The Swedish data protection authority, Integritetsskyddsmyndigheten, fined Klarna Bank 7.5 million kronor after an investigation found it did not comply with several rules of the EU General Data Protection Regulation. During the inquiry, Klarna “continuously” changed the information provided on how the company handles personal data. Klarna did not provide the legal basis for how personal data was processed under one company system and provided “misleading” information about who received personal data when data was shared with Swedish and foreign credit information companies.
29 March 2022
Swedish DPA fines bank for EU GDPR violations
Related stories
Notes from the IAPP Canada: The question of data sovereignty
A view from DC: From murder to movement in Minnesota and beyond
US Senate subcommittee explores 'core principles' for federal privacy framework
Notes from the Asia-Pacific region: China unveils global AI initiatives
Notes from the IAPP Europe: New Council presidency, challenges to Commission leadership and key digital developments