press@loopline.org.uk

Clover Makes Intrepid Leap Into Healthcare Payments With PracticePay Launch

Fiserv is extending its popular Clover point-of-sale (POS) platform into the healthcare sector through a strategic partnership with healthcare payments specialist Rectangle Health. The collaboration will introduce Clover PracticePay, a payment solution developed specifically for small to mid-sized healthcare providers. The new system is expected to become available in early 2026, marking the first time […]

Clover Makes Intrepid Leap Into Healthcare Payments With PracticePay Launch Read More »

Florian Risch 2023 court testimony of animal pornography due diligence at Worldline comes to the fore in light of #dirtypayments investigation

An Employment Court judgment delivered in 2023 has gained fresh relevance asscrutiny of Worldline SA and its German subsidiary Payone GmbH intensifies.The judgment, issued in a UK case involving a former Payone employee, acceptedevidence that a Senior Sales Executive Florian Risch recounted a due diligence scenarioinvolving the viewing of animal pornography. The material, described in

Florian Risch 2023 court testimony of animal pornography due diligence at Worldline comes to the fore in light of #dirtypayments investigation Read More »

July 2025 – Appeal Case About Alleged Reference to Historical Racist Ideologies (Involving Worldline subsidiary Payone)

The recent 7th July 2025 judgment of the Employment Appeal Tribunal (EAT) in Logo v Payone GmbH and Others offers a careful clarification of existing legal principles under the Equality Act 2010 and raises subtle but important questions around procedural justice in the employment litigation context. While the decision does not purport to alter doctrine

July 2025 – Appeal Case About Alleged Reference to Historical Racist Ideologies (Involving Worldline subsidiary Payone) Read More »

shopping, credit card, purchasing, pay, payment method, cash, credit card, credit card, credit card, credit card, credit card-2735735.jpg

High Risk, High Scrutiny – Worldline’s Internal Audit Now Underway

Worldline’s scramble to restore trust shifted gears this week as the company confirmed it has hired an external audit firm, Accuracy, to conduct a full review of its portfolio of high-risk clients. Simultaneously, consulting heavyweight Oliver Wyman has been brought in to review internal controls, a clear, public attempt to signal that the company is

High Risk, High Scrutiny – Worldline’s Internal Audit Now Underway Read More »

STOP THE NONSENSE – WORLDLINE IS NOT WIRECARD 2.0

Let’s look at the systemic compliance failures disclosed in the “Dirty Payments” investigation, involving the European payments giant Worldline SA and its key German subsidiary, Payone GmbH. While the unfolding scandal diverges significantly from the outright accounting fraud that led to the collapse of Wirecard AG, its sheer severity, unprecedented scale, optics and alarming persistence

STOP THE NONSENSE – WORLDLINE IS NOT WIRECARD 2.0 Read More »

Court Rejects Payone Attempt to Avoid Detailed Costs Scrutiny

In a recent decision from the High Court, an application by Payone GmbH (a Worldine SA company) to bypass the detailed assessment process was firmly rejected. What is Detailed Assessment? It’s the formal court process where a party awarded legal costs must provide a full, itemised bill showing what was charged and why. The other

Court Rejects Payone Attempt to Avoid Detailed Costs Scrutiny Read More »

shopping, credit card, purchasing, pay, payment method, cash, credit card, credit card, credit card, credit card, credit card-2735735.jpg

Full Steam with Payrails: $32M to Scale Payments

Berlin-based fintech Payrails has raised $32 million in Series A funding, marking a major milestone for the startup as it accelerates development of its enterprise-grade payment platform. The investment—among the largest of its kind in Europe’s fintech sector this year—was led by HV Capital’s Growth Fund, with continued backing from EQT Ventures, General Catalyst, and

Full Steam with Payrails: $32M to Scale Payments Read More »

Cyber Attack Disrupts Co-op Stores: Card Payments and Stock Levels Affected

A recent cyber attack has caused significant disruption at Co-op stores across the UK, with some locations unable to process card payments and others facing stock shortages. The Manchester-based retailer confirmed that while most of its 2,300 outlets continue to operate as normal, a number of branches have had to switch to cash-only transactions due

Cyber Attack Disrupts Co-op Stores: Card Payments and Stock Levels Affected Read More »

PUMA Pounces on Oxford Street with First European Flagship

Global sportswear powerhouse PUMA is gearing up to make a bold statement in the heart of London, with the launch of its first-ever European flagship store set for Autumn 2025. Situated on Oxford Street—one of Europe’s busiest retail destinations—the expansive 24,000-square-foot space will be a showcase of sport, fashion, and digital innovation. Just steps away

