Spain Spain

UNIQLO EUROPE, LTD, SUCURSAL EN ESPAÑA

270,000 €

GDPR enforcement action by Spanish Data Protection Authority (aepd) on 2024-08-12.

Rank · Sector
#11
of 213 in Employment
Rank · Spain
#50
of 1,075
Rank · All fines
#315
of 3,050

Case details

Authority
Spanish Data Protection Authority (aepd)
Date
2024-08-12
Controller / Processor
UNIQLO EUROPE, LTD, SUCURSAL EN ESPAÑA
Sector
Employment
Quoted Articles
Art. 5 (1) f) GDPR, Art. 32 GDPR
Type of violation
Non-compliance with general data processing principles

Summary

The Spanish DPA has imposed a fine on UNIQLO EUROPE, LTD, SUCURSAL EN ESPAÑA. An individual who provided services to the controller filed a complaint with the DPA due to the fact that, after requesting their payslip, they received a document containing their payslip and those of 446 employees. The document revealed data such as name, surname and bank account number of the data subjects. During its investigation, the DPA found that the controller failed to implement appropriate technical and organizational measures to protect personal data in order to prevent such an incident. The original fine of EUR 450,000 was reduced to EUR 270,000 due to immediate payment and admission of responsibility.

Open original source Links to the regulator's original publication or another source.

Related fines