Postel SpA
bd_a1e9eb0b629ab28e · schema v1 · pii pii-v1
Full breach record for Postel SpA →Regulator's decision — not a breach notification
This record is a regulator's decision, not the organisation's own breach notice. Breach-notification fields (discovery date, notification clock) are structurally absent — what this source establishes is the outcome and the provisions the decision cites.
The Garante per la protezione dei dati personali (Italy) issued a investigation regarding Postel S.p.A. A fine of EUR 900,000 was imposed. Outcome: Violation Found. GDPR articles: Article 5(1)(f) GDPR, Article 25 GDPR, Article 33(3) GDPR.
J jump to incidentP pin to compareR raw source
Incident timeline — partial
? — ?
Breach window unknown
Jul 4, 2024
Filed
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a breach filing is linked. This record is the regulator's action, not a breach notice. Dashed segments fill in automatically when corroboration arrives.
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Sitemedusabd_9256882d9e2d71d12023-08-15 · +324dCandidate
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- data categories
- cross-border scope
- outcome + articles (decisions)
- discovery date
- affected count
- notification clock
See the underlying breach notice, if filed.