Enforcement · Cypriot Data Protection Commissioner EN LLM context A cited markdown file you can paste into your AI assistant (ChatGPT, Claude, a RAG or project knowledge base) to ground it in this document. Contains: this document’s text, its sections with their topics, and the full text of every law provision it applies. Everything links back to its source on overview.legal — legal information, not advice.
Cyprus Police: Insufficient technical and organisational measures to ensure information security
How it connects
Related across sources
Guidance Guidelines 03/2022 on Deceptive design patterns in social media platform interfaces: how to recognise and avoid them Guidance Guidelines 07/2020 on the concepts of controller and processor in the GDPR Case Law Supreme Court upholds €300,000 fine against INPS for GDPR violations in COVID bonus data Literature Regulatory Responses to Data Breaches: Evaluating the Effectiveness of GDPR and CCPA in Consumer Protection Guidance EDPB Annual Report 2023 Case Law VB v Natsionalna agentsia za prihodite
Full text
A police officer had unauthorized access to a database holding personal data about vehicle owners and used the database for non-official purposes to pass information from the database to a third party. In this respect, the organizational and technical measures taken by the police to prevent unauthorized access to the database were insufficient to prevent the unauthorized disclosure of personal data to third parties.
Industry: Public Sector and Education
Original document at the source www.dataprotection.gov.cy