# REVMA PLUS Retail S.A.: Insufficient technical and organisational measures to ensure information security

- Type: Enforcement
- Source: Hellenic Data Protection Authority (HDPA)
- Date: 2025-12-31
- Original: https://www.enforcementtracker.com/ETid-3019
- Canonical: https://overview.legal/posts/52373
- Topics: Controllers, Processors, Telecommunications, Security, Direct Marketing, Personal Data, Marketing, Processing Agreement, Law Enforcement, Data Processor

## Summary

The Greek DPA has imposed a fine of EUR 5,000 on REVMA PLUS Retail S.A.. The fined entity is the processor of Thessaloniki–Thessaly Gas Supply Company S.A. (ETid-3016). The processor, a call center involved in direct marketing activities, suffered a technical error in its system that prevented operators from calling data subjects that had not given their consent for direct marketing calls. The processor also failed to inform the controller of the technical error.

## Full text

The Greek DPA has imposed a fine of EUR 5,000 on REVMA PLUS Retail S.A.. The fined entity is the processor of Thessaloniki–Thessaly Gas Supply Company S.A. (ETid-3016). The processor, a call center involved in direct marketing activities, suffered a technical error in its system that prevented operators from calling data subjects that had not given their consent for direct marketing calls. The processor also failed to inform the controller of the technical error.

GDPR Articles: Art. 32 GDPR
Industry: Media, Telecoms and Broadcasting

---
Generated by overview.legal · https://overview.legal/posts/52373 · 2026-08-22
