Romania Romania

SC Raiffeisen Bank SA

2,000 €

GDPR enforcement action by Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP) on 2022-09-09.

Rank · Sector
#277
of 323 in Finance, Insurance and Consulting
Rank · Romania
#187
of 285
Rank · All fines
#2,321
of 3,059

Case details

Authority
Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)
Date
2022-09-09
Controller / Processor
SC Raiffeisen Bank SA
Sector
Finance, Insurance and Consulting
Quoted Articles
Art. 5 (1) d) GDPR
Type of violation
Non-compliance with general data processing principles

Summary

The Romanian DPA has imposed a fine of EUR 2,000 on SC Raiffeisen Bank SA.
An individual had filed a complaint with the DPA for receiving text messages about money transfers to certain persons that they had not effected.
During its investigation, the DPA found that the bank had accidentally used the telephone number of the data subject for transaction purposes in 44 cases. The data subject was not a customer of the bank and had not requested the transactions.

Open original source Links to the regulator's original publication or another source.

Related fines