BreachOfPrivacy

Canadian Privacy Decisions

The comprehensive archive of Canadian privacy decisions from federal, provincial, and territorial commissioners — with AI-summarized plain-language summaries for every decision.

931 decisions matching
Flag of Ontario
Ontario
Subscribers only
Municipal Freedom of Information and Protection of Privacy Act

Order MO-3292

Subscribe to access Ontario decisions.

Flag of Alberta
Alberta
Subscribers only
Freedom of Information and Protection of Privacy Act

F2016-04 — Alberta Justice and Solicitor General

Subscribe to access Alberta decisions.

Flag of Ontario
Ontario
Subscribers only
Freedom of Information and Protection of Privacy Act

Order PO-3582

Subscribe to access Ontario decisions.

Flag of Ontario
Ontario
Subscribers only
Freedom of Information and Protection of Privacy Act

Order PO-3581

Subscribe to access Ontario decisions.

Flag of Quebec
Quebec
Subscribers only
Act respecting access to documents held by public bodies and the protection of personal information

Décision 1010367-S — Service de police de la Ville de Montréal

Subscribe to access Quebec decisions.

Flag of British Columbia
British Columbia
Subscribers only
Freedom of Information and Protection of Privacy Act

F16-08 — BC OIPC order 1830

Subscribe to access British Columbia decisions.

Flag of British Columbia
British Columbia
Subscribers only
Freedom of Information and Protection of Privacy Act

F16-09 — BC OIPC order 1831

Subscribe to access British Columbia decisions.

Flag of Ontario
Ontario
Subscribers only
Municipal Freedom of Information and Protection of Privacy Act

Order MO-3291

Subscribe to access Ontario decisions.

Flag of Ontario
Ontario
Subscribers only
Freedom of Information and Protection of Privacy Act

Order PO-3580

Subscribe to access Ontario decisions.

Flag of Ontario
Ontario
Subscribers only
Freedom of Information and Protection of Privacy Act

Order PO-3579

Subscribe to access Ontario decisions.

Flag of Ontario
Ontario
Subscribers only
Freedom of Information and Protection of Privacy Act

Order PO-3578

Subscribe to access Ontario decisions.

Flag of Ontario
Ontario
Subscribers only
Freedom of Information and Protection of Privacy Act

Order PO-3577

Subscribe to access Ontario decisions.

Flag of Ontario
Ontario
Subscribers only
Municipal Freedom of Information and Protection of Privacy Act

Order MO-3290

Subscribe to access Ontario decisions.

Federal (Canada)Personal Information Protection and Electronic Documents ActResolved
Feb 24, 2016Incident Summary #12· Indexed Apr 12, 2026

Incident Summary #12: Break with security procedures exposes financial planner’s client to privacy breach

A financial management firm

An incident occurred where employees of a financial management firm sent a client's sensitive financial information to her personal email account without proper security measures. This led to a situation where an individual, potentially a hacker, used this information to impersonate the client and attempt to transfer funds from her investment account. Although the client's money was not stolen due to the firm's established procedures, the firm's investigation revealed a breach of security protocols and inadequate employee training. The firm took corrective actions, including disciplinary measures for employees, additional privacy training, and reinforcing account security.

Quick View

Personal Information Protection and Electronic Documents ActResolved

Incident Summary #12: Break with security procedures exposes financial planner’s client to privacy breach

Feb 24, 2016Incident Summary #12
Adjudicator: Daniel Therrien
Plain-Language Summary

An incident occurred where employees of a financial management firm sent a client's sensitive financial information to her personal email account without proper security measures. This led to a situation where an individual, potentially a hacker, used this information to impersonate the client and attempt to transfer funds from her investment account. Although the client's money was not stolen due to the firm's established procedures, the firm's investigation revealed a breach of security protocols and inadequate employee training. The firm took corrective actions, including disciplinary measures for employees, additional privacy training, and reinforcing account security.

Key Issues
  • Adequacy of security safeguards for personal information
  • Effectiveness of employee training on privacy and security procedures
  • Appropriateness of the organization's response to a data breach
Quebec
Subscribers only
Act respecting health and social services information

2016 QCCAI 52 — CISSS du Bas-Saint-Laurent

Subscribe to access Quebec decisions.

Decisions | BreachOfPrivacy