BreachOfPrivacy

Canadian Privacy Decisions

The comprehensive archive of Canadian privacy decisions from federal, provincial, and territorial commissioners — with AI-summarized plain-language summaries for every decision.

1,168 decisions matching
Quebec
Subscribers only
Act respecting access to documents held by public bodies and the protection of personal information

2021 QCCAI 101 — Barreau du Québec

Subscribe to access Quebec decisions.

Quebec
Subscribers only
Act respecting access to documents held by public bodies and the protection of personal information

2021 QCCAI 73 — Université du Québec à Montréal

Subscribe to access Quebec decisions.

Quebec
Subscribers only
Act respecting access to documents held by public bodies and the protection of personal information

2021 QCCAI 79 — CISSS des Laurentides

Subscribe to access Quebec decisions.

Quebec
Subscribers only
Act respecting the protection of personal information in the private sector

2021 QCCAI 81 — Première générale Gatineau

Subscribe to access Quebec decisions.

Flag of Nova Scotia
Nova Scotia
Subscribers only
Freedom of Information and Protection of Privacy Act

21-04 — Justice

Subscribe to access Nova Scotia decisions.

Flag of Saskatchewan
Saskatchewan
Subscribers only
Freedom of Information and Protection of Privacy Act

REVIEW REPORT 295-2019, 296-2019 — SaskBuilds Corporation and Ministry of SaskBuilds and Procurement

Subscribe to access Saskatchewan decisions.

Flag of Saskatchewan
Saskatchewan
Subscribers only
Freedom of Information and Protection of Privacy Act

Review Report 297-2019 — Ministry of SaskBuilds and Procurement (formerly SaskBuilds Corporation)

Subscribe to access Saskatchewan decisions.

Flag of Ontario
Ontario
Subscribers only
Freedom of Information and Protection of Privacy Act

Order PO-4134-R

Subscribe to access Ontario decisions.

Flag of Ontario
Ontario
Subscribers only
Freedom of Information and Protection of Privacy Act

Order PO-4132-R

Subscribe to access Ontario decisions.

Flag of Ontario
Ontario
Subscribers only
Freedom of Information and Protection of Privacy Act

Order PO-4130

Subscribe to access Ontario decisions.

Flag of Ontario
Ontario
Subscribers only
Freedom of Information and Protection of Privacy Act

Order PO-4133

Subscribe to access Ontario decisions.

Flag of Ontario
Ontario
Subscribers only
Municipal Freedom of Information and Protection of Privacy Act

Order MO-4034

Subscribe to access Ontario decisions.

Flag of Ontario
Ontario
Subscribers only
Personal Health Information Protection Act

PHIPA DECISION 143

Subscribe to access Ontario decisions.

Flag of Ontario
Ontario
Subscribers only
Freedom of Information and Protection of Privacy Act

Order PO-4131-R

Subscribe to access Ontario decisions.

Federal (Canada)Personal Information Protection and Electronic Documents ActWell-founded & conditionally resolved
Mar 30, 2021PIPEDA Findings #2021-004· Indexed Apr 12, 2026

PIPEDA Findings #2021-004: Company’s employees bypassed authentication protocols allowing fraudsters to repeatedly access customer’s account

Fido Solutions Inc.

This investigation concerned a complaint that Fido Solutions Inc. failed to safeguard a customer's personal information, allowing fraudsters to access and alter account details. It was found that Fido's customer service representatives repeatedly failed to follow authentication protocols, leading to unauthorized access. Additionally, the complaint alleged Fido failed to provide a requested transcript in an understandable format. Fido has committed to implementing enhanced safeguards regarding authentication protocols and has since provided the requested transcripts.

Quick View

Personal Information Protection and Electronic Documents ActWell-founded & conditionally resolved

PIPEDA Findings #2021-004: Company’s employees bypassed authentication protocols allowing fraudsters to repeatedly access customer’s account

Mar 30, 2021PIPEDA Findings #2021-004
Adjudicator: Daniel Therrien
Plain-Language Summary

This investigation concerned a complaint that Fido Solutions Inc. failed to safeguard a customer's personal information, allowing fraudsters to access and alter account details. It was found that Fido's customer service representatives repeatedly failed to follow authentication protocols, leading to unauthorized access. Additionally, the complaint alleged Fido failed to provide a requested transcript in an understandable format. Fido has committed to implementing enhanced safeguards regarding authentication protocols and has since provided the requested transcripts.

Key Issues
  • Adequacy of safeguards to protect customer personal information from unauthorized access.
  • Effectiveness of authentication protocols and employee adherence.
  • Proper response to customer requests for access to personal information.
  • Provision of personal information in a generally understandable format.