Skip to content
Content type ยท 15 documents

Enforcement

Regulatory actions, fines, warnings, and enforcement decisions

Country: Malta (15) Clear filter
โ‚ฌ20,000 Hospital: Non-compliance with general data processing principles Data Protection Commissioner of Malta fined Hospital โ‚ฌ20,000 on 2025-04-02 for: Non-compliance with general data processing principles. Healthcare IP Address Healthcare Apr 2, 2025
โ‚ฌ5,000 MALTA DPA: Non-compliance with general data processing principles The controller unlawfully gained access to audio recordings from a surveillance camera. Controllers IP Address Monitoring Jan 1, 2023
โ‚ฌ65,000 C-Planet (IT Solutions) Limited: Insufficient technical and organisational measures to ensure information security The DPA of Malta has imposed a fine of EUR 65,000 on C-Planet (IT Solutions) Limited. The DPA had initiated an investigation against C-Planet in April 2020 after being informed ofโ€ฆ Notification Obligation Data Breaches Security Jan 17, 2022
โ‚ฌ2,500 MALTA DPA: Insufficient technical and organisational measures to ensure information security The controller has unlawfully disclosed personal data of a data subject. Security Personal Data Controllers Jan 1, 2022
โ‚ฌ250,000 MALTA DPA: Insufficient technical and organisational measures to ensure information security The controller has failed to implement appropriate technical and organizational measures to protect personal data. Security Privacy by Design & Default Controllers Jan 1, 2022
โ‚ฌ65,000 MALTA DPA: Non-compliance with general data processing principles The controller has violated numerous GDPR regulations, involving special categories of personal data of numerous individuals. Processing Agreement Controllers Personal Data Jan 1, 2022
โ‚ฌ2,500 MALTA DPA: Insufficient technical and organisational measures to ensure information security The controller has disclosed a personal email address to all recipients of the email. Controllers Security IP Address Jan 1, 2020
โ‚ฌ5,000 MALTA DPA: Insufficient technical and organisational measures to ensure information security The controller has unlawfully disclosed personal data of a data subject. Security Controllers Personal Data Jan 1, 2020
โ‚ฌ4,000 MALTA DPA: Insufficient fulfilment of data subjects rights The controller had sent unsolicited commercial messages. In addition, the privacy policy did not comply with transparency requirements and the controller failed to comply withโ€ฆ Fairness & Transparency Controllers Personal Data Jan 1, 2020
โ‚ฌ20,000 MALTA DPA: Insufficient fulfilment of data subjects rights The controller failed to comply with a data subject's right to information. In addition, the data protection policy did not meet the transparency requirements. Fairness & Transparency Personal Data Controllers Jan 1, 2020
โ‚ฌ2,500 MALTA DPA: Insufficient technical and organisational measures to ensure information security The controller has disclosed a personal email address to all recipients of the email. Security Controllers Processing Agreement Jan 1, 2020
โ‚ฌ5,000 Lands Authority: Insufficient technical and organisational measures to ensure information security As a result of the lack of appropriate security measures on the Lands Authority website, over 10 gigabytes of personal data became easily accessible to the public via a simpleโ€ฆ Integrity and Confidentiality Principle Public Authority Public Sector Feb 18, 2019