BULLETIN №082Last updated · 02 Aug 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.7m
- YoY volume
- -21.7%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 04 Mar 2010 | Fastweb s.p.a.Fastweb s.p.a. was fined by the Garante for failing to provide adequate information to data subjects about the processing of their personal data. The case concerned a breach of the Italian Data Protection Code. | IT | Garante | GDPR | €15,000 | ↗ |
| 01 Jan 2019 | COMUNIDAD DE PROPIETARIOS R.R.R.The community of property owners was fined by the AEPD for publicly displaying personal data taken from meeting minutes in the building elevators. The authority found that this constituted a breach of data protection rules. | ES | AEPD | GDPR | €15,000 | ↗ |
| 23 Jan 2024 | CAJA RURAL REGIONAL SAN AGUSTÍN, S.C.C.CAJA RURAL REGIONAL SAN AGUSTÍN was fined by the AEPD 15,000 EUR for breaching data protection principles. The authority found that unauthorized access to personal data occurred due to a security incident, affecting confidentiality and integrity. | ES | AEPD | GDPR | €15,000 | ↗ |
| 29 Apr 2026 | Nuova Corrente S.r.l.Nuova Corrente S.r.l. was fined EUR 15,000 by the Garante for making promotional calls without a valid legal basis. The authority found this to be a breach of GDPR lawfulness principles. | IT | Garante | GDPR | €15,000 | ↗ |
| 27 Nov 2024 | Faro di RomaFaro di Roma was fined 15,000 EUR by the Garante for failing to comply with data protection rules. The case concerned the failure to honor requests for erasure and rectification of personal data linked to a judicial matter. | IT | Garante | GDPR | €15,000 | ↗ |
| 26 Feb 2026 | Depac Società Cooperativa Sociale a r.l.Depac Società Cooperativa Sociale a r.l. was fined by the Garante EUR 15,000 for unauthorized processing of employees' biometric data. The case concerned the collection and storage of fingerprint data without proper consent or a valid legal basis. | IT | Garante | GDPR | €15,000 | ↗ |
| 09 May 2018 | Ditta individuale “La Scuola della Salute di Francesco Parisi”The Garante imposed a 15,000 EUR fine on Ditta individuale “La Scuola della Salute di Francesco Parisi” for providing inadequate privacy information to clients and for related consent issues. The conduct was found to violate provisions of the privacy code. | IT | Garante | GDPR | €15,000 | ↗ |
| 19 Nov 2018 | Anonymizováno (ÚOOÚ UOOU-04674/18-33)The entity was fined for repeatedly sending unsolicited commercial communications to email addresses without the recipients’ consent. The authority found a breach of Czech rules on information society services. | CZ | UOOU | ePrivacy | €577 | ↗ |
| 01 Jan 2022 | GESTERPOOL, S.L.U.The AEPD imposed a 15,000 EUR fine on GESTERPOOL, S.L.U. for unauthorized use of personal data in a commercial call and for contract processing without consent. The case concerns breaches of GDPR rules, including Articles 28 and 58(1). | ES | AEPD | GDPR | €15,000 | ↗ |
| 11 Oct 2012 | Azienda sanitaria provinciale di Vibo ValentiaAzienda sanitaria provinciale di Vibo Valentia was fined by the Garante EUR 15,000 for failing to adopt the required minimum security measures. The authority found that the Security Programmatic Document (DPS) was not updated by the deadline required under the Italian Privacy Code. | IT | Garante | GDPR | €15,000 | ↗ |
| 23 Oct 2025 | Comune di CurtaroloComune di Curtarolo was fined EUR 15,000 by the Garante for using surveillance footage for disciplinary purposes without proper legal justification. The authority also found that adequate privacy information was not provided to the individuals concerned. | IT | Garante | GDPR | €15,000 | ↗ |
| 20 Jun 2024 | Comune di ForlìThe Municipality of Forlì was fined EUR 15,000 by the Garante for failing to embed data protection principles in the design of its video surveillance system. The authority found breaches of transparency and accountability requirements. | IT | Garante | GDPR | €15,000 | ↗ |
| 13 Apr 2023 | GMC s.a.p.a.GMC s.a.p.a. was fined EUR 15,000 by the Italian supervisory authority, Garante. The case concerned the publication of detailed health data of an individual without consent, in breach of GDPR Article 9 on special categories of personal data. | IT | Garante | GDPR | €15,000 | ↗ |
| 24 Jan 2026 | IBERANUNCIOS SLIBERANUNCIOS SL was fined by the AEPD EUR 15,000 for a data protection breach. The incident allowed unauthorized access to personal data, breaching the confidentiality principle under GDPR. | ES | AEPD | GDPR | €15,000 | ↗ |
| 25 Oct 2017 | EDITORIAL ECOPRENSA, S.A.EDITORIAL ECOPRENSA, S.A. was fined EUR 15,000 by the AEPD for failing to register user data files with the data protection authority, providing inconsistent privacy information, and irregularly sharing data with third parties. The case indicates deficiencies in core transparency obligations and control over personal data disclosures. | ES | AEPD | ePrivacy | €15,000 | ↗ |
| 23 Jan 2024 | CAJA RURAL DE ZAMORA COOPERATIVA DE CRÉDITOCAJA RURAL DE ZAMORA was fined by the AEPD EUR 15,000 for a personal data breach. The incident affected the confidentiality and integrity of personal data, breaching GDPR Article 5(1)(f). | ES | AEPD | GDPR | €15,000 | ↗ |
| 04 Jun 2025 | INTS Italia S.r.l.INTS Italia S.r.l. was fined 15,000 EUR by the Garante for failing to provide employees with adequate information on data protection and for not responding to data access requests. The authority found that the company breached core GDPR principles. | IT | Garante | GDPR | €15,000 | ↗ |
| 20 Aug 2025 | MOBILITY EVOLUTION S.A.MOBILITY EVOLUTION S.A. was fined EUR 15,000 by the AEPD for failing to properly process data deletion requests submitted through its application. The authority found that the company’s handling of these requests breached Article 25 GDPR on data protection by design and by default. | ES | AEPD | GDPR | €15,000 | ↗ |
| 28 Apr 2026 | CROWD ENTERTAINMENT LIMITEDCROWD ENTERTAINMENT LIMITED was fined EUR 15,000 by ANSPDCP for GDPR violations. The case concerned non-compliant processing of personal data. | RO | ANSPDCP | GDPR | €15,000 | ↗ |
| 10 Dec 2025 | Crowd Entertainment LimitedThe National Supervisory Authority for Personal Data Processing completed an investigation in November 2025 at Crowd Entertainment Limited and found violations of GDPR provisions. As a result, an administrative fine of EUR 15,000 was imposed. | RO | ANSPDCP | GDPR | €15,000 | ↗ |