惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

博客园 - 叶小钗
雷峰网
雷峰网
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Martin Fowler
Martin Fowler
MyScale Blog
MyScale Blog
博客园 - 聂微东
有赞技术团队
有赞技术团队
The Cloudflare Blog
T
Tailwind CSS Blog
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
月光博客
月光博客
T
The Blog of Author Tim Ferriss
D
Docker
L
LangChain Blog
Vercel News
Vercel News
C
Check Point Blog
博客园 - Franky
博客园 - 三生石上(FineUI控件)
Recent Announcements
Recent Announcements
H
Hackread – Cybersecurity News, Data Breaches, AI and More
量子位
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
V
V2EX
人人都是产品经理
人人都是产品经理

Compliance Solutions for Websites, Apps and Organizations | iubenda

AI can build your website. It can't manage your consent. | iubenda Browser signals and machine-readable consent: what they are and what the EU’s Digital Omnibus could change California Consumer Privacy Act (CCPA): Complete Guide How to increase your cookie banner opt-in rates: 5 mistakes to fix today | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #153) Why your consent management setup is a marketing performance question Everything you need to know about GDPR The redesigned cookie banner and configurator What nobody tells you about handing over the company you built European marketers are betting on retention. Privacy could be the edge they’re not using yet. The 5 best alternatives to Didomi in 2026: Pros, cons, pricing, and comparison Looking back on 15 years: what iubenda's founder would tell his 2011 self | iubenda The best cookie policy generator in 2026 DPO Newsletter: Global Data Protection & Privacy News (issue #152) | iubenda What publishers should expect from the EU’s Digital Omnibus proposal Uncertainty is the biggest blocker to AI adoption in marketing | iubenda Everything AI app builders need to know about vibecoding and privacy compliance | iubenda Introducing 1-Click Embedding for Google Tag Manager The Essential Small Business Terms and Conditions Template: What You Need to Know Terms of Use Template | iubenda IAB Europe Raises Concerns Over GDPR Procedural Regulation Draft Report | iubenda Learn from HelloFresh's Costly Mistake: Ensure Compliance with iubenda | iubenda Understanding the Spanish DPA Guide on Audience Measurement Cookies | iubenda The Austrian Data Protection Authority's FAQs on Cookies and Privacy | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #127) | iubenda Microsoft Ensuring European Data Stays Within the EU Cloud Boundary | iubenda Businesses Beware: ICO’s Record £14.3m in Fines for Data Misuse in 2023 Understanding the Risks and Responsibilities of Model-as-a-Service Companies in AI Development Facebook's New “Link History” Feature: A Blend of Convenience and Surveillance? | iubenda OpenAI’s Strategic Move in the EU: Aligning with Data Privacy Regulations
ICO Fines Easylife £1.48 Million  | iubenda
Jessica Ryder · 2022-10-13 · via Compliance Solutions for Websites, Apps and Organizations | iubenda

The UK Data Protection Authority fined Easylife £1.35 million for creating 145,000 customer profiles using health information. Easylife also paid an additional fee for making 1345,732 calls for direct marketing between 2019 and 2020.

Following investigations by the ICO, the Privacy and Electronic Communications (EC Directive) Regulations 2003 (PECR) and Article 5(1)(a) of the UK General Data Protection Regulation (UK GDPR) were violated by Easylife Ltd. 

The Information Commissioner’s Office (ICO) published two penalty notices on October 6, 2022, imposing fines of £1.35 million and £130,000 on the company.

Background 

The ICO specifically mentioned that when the company was brought to its notice, it had looked into Easylife. While the inquiry first focused on violations of the PECR, concerns regarding potential violations of the UK GDPR were also found, according to the ICO.

The investigation 

According to the UK GDPR, the ICO concluded that Easylife had targeted 145,400 consumers with health-related items without their permission by using their personal information to anticipate their medical conditions. Specifically, the ICO found that considerable consumer profiling and health data processing had occurred and that those affected by it were unaware that their personal data had been collected and used for such reasons.

According to the ICO, Easylife violated the PECR by making 1,345,732 unsolicited marketing calls to persons registered with the Telephone Preference Service between August 1 and August 19, 2020. These calls are forbidden under the PECR unless the receiver gives their consent.

The ICO came to the conclusion that Easylife had broken both Regulation 21 of the PECR and Article 5(1)(a) of the UK GDPR.

Outcomes

The ICO issued a total fine of £1.48 million, consisting of £1.35 million for the UK GDPR infringement and £130,000 for the PECR violation. The ICO further stated that both fines must be paid by November 4, 2022, and that if paid by that date, the penalty for breaking the PECR will be reduced by 20% to £104,000.