article thumbnail

Over-Retention of Personal Data

Data Protection Report

The CNIL’s inspection included the insurer’s compliance with Section 5-1(e) of GDPR , which reads: Personal data shall be. (e) The CNIL also took into account the insurer’s promptly amending both the call center scripts and its online privacy policy, and its commencement of record destruction procedures.