Skip to main content
European Data Protection Board
en
Bulgarian (bg)
Finnish (fi)
French (fr)
Irish (ga)
Croatian (hr)
Hungarian (hu)
Italian (it)
Spanish (es)
Czech (cs)
Lithuanian (lt)
Danish (da)
Latvian (lv)
German (de)
Maltese (mt)
Dutch (nl)
Estonian (et)
Greek (el)
Polish (pl)
Portuguese (pt-pt)
Romanian (ro)
Slovak (sk)
Slovenian (sl)
Swedish (sv)
Main navigation
About EDPB
Who we are
EDPB Chairmanship
Our Members
EDPB Secretariat
Rules of procedure and Memorandum of Understanding
Internal procedural guidance
Article 29 Working Party
What we do
Tasks and duties
Legal Framework
Strategy & Work Programme
Publications
Annual reports
One-Stop-Shop case digests
Legal studies by external providers
Press Kit
Contact us
Our Work & Tools
General Guidance
Guidelines, Recommendations, Best Practices
Public Consultations on our guidance
Other guidance and Information notes
Support Cooperation and Enforcement
GDPR Cooperation and Enforcement
Consistency and Cooperation procedures
International Cooperation & Cooperation with Other Authorities
Registers
Final One Stop Shop Decisions
Approved Binding Corporate Rules
Codes of Conduct, amendments and extensions
Decisions taken by supervisory authorities and courts on issues handled in the consistency mechanism
Documents addressed to the European Commission or National Authorities
Opinions
Binding Decisions
GDPR or LED evaluations
Other documents addressed to EU legislator or Member States
EDPB Plenary meetings
Agenda
Plenary Minutes
Other documents
Letters
Internal documents
View all our documents
News
CSC
About CSC
Who we are
Members
CSC Secretariat
CSC Meetings
Work Programme
Legal Framework
Our Work & Tools
Biannual reports
IMI Reports
Data Subject Rights
Search
Search on the EDPB web site:
Home
Our Work & Tools
Final One Stop Shop Decisions
Final One Stop Shop Decisions
EDPBI:DEBB:OSS:D:2022:491
29 September 2022
LSA
DE/BB
CSA
DK
DE
NL
BE
FR
HU
IT
NO
PL
IE
ES
SE
FI
LU
SK
Main legal reference
Article 24 (Responsibility of the controller)
Article 32 (Security of processing)
Article 33 (Notification of a personal data breach to the supervisory authority)
Article 34 (Communication of a personal data breach to the data subject)
Keywords
Data security
Personal data breach
Notification of personal data breach
Outcome
Reprimand
Download
EDPBI:DK:OSS:D:2022:380
13 June 2022
LSA
DK
CSA
FI
PL
SE
NO
IE
IT
Main legal reference
Article 32 (Security of processing)
Article 33 (Notification of a personal data breach to the supervisory authority)
Keywords
Data security
Personal data breach
Finance
Outcome
Reprimand
Download
EDPBI:EE:OSS:D:2021:289
4 November 2021
LSA
EE
CSA
DE
BE
NL
CZ
AT
BG
FR
RO
LV
PL
SE
IE
UK
Main legal reference
Article 5 (Principles relating to processing of personal data)
Article 32 (Security of processing)
Keywords
Personal data breach
Data security
Fraud
Third party access to personal data
Outcome
Reprimand
Download
EDPBI:DK:OSS:D:2021:288
26 October 2021
LSA
DK
CSA
SE
NO
PL
LV
EE
FI
Main legal reference
Article 32 (Security of processing)
Article 33 (Notification of a personal data breach to the supervisory authority)
Article 34 (Communication of a personal data breach to the data subject)
Keywords
Personal data breach
Notification of personal data breach
Data security
Hacker attack
Outcome
Reprimand
Download
EDPBI:FR:OSS:D:2021:201
31 March 2021
LSA
FR
CSA
BE
DE
HU
NL
ES
SE
NO
Main legal reference
Article 33 (Notification of a personal data breach to the supervisory authority)
Keywords
Personal data breach
Outcome
Reprimand
Download
EDPBI:DK:OSS:D:2020:110
3 June 2020
LSA
DK
CSA
FI
NO
SE
Main legal reference
Article 32 (Security of processing)
Keywords
Personal data breach
Outcome
Reprimand
Summary
Download