Manx Care has received an Enforcement Notice from the Information Commissioner after a number of data breaches.
According to the document, there have been several breaches, including one where the unencrypted medical record of a patient was emailed to around 2,200 people.
The notice says that damage or distress to individuals is likely due to the lack of appropriate technical and organisational measures.
Manx Care now have four months to comply with GDPR regulations and provide the Commissioner with updates, or face a fine of up to £1m.
You can read the full document here.
Mountain Road partly reopens
Island resident claims £125,000 National Lottery prize!
Man who bit off ear in public TT attack has appeal thrown out
Northern Civic Amenity Site reopens from Monday
Smudge the Cat sparks rescue after being locked in shop!
MHK hits out over UK's assisted dying announcement
DJ and former Island resident dies after battling cancer
Nursing organisation to contact staff over pay offer