Laws · GDPR ·art-58-par-2-pnt-d EN LLM context A cited markdown file you can paste into your AI assistant (ChatGPT, Claude, a RAG or project knowledge base) to ground it in this document. Contains: this document’s text, its sections with their topics, and the full text of every law provision it applies. Everything links back to its source on overview.legal — legal information, not advice.
Full text
to order the controller or processor to bring processing operations into compliance with the provisions of this Regulation, where appropriate, in a specified manner and within a specified period;
How it connects
Cited by
- Datatilsynet (Denmark) - 2020-431-0061 (Helsingor decision no. 4)
- EDPB Annual Report 2024
- Austrian media company fined €6,820 for failing to comply with order to fix cookie banner
- Permanent TSB: Insufficient technical and organisational measures to ensure information security
- AEPD (Spain) - PS-00020-2025
All 48
- AKI (Estonia) - No. 2.1-1/24/397-890-38
- Midlands Regional Hospital Tullamore, County Offaly: Insufficient technical and organisational measures to ensure information security
- ANSPDCP (Romania) - Fine against Ascendex Technology SRL
- UODO (Poland) - DKE.561.4.2026
- NAIH: School grades are personal data; failure to provide access in eKRÉTA system
- EDPS: European Parliament is sole controller for COVID testing website and failed
- BVwG - W 108 2284491-1
- Austrian FAC: DPA rightly found loyalty program consent for profiling invalid under GDPR
- EDPB Annual Report 2025
- Contribution of the EDPB to the evaluation of the GDPR under Article 97
- Court upholds €50,000 fine on Sociálna poisťovňa for sending sensitive data by ordinary
- Budapest Főváros IV. Kerület Újpest Önkormányzat Polgármesteri Hivatala v Nemzeti Adatvédelmi és Információszabadság Hatóság
- NAIH (Hungary) - NAIH-11443-3/2026
- AEPD fines El Español for publishing video of minor assailant without anonymization
- HDPA (Greece) - 7/2026
- National court annuls DPA sanction against KFC Spain over website privacy information
- NAIH (Hungary) - NAIH-450-7-2026
- NAIH (Hungary) - NAIH-4462-5-2026
- Garante per la protezione dei dati personali (Italy) - 10266250
- AEPD (Spain) - ps-00148-2025
- HDPA: Hellenic Open University found to have met breach notification duties after
- Garante per la protezione dei dati personali (Italy) - 10269624
- AEPD: Ramona Films failed to comply with Article 58(2) order to provide processor
- ANSPDCP (Romania) - Fine against Poliserv JG (PJG) SRL
- Finnish DPA examines anti-doping organization's GDPR compliance over public suspension
- HDPA orders TEIRESIAS S.A. to ensure data accuracy under Art. 5(1)(d) GDPR
- High Court examines DPA inquiry into Meta's refusal of raw data access and portability
- Italian DPA finds Cerved Group failed to disclose creditworthiness scores in Art. 15
- ANSPDCP (Romania) - Fine against GEROCOSSEN S.R.L.
- HDPA (Greece) - 15/2026
- AEPD (Spain) - ps-00256-2025
- Persónuvernd (Iceland) - 2025010364
- Francesco Gagliardi: Non-compliance with general data processing principles
- AEPD: CaixaBank requested excessive inheritance documentation from heirs
- AEPD sanctions Iberdrola Clientes for improper identity verification and unauthorized
- Cyprus Court upholds DPA finding that Sigma TV unlawfully disclosed financial data
- Banco Bilbao Vizcaya Argentaria S.A.: Insufficient fulfilment of data subjects rights
- Friuli Centrale University Health Authority: Insufficient technical and organisational measures to ensure information security
- Finnish DPA finds 12-year retention of rental applicant data violates minimisation
- Persónuvernd: Icelandic Farmers’ Association breached GDPR by disclosing owner data to
- Guidelines 04/2026 on the application of the power to impose administrative fines in relation to other corrective powers under the GDPR
- Finnish DPA orders Espoo to ensure pupil data protection in Google learning tools
- Private individual: Insufficient cooperation with supervisory authority