惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

WordPress大学
WordPress大学
Jina AI
Jina AI
小众软件
小众软件
GbyAI
GbyAI
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
博客园 - 【当耐特】
D
DataBreaches.Net
腾讯CDC
V
Visual Studio Blog
博客园 - 叶小钗
B
Blog
Apple Machine Learning Research
Apple Machine Learning Research
T
The Blog of Author Tim Ferriss
S
SegmentFault 最新的问题
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
V
V2EX
博客园 - 三生石上(FineUI控件)
云风的 BLOG
云风的 BLOG
The Cloudflare Blog
MongoDB | Blog
MongoDB | Blog
有赞技术团队
有赞技术团队
U
Unit 42
博客园 - 司徒正美
博客园 - 聂微东

Compliance Solutions for Websites, Apps and Organizations | iubenda

AI can build your website. It can't manage your consent. | iubenda Browser signals and machine-readable consent: what they are and what the EU’s Digital Omnibus could change California Consumer Privacy Act (CCPA): Complete Guide How to increase your cookie banner opt-in rates: 5 mistakes to fix today | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #153) Why your consent management setup is a marketing performance question Everything you need to know about GDPR The redesigned cookie banner and configurator What nobody tells you about handing over the company you built European marketers are betting on retention. Privacy could be the edge they’re not using yet. The 5 best alternatives to Didomi in 2026: Pros, cons, pricing, and comparison Looking back on 15 years: what iubenda's founder would tell his 2011 self | iubenda The best cookie policy generator in 2026 DPO Newsletter: Global Data Protection & Privacy News (issue #152) | iubenda What publishers should expect from the EU’s Digital Omnibus proposal Uncertainty is the biggest blocker to AI adoption in marketing | iubenda Everything AI app builders need to know about vibecoding and privacy compliance | iubenda Introducing 1-Click Embedding for Google Tag Manager The Essential Small Business Terms and Conditions Template: What You Need to Know Terms of Use Template | iubenda IAB Europe Raises Concerns Over GDPR Procedural Regulation Draft Report | iubenda Learn from HelloFresh's Costly Mistake: Ensure Compliance with iubenda | iubenda Understanding the Spanish DPA Guide on Audience Measurement Cookies | iubenda The Austrian Data Protection Authority's FAQs on Cookies and Privacy | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #127) | iubenda Microsoft Ensuring European Data Stays Within the EU Cloud Boundary | iubenda Businesses Beware: ICO’s Record £14.3m in Fines for Data Misuse in 2023 Understanding the Risks and Responsibilities of Model-as-a-Service Companies in AI Development Facebook's New “Link History” Feature: A Blend of Convenience and Surveillance? | iubenda OpenAI’s Strategic Move in the EU: Aligning with Data Privacy Regulations
ICO Fines Easylife £1.48 Million  | iubenda
Jessica Ryder · 2022-10-13 · via Compliance Solutions for Websites, Apps and Organizations | iubenda

The UK Data Protection Authority fined Easylife £1.35 million for creating 145,000 customer profiles using health information. Easylife also paid an additional fee for making 1345,732 calls for direct marketing between 2019 and 2020.

Following investigations by the ICO, the Privacy and Electronic Communications (EC Directive) Regulations 2003 (PECR) and Article 5(1)(a) of the UK General Data Protection Regulation (UK GDPR) were violated by Easylife Ltd. 

The Information Commissioner’s Office (ICO) published two penalty notices on October 6, 2022, imposing fines of £1.35 million and £130,000 on the company.

Background 

The ICO specifically mentioned that when the company was brought to its notice, it had looked into Easylife. While the inquiry first focused on violations of the PECR, concerns regarding potential violations of the UK GDPR were also found, according to the ICO.

The investigation 

According to the UK GDPR, the ICO concluded that Easylife had targeted 145,400 consumers with health-related items without their permission by using their personal information to anticipate their medical conditions. Specifically, the ICO found that considerable consumer profiling and health data processing had occurred and that those affected by it were unaware that their personal data had been collected and used for such reasons.

According to the ICO, Easylife violated the PECR by making 1,345,732 unsolicited marketing calls to persons registered with the Telephone Preference Service between August 1 and August 19, 2020. These calls are forbidden under the PECR unless the receiver gives their consent.

The ICO came to the conclusion that Easylife had broken both Regulation 21 of the PECR and Article 5(1)(a) of the UK GDPR.

Outcomes

The ICO issued a total fine of £1.48 million, consisting of £1.35 million for the UK GDPR infringement and £130,000 for the PECR violation. The ICO further stated that both fines must be paid by November 4, 2022, and that if paid by that date, the penalty for breaking the PECR will be reduced by 20% to £104,000.