Enforcement · Italian Data Protection Authority (Garante) EN LLM context A cited markdown file you can paste into your AI assistant (ChatGPT, Claude, a RAG or project knowledge base) to ground it in this document. Contains: this document’s text, its sections with their topics, and the full text of every law provision it applies. Everything links back to its source on overview.legal — legal information, not advice.
Bar association: Non-compliance with general data processing principles
How it connects
Related across sources
News What Happened to the Risk-Based Approach to Data Transfers? Guidance Guidelines 07/2020 on the concepts of controller and processor in the GDPR Literature GDPR Implementation Series ∙ Hungary: Introduction to the GDPR Application and a Brief History of Data Protection Case Law Unabhängiges Landeszentrum für Datenschutz v Wirtschaftsakademie Schleswig-Holstein Literature GDPR Implementation Series ∙ Spain: Preparations for a New Law on Data Protection to Implement the GDPR Literature GDPR Implementation Series ∙ United Kingdom: Heading Towards Brexit but with a Data Protection Bill Implementing GDPR
Full text
The Italian DPA has imposed a fine of EUR 20,000 on a bar association. Two individuals had filed a complaint with the DPA against the controller because documents relating to a court case concerning them could be viewed and downloaded in non-anonymous form on the association's website. In addition, the documents were available to be found via Google search. The association had failed to delete the documents even after repeated requests for deletion by the data subjects.
Industry: Public Sector and Education
Original document at the source www.gpdp.it