134.97 Disposal of records containing personal information.
(1) Definitions. In this section:
(a) “Credit card" has the meaning given in s. 421.301 (15).
(am) “Dispose" does not include a sale of a record or the transfer of a record for value.
(b) “Financial institution" means any bank, savings bank, savings and loan association or credit union that is authorized to do business under state or federal laws relating to financial institutions, any issuer of a credit card or any investment company.
(c) “Investment company" has the meaning given in s. 180.0103 (11e).
(d) “Medical business" means any organization or enterprise operated for profit or not for profit, including a sole proprietorship, partnership, firm, business trust, joint venture, syndicate, corporation, limited liability company or association, that possesses information, other than personnel records, relating to a person's physical or mental health, medical history or medical treatment.
(e) “Personal information" means any of the following:
1. Personally identifiable data about an individual's medical condition, if the data are not generally considered to be public knowledge.
2. Personally identifiable data that contain an individual's account or customer number, account balance, balance owing, credit balance or credit limit, if the data relate to an individual's account or transaction with a financial institution.
3. Personally identifiable data provided by an individual to a financial institution upon opening an account or applying for a loan or credit.
4. Personally identifiable data about an individual's federal, state or local tax returns.
(f) “Personally identifiable" means capable of being associated with a particular individual through one or more identifiers or other information or circumstances.
(g) “Record" means any material on which written, drawn, printed, spoken, visual or electromagnetic information is recorded or preserved, regardless of physical form or characteristics.
(h) “Tax preparation business" means any organization or enterprise operated for profit, including a sole proprietorship, partnership, firm, business trust, joint venture, syndicate, corporation, limited liability company or association, that for a fee prepares an individual's federal, state or local tax returns or counsels an individual regarding the individual's federal, state or local tax returns.
(2) Disposal of records containing personal information. A financial institution, medical business or tax preparation business may not dispose of a record containing personal information unless the financial institution, medical business, tax preparation business or other person under contract with the financial institution, medical business or tax preparation business does any of the following:
(a) Shreds the record before the disposal of the record.
(b) Erases the personal information contained in the record before the disposal of the record.
(c) Modifies the record to make the personal information unreadable before the disposal of the record.
(d) Takes actions that it reasonably believes will ensure that no unauthorized person will have access to the personal information contained in the record for the period between the record's disposal and the record's destruction.
(3) Civil liability; disposal and use.
(a) A financial institution, medical business or tax preparation business is liable to a person whose personal information is disposed of in violation of sub. (2) for the amount of damages resulting from the violation.
(b) Any person who, for any purpose, uses personal information contained in a record that was disposed of by a financial institution, medical business or tax preparation business is liable to an individual who is the subject of the information and to the financial institution, medical business or tax preparation business that disposed of the record for the amount of damages resulting from the person's use of the information. This paragraph does not apply to a person who uses personal information with the authorization or consent of the individual who is the subject of the information.
(4) Penalties; disposal and use.
(a) A financial institution, medical business or tax preparation business that violates sub. (2) may be required to forfeit not more than $1,000. Acts arising out of the same incident or occurrence shall be a single violation.
(b) Any person who possesses a record that was disposed of by a financial institution, medical business or tax preparation business and who intends to use, for any purpose, personal information contained in the record may be fined not more than $1,000 or imprisoned for not more than 90 days or both. This paragraph does not apply to a person who possesses a record with the authorization or consent of the individual whose personal information is contained in the record.
History: 1999 a. 9; 2005 a. 155 s. 52; Stats. 2005 s. 134.97.
Legislative Watch: Disposing Medical, Financial Records. Franklin. Wis. Law. Dec. 1999.
Structure Wisconsin Statutes & Annotations
Wisconsin Statutes & Annotations
Chapter 134 - Miscellaneous trade regulations.
134.01 - Injury to business; restraint of will.
134.02 - Blacklisting and coercion of employees.
134.03 - Preventing pursuit of work.
134.04 - Sale of certain merchandise by employers to employees prohibited; penalty.
134.05 - Bribery of agent, etc.
134.06 - Bonus to chauffeurs for purchases, forbidden.
134.10 - Invading right to choose insurance agent or insurer by persons engaged in financing.
134.15 - Issuing and using what is not money; contracts void.
134.16 - Fraudulently receiving deposits.
134.17 - Corporate name, recording, amendment, discontinuance, unlawful use.
134.18 - Use of, evidence of obtaining credit.
134.19 - Fraud on exemption laws.
134.20 - Fraudulent issuance or use of warehouse receipts or bills of lading.
134.205 - Warehouse keepers to keep register; liability for damages; penalty for fraud.
134.21 - Penalty for unauthorized presentation of dramatic plays, etc.
134.23 - Motion picture fair practices.
134.25 - Misbranding of gold articles.
134.26 - Misbranding of sterling silver articles.
134.27 - Misbranding of coin silver articles.
134.28 - Misbranding of base silver articles.
134.29 - Testing of silver articles.
134.30 - Misbranding of gold plated articles.
134.31 - Misbranding of silver-plated articles.
134.32 - Penalty for violations of ss. 134.25 to 134.31.
134.34 - Duplication of vessel hulls and parts.
134.345 - Form retention and disposal.
134.35 - Time of filing endorsed on telegrams delivered.
134.36 - Telegraph; divulging message; preference in sending, etc.
134.37 - Divulging message or forging receipt.
134.38 - Companies to post copies of s. 134.37.
134.39 - Fraudulent knowledge of dispatch; injury to wires; interference.
134.405 - Purchase and sale of certain scrap material.
134.41 - Poles and wires on private property without owner's consent.
134.43 - Privacy and cable television.
134.45 - Contracts restricting days for exhibiting motion picture films; penalty.
134.46 - Exhibition of explicit sexual material at outdoor theater.
134.48 - Contracts for the display of free newspapers.
134.49 - Renewals and extensions of business contracts.
134.50 - Poultry dealing regulations.
134.52 - Shipment of chickens.
134.53 - Transportation and sale of cattle.
134.57 - Detectives, settlement with employees.
134.58 - Use of unauthorized persons as officers.
134.59 - Felons, burglar alarm installation.
134.60 - Cutting or transportation of evergreens.
134.63 - Nitrous oxide; restrictions on sales; records of certain sales; labeling.
134.65 - Cigarette and tobacco products retailer license.
134.66 - Restrictions on sale or gift of cigarettes or nicotine or tobacco products.
134.69 - Peddling finger alphabet cards prohibited.
134.695 - Antique dealers and recyclers.
134.71 - Pawnbrokers and secondhand article and jewelry dealers.
134.715 - Flea markets; proof of ownership, receipts, returns.
134.72 - Prohibition of certain unsolicited messages by facsimile machine.
134.73 - Identification of prisoner making telephone solicitation.
134.74 - Nondisclosure of information on receipts.
134.77 - Beverage container regulation.
134.80 - Home heating fuel dealers.
134.81 - Water heater thermostat settings.
134.85 - Automated teller machines; international charges.
134.87 - Repair, replacement and refund under new motorized wheelchair warranties.
134.90 - Uniform trade secrets act.
134.91 - Sale of dextromethorphan to a minor without prescription prohibited.
134.93 - Payment of commissions to independent sales representatives.
134.95 - Violations against elderly or disabled persons.
134.96 - Use of lodging establishments.
134.97 - Disposal of records containing personal information.
134.98 - Notice of unauthorized acquisition of personal information.