Wire · regulatory
UODO reminds controllers to assess breach notification duties after reported MyDr data leak
◆ Sectors
◆ Geography
◆ Source
◆ Verified
Fusion42 · 15 August 2026 · Fusion42 review
The Polish data protection authority UODO reminded controllers handling personal data processed by MyDr to conduct risk analyses to determine if the reported breach involving nearly 19 million records triggers GDPR breach notification duties. If a high risk is found, controllers must notify UODO and affected individuals promptly and document their assessments using the prescribed forms.
This Wire brief sits within Fusion42's coverage of Healthtech Infrastructure.
◆ ◆ The Wire takeaway
You must reassess your data breach response now to avoid missing strict GDPR notification deadlines in Poland. Delays or failures to notify could close market access or trigger penalties — act on documentation and risk analysis immediately.
◆ Coverage
1 source · 15 Aug 2026
◆ Related on Wire
◆ Topics