Germany Germany

Doctor´s Office

3,300 €

GDPR enforcement action by Data Protection Authority of Hessen on 2024.

Rank · Sector
#203
of 270 in Health Care
Rank · Germany
#83
of 116
Rank · All fines
#1,973
of 3,042

Case details

Authority
Data Protection Authority of Hessen
Date
2024
Controller / Processor
Doctor´s Office
Sector
Health Care
Quoted Articles
Art. 5 (1) a) GDPR, Art. 6 (1) GDPR, Art. 9 (1) GDPR
Type of violation
Insufficient legal basis for data processing

Summary

The DPA of Hessen has imposed a fine of EUR 3,300 on a doctor´s office. While responding to negative Google reviews, the controller revealed health data about the reviewers.

Open original source Links to the regulator's original publication or another source.

Related fines