Gap Personnel Holdings
Disclosed Oct 19, 20232 years agoConfirmed
UK ICO reprimand for security failings
The Information Commissioner (the Commissioner) issues a reprimand to Gap Personnel Holdings Limited in respect of infringements of Article 32 (1), Article 32 (1) (b) and Article 32 (1) (d) of the UK GDPR. The organisation did not have appropriate security measures in place, which resulted in an unauthorised threat actor being able to access individuals personal data twice within a 12-month period.
What is known
| People affected | Not stated in the sources we have |
|---|---|
| Disclosed | Oct 19, 2023 |
| Attack | Not stated |
| Data exposed | Not stated |
| Sector | Other · GB |
| Status | Confirmed |
| Lawsuit or fine | UK ICO reprimand (2023-10-19) |
Sources
| Source | |
|---|---|
| UK ICO reprimand: Gap Personnel Holdings Limitedico.org.uk · Regulator | Regulator |
Notices filed
| Where | Filed | People |
|---|---|---|
| UK ICOregulator:GB | Oct 19, 2023 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (UK ICO), confirmed by UK ICO. Record counts are as reported. Not legal advice.