. The company failed to check phone numbers against a list of people who opted out of such calls. This case highlights the importance of respecting consumer preferences and legal obligations in marketing activities.
What happened
OASIP made unsolicited commercial calls to people on a do-not-call list while working for Vodafone.
Who was affected
People who had registered on the Robinson list to avoid receiving marketing calls.
What the authority found
The Spanish DPA found OASIP responsible for not filtering phone numbers against the Robinson list, violating Spanish telecommunications law.
Why this matters
This case underscores the need for companies to ensure their marketing practices comply with consumer opt-out lists. It serves as a warning to businesses that they must actively manage and respect customer preferences to avoid penalties.
National Law Articles
A data subject filed a complaint with the Spanish DPA (AEPD) for receiving unsolicited commercial calls on behalf of Vodafone. The complainant was registered on the Robinson list, an advertising exclusion system regulated in Article 23 of the Spanish Data Protection Act (LOPDGDD). The calls were carried out by the subcontractor Oasip on behalf of Vodafone. The agreement between both companies included the obligation of filtering the list of numbers against the Robinson list, to avoid making calls to the people registered. The AEPD hold that Oasip is a controller and considered them aware of the problem with filtering the phone-numbers, since it happened seven times in two months without them implementing necessary measures to prevent it from happening again. The DPA concluded that the company acted for their own benefit, and held them responsible of the infringement. Therefore, and since sending unsolicited commercial communications is forbidden by Article 48(1)(b) of the Spanish Telecommunications Act (LGT) the DPA fined the controller €20,000. The DPA also noted that it would initiate a different investigation into Vodafone in relation to the same events, in order to determine whether Vodafone had acted appropriately.
Related Enforcement Actions (0)
No other enforcement actions found for OASIP SERVICIO INTEGRAL DE COMUNICACIONES S.L. in ES
This is the only recorded action for this entity in this jurisdiction.
Details
Fine Date
17 August 2021
Authority
Agencia Española de Protección de Datos
Fine Amount
€20,000
GDPRhub ID
gdprhub-3894About this data
Cite as: Cookie Fines. OASIP SERVICIO INTEGRAL DE COMUNICACIONES S.L. - Spain (2021). Retrieved from cookiefines.eu
Last updated: