The Office of the Data Protection Authority in Guernsey has released personal data breach statistics for the second quarter of 2026, revealing a decrease in the number of reported data breaches in comparison with the previous quarter.
Of the 49 breach reports that came into the ODPA from April to June, only four were classified as high-risk compared to seven in the previous period. Ten breach reports were determined not to have met the threshold of a reportable data breach.
This proactivity in reporting potential breaches demonstrates how many organisations recognise the importance of complying with the law to not only meet their obligations but protect their organisations and clients.
As has historically been the case, emails sent to incorrect recipients was again the most common type of breach reported, with loss of confidentiality the most prevalent potential harm.
“It is encouraging to see high-risk breach incident reports decline for a second quarter,” said Commissioner Homan (pictured).
“When organisations report breaches they not only fulfil an important legal obligation but can benefit from our office’s expertise in mitigating any harmful effects of a security incident. This report also reminds us that breaches are not just about records, but include overheard conversations.”




