Enforcement · Spanish Data Protection Authority (aepd) EN LLM context A cited markdown file you can paste into your AI assistant (ChatGPT, Claude, a RAG or project knowledge base) to ground it in this document. Contains: this document’s text, its sections with their topics, and the full text of every law provision it applies. Everything links back to its source on overview.legal — legal information, not advice.
Xfera Moviles S.A.: Insufficient technical and organisational measures to ensure information security
How it connects
Related across sources
News DeFine is a calculator for GDPR fines based on method of the EDPB Guidance Guidelines 07/2020 on the concepts of controller and processor in the GDPR Guidance Guidelines 1/2020 on processing personal data in the context of connected vehicles and mobility related applications Case Law Digital Rights Ireland Ltd v Minister for Communications Guidance Art. 29 WP Guidelines on GDPR transparency requirements (WP260 rev.01) Guidance Guidelines 2/2023 on Technical Scope of Art. 5(3) of ePrivacy Directive
Full text
The company had changed a contract for a mobile phone connection to a new owner, whereby the personal data of a data subject such as his address and telephone numbers were freely accessible. This constituted a violation of the principles of confidentiality and integrity.
Industry: Media, Telecoms and Broadcasting
Original document at the source www.aepd.es