Romania Romania

Dante International SA

40,000 €

GDPR enforcement action by Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP) on 2023-06-20.

Rank · Sector
#120
of 597 in Industry and Commerce
Rank · Romania
#6
of 283
Rank · All fines
#828
of 3,050

Case details

Authority
Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP)
Date
2023-06-20
Controller / Processor
Dante International SA
Sector
Industry and Commerce
Quoted Articles
Art. 12 (2) GDPR, Art. 17 (1) GDPR
Type of violation
Insufficient fulfilment of data subjects rights

Summary

The Romanian DPA has imposed a fine of EUR 40,000 on Dante International SA.

During its investigation, the DPA found that the controller had failed to properly comply with a deletion request from a data subject. In addition, the employees were not properly trained to handle data subject requests. Finally, the DPA found that despite requests from a data subject to delete their email, the controller continued to process it without their consent.

Open original source Links to the regulator's original publication or another source.

Related fines