← Back

Wire · regulatory

UODO reminds controllers to assess breach notification duties after reported MyDr data leak

Published

15 August 2026

Topic

regulatory

Sectors

Healthtech Infrastructure

Geography

Poland

Source

Read at dataguidance.com

Verified

Fusion42 · 15 August 2026 · Fusion42 review

The Polish data protection authority UODO reminded controllers handling personal data processed by MyDr to conduct risk analyses to determine if the reported breach involving nearly 19 million records triggers GDPR breach notification duties. If a high risk is found, controllers must notify UODO and affected individuals promptly and document their assessments using the prescribed forms.

This Wire brief sits within Fusion42's coverage of Healthtech Infrastructure.

◆ The Wire takeaway

You must reassess your data breach response now to avoid missing strict GDPR notification deadlines in Poland. Delays or failures to notify could close market access or trigger penalties — act on documentation and risk analysis immediately.

Coverage

1 source · 15 Aug 2026

Related on Wire

Topics

Healthtech Infrastructuregdprdata-breachbreach-notificationprivacy-compliancepoland