PUMA Pounces on Oxford Street with First European Flagship Read More »

Banking on Speed: Mollie and Ivy Connect the Dots in Real-Time Payments

Mollie has confirmed a partnership with payments infrastructure provider Ivy to support the launch of its Pay by Bank service. The agreement enables Mollie to offer real-time account-to-account (A2A) payment capabilities to its merchants across Europe. Through this arrangement, Mollie will use Ivy’s API-based technology to process direct bank transfers and refunds. The integration is

Banking on Speed: Mollie and Ivy Connect the Dots in Real-Time Payments Read More »

We use cookies to improve user experience and analyse website traffic. By clicking ‘Accept’, you agree to our website’s cookie use as described in our Privacy Policy.

Post-Brexit: data protection
Card processor sends sensitive data to wrong address
24 August 2022

Worldline SA subsidiary Payone GmbH has been accused of breaching data protection rules after it sent sensitive employee payroll information to the wrong address by accident. The Worldline Group holdS a 60% stake in the Frankfurt based company who have a small UK market presence.

In June 2021, one of Payone GmbH’s ex UK employees (the data subject) received a “potential data breach notification” from the firm advising him that his salary, National Insurance data, nationality (Special Category Data) was amongst various bits of information sent to an incorrect home address.

This included personal information such as the former employees name, age and address.  It also included details such as the date of birth and the amount of annual work bonus he received in his bank account amongst other identifiable data.

Payone GmbH confirmed that this document was sent out in error following an employee making a mistake when re-entering data processed by their third-party payroll provider.  The error arose when the employee was fulfilling an Article 15 GDPR request. The error was spotted by the data subject when he noticed in an email version of the document that the postal address was incorrect. An attempt to notify Payone GmbH of the error went in vain as the document was already irretrievably despatched.

The data subject was alarmed with the incident which exposed him to the possibility of fraudulent activity, amidst reasonable fears his data could end up on the dark web and used by criminals.  Habitually resident in the UK he complained to the Information Commissioner’s Office (ICO) in June 2021. He similarly raised the concern in Germany via The Hessian Commissioner for Data Protection and Freedom of Information (HBDI).

The ICO reprimanded Payone GmbH for the error in their final decision letter.
Similarly, the HBDI cited a violation of Article 5(f) of the General Data Protection Regulation (GDPR) relating to integrity and confidentiality.

The ICO stated in their July 2021 findings that Payone GmbH, “should take steps to ensure that all personal data records are accurate and up to date. Holding inaccurate information, such as addresses, does increase the risk of personal data breaches and poses risks to the security of information”.

The HBDI confirmed in their October 2021 findings that Payone GmbH had taken remedial action. They concluded that a monetary fine would not be imposed on Payone GmbH as they had taken technical and organisational steps in response to the data breach. Data subjects could now request their data in an autonomous portal.

The GDPR, which came into effect in 2018, gave the Information Commissioner’s Office greater powers to tackle data breaches. The new ‘UK GDPR’ charts its own course after Brexit whilst seeking to maintain EU GDPR adequacy.  In extreme scenarios, organisations face penalties of up to £20m or 4 per cent of their global worldwide turnover, whichever is more.

In the years prior to GDPR, the ICO fines were capped at £500,000.

The data subject said: “I am just glad I spotted it; they were going to resend the document again to another wrong address. Prior to Brexit the process would have been commenced via the ICO who in turn would liaise with the HBDI on the data subjects’ behalf; but I found myself communicating with both authorities separately which was an additional step but in the end was surprisingly
effective. Unfortunately, Payone GmbH again sent my incorrect address to the
Workers Pension Trust in January 2022, and documents yet again went to the wrong address. In my opinion they have not learned from the first time and my complaint is sitting with the ICO yet again”.

The former employee is pursuing a remedy under Article 82 UK GDPR via
the Court’s of England & Wales.

Extraordinary Experiences

Click edit button to change this text. Lorem ipsum dolor sit amet, consectetur adipiscing elit.

Click edit button to change this text. Lorem ipsum dolor sit amet, consectetur adipiscing elit. Ut elit tellus, luctus nec ullamcorper mattis, pulvinar dapibus leo.

Our Core Values

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Ut elit tellus, luctus nec ullamcorper mattis, pulvinar dapibus leo.