Glovo, multada con 550.000 euros por vulnerar el tratamiento de datos de sus 'riders'
Glovo has received a substantial penalty from the Spanish Data Protection Agency for failing to adequately safeguard riders’ personal information. The investigation revealed that the company transferred sensitive data, including real-time location and communication records, to offshore offices without proper security measures or user consent. This lack of control allowed unauthorized access across borders, severely compromising individual privacy rights. The case highlights the critical necessity for robust technical safeguards and strict adherence to transparency obligations in data processing activities. By failing to appoint a data protection officer and ensuring secure access controls, Glovo demonstrated significant organizational negligence. These failures underscore how inadequate governance can lead to widespread vulnerabilities, particularly when handling continuous streams of personal metrics from gig economy workers. This incident is highly relevant to open data discussions because it illustrates the boundaries of data utility versus privacy. While open data promotes transparency, this ruling emphasizes that personal information requires strict protective frameworks. It serves as a warning that open initiatives must respect legal standards, ensuring that data sharing does not come at the cost of individual rights or security breaches.
Source: elimparcial.esPublished on 2024-02-03
Related news
- Investigan filtración de datos de periodistas
- Ataque a servidores de Digitel evidencia falta de preocupación sobre protección de datos personales
- ¿Imaginas a México sin acceso a información pública?
- IPPR’s mass-surveillance claims unwarranted, ministry says
- UGT C-LM pide seguir la senda de la estabilidad del empleo mejorando las condiciones y "atajando" el despido