[FR] How to notify the CNIL in the event of a data breach?
In the event of a data breach, we recommend that you notify the CNIL as soon as possible.
Go to the CNIL website;
Select "Initial notification". You can return to your notification as you gather more information:

Enter your SIREN number.
If you do not have a SIREN number, tick the red box:

Remember to complete all the fields below:

⚠️ The contact person is sometimes different from the legal representative. If it is the same person, you must still complete both sections:

4. On this page, you will need to provide as much detail as possible, even if it is only the initial notification.

As a reminder, you can come back to these items once you have the missing information. If you are unable to fill in all the relevant sections at this stage, we recommend that you only fill in the ones you know and come back to them later.
With regard to the potential consequences, you should indicate your interpretation of the situation. You can adapt this as the situation evolves and based on feedback from the CNIL.

At this stage, you will see a summary of all the information you have entered. Check that all the information is correct before confirming:

Once you have validated this step, you will receive confirmation of your notification by email. You will be offered the option to download a PDF version of this notification. We recommend that you download it while you wait to receive the email, as this PDF will not be sent:

Your notification has been taken into account. The CNIL will get back to you with the follow-up action taken on your notification.
Last updated
Was this helpful?

