Jump to content


style="text-align: center;">  

Thread Locked

because no one has posted on it for the last 3338 days.

If you need to add something to this thread then

 

Please click the "Report " link

 

at the bottom of one of the posts.

 

If you want to post a new story then

Please

Start your own new thread

That way you will attract more attention to your story and get more visitors and more help 

 

Thanks

Recommended Posts

That's bad enough but what was michael Green thinking of posting it on twitter?

The Consumer Action Group is a free help site.

Should you be offered help that requires payment please report it to site team.

Advice & opinions given by Caro are personal, are not endorsed by Consumer Action Group or Bank Action Group, and are offered informally, without prejudice & without liability. Your decisions and actions are your own, and should you be in any doubt, you are advised to seek the opinion of a qualified professional.

Link to post
Share on other sites

 

The company, which allows drivers to both appeal and pay parking fines, describes itself as a PCI DSS compliant payment processor that uses encryption to safeguard drivers' privacy and transaction details.

 

All of that appears to be for almost nothing though - Sky News reports how the database entered the public domain after an unrestricted link to it was sent to a motorist by mistake.

 

The motorist then forwarded it to lawyer Michael Green, a consumer activist running the ChallengeTheFine.com website, who published it on Twitter (now deleted).

 

Contained within the database were 9721 records, including names and addresses of drivers provided by the Driver and Vehicle Licensing Agency (DVLA).

 

Photographs of motorists and their vehicles taken by enforcement officers were also available, as were emails of appeals against parking tickets.

 

 

 

https://nakedsecurity.sophos.com/

Have we helped you ...?         Please Donate button to the Consumer Action Group

Uploading documents to CAG ** Instructions **

Looking for a draft letter? Use the CAG Library

Dealing with Customer Service Departments? - read the CAG Guide first

1: Making a PPI claim ? - Q & A's and spreadsheets for single premium policy - HERE

2: Take back control of your finances - Debt Diaries

3: Feel Bullied by Creditors or Debt Collectors? Read Here

4: Staying Calm About Debt  Read Here

5: Forum rules - These have been updated - Please Read

BCOBS

1: How can BCOBS protect you from your Banks unfair treatment

2: Does your Bank play fair - You can force your Bank to play Fair with you

3: Banking Conduct of Business Regulations - The Hidden Rules

4: BCOBS and Unfair Treatment - Common Examples of Banks Behaving Badly

5: Fair Treatment for Credit Card Holders and Borrowers - COBS

Advice & opinions given by citizenb are personal, are not endorsed by Consumer Action Group or Bank Action Group, and are offered informally, without prejudice & without liability. Your decisions and actions are your own, and should you be in any doubt, you are advised to seek the opinion of a qualified professional.

PLEASE DO NOT ASK ME TO GIVE ADVICE BY PM - IF YOU PROVIDE A LINK TO YOUR THREAD THEN I WILL BE HAPPY TO OFFER ADVICE THERE:D

Link to post
Share on other sites

I can't actually see what harm it's done anyone ?

 

Well for starters they have breached the terms of their kadoe contract numerous times.

Small section of the kadoe contract between DVLA and customer(PPC);

(Apologies for how it is formatted!).

 

SCHEDULE 2 MINIMUM DATA SECURITY REQUIREMENTS 1. 1.1. a) b) c) d) e) f) g) h) Data Security Requirements The minimum security requirements, which are required by clause D2, are as follows: Data, including back-up data, must be retained in secure premises and locked away; Data, including back-up data, must be protected from unauthorised access, release or loss; A User ID and password must be required to enter all databases on which the Data is stored; A unique User ID and password must be allocated to each person with access to the Data or the KADOE Service; User IDs must not be shared between Staff; Access to the Data must be minimised so that only where necessary are individuals given the following levels of access:  ability to view material from single identifiable records  ability to view material from many identifiable records  functional access, including: searching, amendment, deletion, printing, downloading or transferring information; An electronic trail relating to any activity involving the Data must be retained, identifying the User ID and individual involved in each activity; The Data must not be accessed from, copied onto or stored on Removable Media

 

 

D6. Retention of Data and Evidence D6.1. In accordance with the DPA, the Customer shall retain each item of Data only for as long as is necessary with reference to the reasonable cause for which it was shared

Link to post
Share on other sites

I know all that, but what harm has it done ?

 

Who knows? What kind of people had free access to the RK data?

 

Allow free access to the DVLA database for everyone and see what will happen....

Same thing, smaller scale.

Link to post
Share on other sites

  • Recently Browsing   0 Caggers

    • No registered users viewing this page.

  • Have we helped you ...?


×
×
  • Create New...