Glovo, multada con 550.000 euros por vulnerar el tratamiento de datos de sus 'riders'
Glovo has been fined a substantial amount by the Spanish Data Protection Agency for failing to adequately protect riders’ personal data. The investigation revealed that the company transferred sensitive information, including real-time location data and communication records, to offshore offices without implementing proper security measures or obtaining user consent. This lack of control enabled unauthorized cross-border access, severely compromising individual privacy rights. The case underscores the critical need for robust technical safeguards and strict compliance with transparency obligations in data processing activities. By failing to appoint a data protection officer and to ensure secure access controls, Glovo demonstrated significant organizational negligence. These failures highlight how inadequate governance can lead to widespread vulnerabilities, particularly when handling continuous streams of personal data from gig economy workers. This incident is highly relevant to open data discussions, as it illustrates the boundaries between data utility and privacy. While open data promotes transparency, this ruling emphasizes that personal information requires strict protective frameworks. It serves as a warning that open data initiatives must respect legal standards, ensuring that data sharing does not come at the expense of individual rights or result in security breaches.
Source: elimparcial.esPublished on 2024-02-03
Related news
- Investigan filtración de datos de periodistas
- Ataque a servidores de Digitel evidencia falta de preocupación sobre protección de datos personales
- ¿Imaginas a México sin acceso a información pública?
- IPPR’s mass-surveillance claims unwarranted, ministry says
- UGT C-LM pide seguir la senda de la estabilidad del empleo mejorando las condiciones y "atajando" el despido