CHI Tallaght reprimanded over concerns about confidentiality of children’s personal data

The Data Protection Commission has reprimanded Children’s Health Ireland (CHI) at Tallaght for failing to secure sensitive patient records. The hospital was found to be in breach of GDPR regulations due to improper storage and handling of children's medical data.
Why it matters
This highlights the critical importance of data privacy and security protocols in healthcare institutions handling sensitive personal information.
The State’s data watchdog has reprimanded Tallaght children’s hospital for “failing to ensure” healthcare records were stored and retained in a confidential manner.
Last year, The Irish Times revealed that the Data Protection Commission had conducted an unannounced inspection of a shared office for non-consultant hospital doctors (NCHD) on the first floor of the hospital on July 16th, 2025.
It is understood the door to the shared office – where hundreds of patient charts were stored – was propped open, making it accessible to people walking by. When closed properly, the door is locked with a keypad.
The inspection was conducted after the commission received a protected disclosure. Following this, the DPC announced it was starting an inquiry into Children’s Health Ireland (CHI) Tallaght.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in