BULLETIN №082Last updated · 03 Aug 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.7m
- YoY volume
- -21.7%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 14 Apr 2011 | Mansutti S.p.A.Mansutti S.p.A. was fined EUR 12,000 by the Garante for failing to provide the required data protection notice on its website forms. The breach concerned Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €12,000 | ↗ |
| 06 Oct 2014 | MANGO-ON LINE, S.A.MANGO-ON LINE, S.A. was fined by the AEPD €5,000 for continuing to send newsletters to a complainant despite multiple unsubscribe requests. The authority found this breached Article 21 of the LSSI on unsolicited commercial communications. | ES | AEPD | ePrivacy | €5,000 | ↗ |
| 04 Oct 2011 | Mancosu Editore s.r.l.Mancosu Editore s.r.l. was fined by the Garante 10,400 EUR for sending promotional emails without providing the required information to data subjects and without obtaining explicit consent. The conduct breached Articles 13 and 130 of the Italian Data Protection Code. | IT | Garante | GDPR | €10,400 | ↗ |
| 04 Dec 2014 | Manca FedericoManca Federico was fined by the Garante in the amount of EUR 2,400 for failing to provide the required information to data subjects when collecting personal data through a web form on his website. The case concerns a breach of transparency and information duties in online data collection. | IT | Garante | GDPR | €2,400 | ↗ |
| 20 Jan 2012 | Manage Consulting International s.r.l.Manage Consulting International s.r.l. was fined by the Italian Garante in the amount of 10,400 EUR. The sanction concerned sending unsolicited promotional faxes without proper consent and required information. | IT | Garante | GDPR | €10,400 | ↗ |
| 21 Jan 2016 | Malta Games di Belgiorno Chiara & C. s.a.s.Malta Games di Belgiorno Chiara & C. s.a.s. was fined EUR 2,400 by the Garante. The authority found that the company failed to provide the required information to data subjects about personal data processing through a video surveillance system. | IT | Garante | GDPR | €2,400 | ↗ |
| 12 Sept 2019 | MALONEY'S SPORT BAR S.L.MALONEY'S SPORT BAR S.L. was fined by the AEPD in the amount of 6,000 EUR for operating a video surveillance system that monitored public spaces without proper justification. The authority found this practice to be in breach of data protection rules. | ES | AEPD | GDPR | €6,000 | ↗ |
| 03 Jun 2020 | MALAGATROM, S.L.U.MALAGATROM, S.L.U. was fined by the AEPD 4,000 EUR for processing and disclosing personal data on Amazon without consent. The authority found this conduct to be contrary to Article 6 of the GDPR. | ES | AEPD | GDPR | €4,000 | ↗ |
| 14 Dec 2021 | MALAGATROM, S.L.UMALAGATROM, S.L.U was fined by the AEPD in the amount of EUR 1,000 for failing to comply with a prior decision. That decision required the removal of comments containing personal data from its Amazon page and the implementation of measures to prevent similar incidents in the future. | ES | AEPD | GDPR | €1,000 | ↗ |
| 01 Jan 2025 | MALAGASUITE SHOWROOM, S.L.MALAGASUITE SHOWROOM, S.L. was fined by the AEPD 2,000 EUR for failing to inform guests about the processing of their personal data. The authority found a breach of Article 13 GDPR. | ES | AEPD | GDPR | €2,000 | ↗ |
| 01 Jan 2015 | MAKRO AUTOSERVICIO MAYORISTA, S.A.U.MAKRO AUTOSERVICIO MAYORISTA, S.A.U. was fined by the AEPD €5,000 for sending unsolicited commercial SMS messages. The authority found that no simple opt-out mechanism was provided, in breach of article 21.2 of the LSSI. | ES | AEPD | ePrivacy | €5,000 | ↗ |
| 01 Jan 2023 | MAKING SOLUTIONS, S.L. (MY PERFECT WEDDING)MY PERFECT WEDDING was fined by the AEPD EUR 1,000 for failing to properly provide personal data in response to the complainant’s request. The authority found a breach of Article 15 GDPR, which governs the right of access. | ES | AEPD | GDPR | €1,000 | ↗ |
| 01 Jan 2024 | MAKING SOLUTIONS, S.L. (MY PERFECT WEDDING)MAKING SOLUTIONS, S.L. (MY PERFECT WEDDING) was fined 1,000 EUR by the AEPD. The authority found a breach of Article 15 GDPR for failing to provide an individual with access to their personal data. | ES | AEPD | GDPR | €1,000 | ↗ |
| 07 Nov 2025 | MAJOREL SP SOLUTIONS, S.A.MAJOREL SP SOLUTIONS, S.A. was fined by the AEPD 80,000 EUR for processing personal data without a lawful basis. The authority found a breach of Article 6(1)(b) GDPR. | ES | AEPD | GDPR | €80,000 | ↗ |
| 18 Jan 2022 | MAJESTIC SOLUTIONS S.L.MAJESTIC SOLUTIONS S.L. was fined by the AEPD 10,000 EUR for failing to provide all required information to affected individuals after a personal data security breach. The authority found a breach of Article 34(2) GDPR. | ES | AEPD | GDPR | €10,000 | ↗ |
| 01 Jan 2018 | MAISONS DU MONDE ESPAÑA, S.L.MAISONS DU MONDE ESPAÑA, S.L. was fined by the AEPD 15,000 EUR for sending unsolicited commercial SMS messages. The company did not provide recipients with an effective opt-out mechanism, despite prior requests to unsubscribe. | ES | AEPD | ePrivacy | €15,000 | ↗ |
| 01 Jan 2012 | MAIL MARKETING SERVICIOS INFORMATICOS, S.LMAIL MARKETING SERVICIOS INFORMATICOS, S.L was fined by the AEPD in the amount of 7,000 EUR for sending unsolicited commercial emails. The case concerned a breach of Article 21 of the LSSI, which governs electronic marketing communications. | ES | AEPD | ePrivacy | €7,000 | ↗ |
| 18 Jun 2021 | Magyar Telekom Nyrt.The Hungarian data protection authority fined Magyar Telekom Nyrt. for unlawful processing of personal data. The case involved failure to delete an email address and improper handling of data subject rights. | HU | NAIH | GDPR | €28,100 | ↗ |
| 22 Apr 2022 | Magyar Kétfarkú Kutya PártThe Hungarian party Magyar Kétfarkú Kutya Párt was fined by NAIH for failing to implement adequate security measures when storing supporter and activist data. The authority found breaches of GDPR Articles 32 and 5. | HU | NAIH | GDPR | €8,100 | ↗ |
| 24 Oct 2019 | Magyar Honvédség Egészségügyi KözpontMagyar Honvédség Egészségügyi Központ was fined by NAIH for failing to report a data breach involving a patient's application form within 72 hours. The authority also found that the organization lacked an internal incident management policy. | HU | NAIH | GDPR | €7,600 | ↗ |