
Summary The fine is based on several breaches of the GDPR in connection with a patient mix-up at the admission of the patient. This resulted in incorrect invoicing and revealed structural technical and organisational deficits in the hospital’s patient management.
Link: link
Related articles:  Art. 32 GDPR
Type: Insufficient technical and organisational measures to ensure information security
Fine: EUR 105,000
Sector Health Care


All data is based on The CMS’s Law GDPR Enforcement Tracker Source:

Tags: case law