Manx Care has received an Enforcement Notice from the Information Commissioner after a number of data breaches.
According to the document, there have been several breaches, including one where the unencrypted medical record of a patient was emailed to around 2,200 people.
The notice says that damage or distress to individuals is likely due to the lack of appropriate technical and organisational measures.
Manx Care now have four months to comply with GDPR regulations and provide the Commissioner with updates, or face a fine of up to £1m.
You can read the full document here.
Crogga still owes the Isle of Man Government money
DoI says works at Liverpool ferry terminal will take longer
Over 50 employment tribunals outstanding at the DoI
Free period products bill raises cost concerns for MHKs
Key road in Ramsey to re-open early this afternoon
Want to start training to become a nurse?
Appeal launched after fly-tipper filmed dumping rubbish
Prepare your pets for Bonfire Night, says Manx charity