Charity fines

An investigation by the Information Commissioner's Office (ICO) has revealed that two national charities, the RSPCA and the British Heart Foundation, secretly screened millions of their donors so they could target them for more money. The ICO said that this practice breached the Data Protection Act as the charities failed to handle donors' personal data in accordance with the legislation.

The charities also traced and targeted new or lapsed donors by piecing together personal information which was obtained from other sources. In addition, they traded data with other charities to create a pool of donor data which was available for sale. As the donors were not informed of these practices, they could not give their consent or object.

The investigation was one of a number by the ICO into the fundraising activities of charities sparked by media reports about pressure on donors to contribute. The Information Commissioner, Elizabeth Denham, fined the RSPCA £25,000 and the British Heart Foundation £18,000.

The ICO can take action, including penalties of up to £500,000, against organisations and individuals that collect, use and keep personal data. Anyone who processes personal information must comply with the eight principles of the Data Protection Act which make sure personal data is:

  1. fairly and lawfully processed
  2. processed for limited purposes
  3. adequate, relevant and not excessive
  4. accurate and up to date
  5. not kept for longer than is necessary
  6. processed in line with an individual's rights
  7. secure and
  8. not transferred to other countries without adequate protection.
About our team

Fiscalis was established in 2002 and today, we continue to build on our enviable reputation for providing excellent advice and first class service to our business and personal clients alike. We have many clients in the local community and service businesses, small and large, across many sectors.

Read more
Latest news

05 Jan 2017

An investigation by the Information Commissioner's Office (ICO) has revealed that two national charities, the RSPCA and the British Heart Foundation, secretly screened millions of their donors so they could target them for more money. The ICO said that this practice breached the Data Protection Act as the charities failed to handle donors' personal data in accordance with the legislation.

The charities also traced and targeted new or lapsed donors by piecing together personal information which was obtained from other sources. In addition, they traded data with other charities to create a pool of donor data which was available for sale. As the donors were not informed of these practices, they could not give their consent or object.

The investigation was one of a number by the ICO into the fundraising activities of charities sparked by media reports about pressure on donors to contribute. The Information Commissioner, Elizabeth Denham, fined the RSPCA £25,000 and the British Heart Foundation £18,000.

The ICO can take action, including penalties of up to £500,000, against organisations and individuals that collect, use and keep personal data. Anyone who processes personal information must comply with the eight principles of the Data Protection Act which make sure personal data is:

  1. fairly and lawfully processed
  2. processed for limited purposes
  3. adequate, relevant and not excessive
  4. accurate and up to date
  5. not kept for longer than is necessary
  6. processed in line with an individual's rights
  7. secure and
  8. not transferred to other countries without adequate protection.
Contact details

01993 774311

Fiscalis, Dunraven House, 6 Meadow Court, 41-43 High Street, Witney, Oxon OX28 6ER

© 2024 Fiscalis. All rights reserved. We use cookies on this website, you can find more information about cookies here. powered by totalSOLUTION