# SC Travel Planner SRL: Insufficient technical and organisational measures to ensure information security

- Type: Enforcement
- Source: Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)
- Date: 2025-04-25
- Original: https://www.enforcementtracker.com/ETid-2711
- Canonical: https://overview.legal/posts/48826
- Topics: Data Breaches, Controllers, Security, Processing Agreement, Supervisory Authorities, Law Enforcement, Personal Data, Processing, Supervision, Data Controller

## Summary

The Romanian DPA has imposed a fine of EUR 6,000 on SC Travel Planner SRL. The controller failed to implement sufficient technical and organisational measures, resulting in a data breach. The controller also failed to notify the DPA of the breach.

## Full text

The Romanian DPA has imposed a fine of EUR 6,000 on SC Travel Planner SRL. The controller failed to implement sufficient technical and organisational measures, resulting in a data breach. The controller also failed to notify the DPA of the breach.

GDPR Articles: Art. 12 (3), (4) GDPR, Art. 15 GDPR, Art. 32 GDPR, Art. 33 GDPR
Industry: Industry and Commerce

---
Generated by overview.legal · https://overview.legal/posts/48826 · 2026-08-22
