Details:

Summary The Spanish DPA has imposed a fine of EUR 7,000 on a ophthalmologic institute. The controller had responded to an online review, disclosing personal data of a patient.
Link: link
Related articles:  Art. 5 (1) f) GDPR, Art. 32 GDPR
Type: Non-compliance with general data processing principles
Fine: EUR 7,000
Sector Health Care

 

All data is based on The CMS’s Law GDPR Enforcement Tracker Source: https://www.enforcementtracker.com/

Tags: case law