Italy Italy

Physician

20,000 €

GDPR enforcement action by Italian Data Protection Authority (Garante) on 2024-12-12.

Rank · Sector
#100
of 270 in Health Care
Rank · Italy
#209
of 543
Rank · All fines
#1,099
of 3,050

Case details

Authority
Italian Data Protection Authority (Garante)
Date
2024-12-12
Controller / Processor
Physician
Sector
Health Care
Quoted Articles
Art. 5 GDPR, Art. 9 GDPR, Art. 2-septies (8) Codice della privacy
Type of violation
Insufficient legal basis for data processing

Summary

The Italian DPA has imposed a fine of EUR 20,000 on a physician who had published images of a patient who had undergone cosmetic surgery on a social network without their consent.

Open original source Links to the regulator's original publication or another source.

Related fines