The Australian Privacy Commissioner has handed down the first Consumer Data Right (CDR) privacy determination, finding that Regional Australia Bank (RAB) breached Privacy Safeguards 1 and 11 due to failings by its outsourced service provider, Biza.io. The breach involved the co-mingling of CDR data from up to 197 consumers, creating […]