Skip to main content

Q4 - Can the Board impose non-financial remedies apart from fines?

Answer

Yes. The Board can:

  • Direct a company to stop processing data until compliance is achieved.
  • Order correction, deletion, or anonymisation of improperly held data.
  • Mandate changes in security or consent practices.
Example
  • A social media platform ignoring child-safety provisions may be ordered to stop onboarding new users until safeguards are fixed.
  • An online pharmacy may be ordered to delete improperly stored prescription records.