Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21.7%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
14 Apr 2011Mansutti S.p.A.Mansutti S.p.A. was fined EUR 12,000 by the Garante for failing to provide the required data protection notice on its website forms. The breach concerned Article 13 of the Italian Data Protection Code.ITGaranteGDPR€12,000
06 Oct 2014MANGO-ON LINE, S.A.MANGO-ON LINE, S.A. was fined by the AEPD €5,000 for continuing to send newsletters to a complainant despite multiple unsubscribe requests. The authority found this breached Article 21 of the LSSI on unsolicited commercial communications.ESAEPDePrivacy€5,000
04 Oct 2011Mancosu Editore s.r.l.Mancosu Editore s.r.l. was fined by the Garante 10,400 EUR for sending promotional emails without providing the required information to data subjects and without obtaining explicit consent. The conduct breached Articles 13 and 130 of the Italian Data Protection Code.ITGaranteGDPR€10,400
04 Dec 2014Manca FedericoManca Federico was fined by the Garante in the amount of EUR 2,400 for failing to provide the required information to data subjects when collecting personal data through a web form on his website. The case concerns a breach of transparency and information duties in online data collection.ITGaranteGDPR€2,400
20 Jan 2012Manage Consulting International s.r.l.Manage Consulting International s.r.l. was fined by the Italian Garante in the amount of 10,400 EUR. The sanction concerned sending unsolicited promotional faxes without proper consent and required information.ITGaranteGDPR€10,400
21 Jan 2016Malta Games di Belgiorno Chiara & C. s.a.s.Malta Games di Belgiorno Chiara & C. s.a.s. was fined EUR 2,400 by the Garante. The authority found that the company failed to provide the required information to data subjects about personal data processing through a video surveillance system.ITGaranteGDPR€2,400
12 Sept 2019MALONEY'S SPORT BAR S.L.MALONEY'S SPORT BAR S.L. was fined by the AEPD in the amount of 6,000 EUR for operating a video surveillance system that monitored public spaces without proper justification. The authority found this practice to be in breach of data protection rules.ESAEPDGDPR€6,000
03 Jun 2020MALAGATROM, S.L.U.MALAGATROM, S.L.U. was fined by the AEPD 4,000 EUR for processing and disclosing personal data on Amazon without consent. The authority found this conduct to be contrary to Article 6 of the GDPR.ESAEPDGDPR€4,000
14 Dec 2021MALAGATROM, S.L.UMALAGATROM, S.L.U was fined by the AEPD in the amount of EUR 1,000 for failing to comply with a prior decision. That decision required the removal of comments containing personal data from its Amazon page and the implementation of measures to prevent similar incidents in the future.ESAEPDGDPR€1,000
01 Jan 2025MALAGASUITE SHOWROOM, S.L.MALAGASUITE SHOWROOM, S.L. was fined by the AEPD 2,000 EUR for failing to inform guests about the processing of their personal data. The authority found a breach of Article 13 GDPR.ESAEPDGDPR€2,000
01 Jan 2015MAKRO AUTOSERVICIO MAYORISTA, S.A.U.MAKRO AUTOSERVICIO MAYORISTA, S.A.U. was fined by the AEPD €5,000 for sending unsolicited commercial SMS messages. The authority found that no simple opt-out mechanism was provided, in breach of article 21.2 of the LSSI.ESAEPDePrivacy€5,000
01 Jan 2023MAKING SOLUTIONS, S.L. (MY PERFECT WEDDING)MY PERFECT WEDDING was fined by the AEPD EUR 1,000 for failing to properly provide personal data in response to the complainant’s request. The authority found a breach of Article 15 GDPR, which governs the right of access.ESAEPDGDPR€1,000
01 Jan 2024MAKING SOLUTIONS, S.L. (MY PERFECT WEDDING)MAKING SOLUTIONS, S.L. (MY PERFECT WEDDING) was fined 1,000 EUR by the AEPD. The authority found a breach of Article 15 GDPR for failing to provide an individual with access to their personal data.ESAEPDGDPR€1,000
07 Nov 2025MAJOREL SP SOLUTIONS, S.A.MAJOREL SP SOLUTIONS, S.A. was fined by the AEPD 80,000 EUR for processing personal data without a lawful basis. The authority found a breach of Article 6(1)(b) GDPR.ESAEPDGDPR€80,000
18 Jan 2022MAJESTIC SOLUTIONS S.L.MAJESTIC SOLUTIONS S.L. was fined by the AEPD 10,000 EUR for failing to provide all required information to affected individuals after a personal data security breach. The authority found a breach of Article 34(2) GDPR.ESAEPDGDPR€10,000
01 Jan 2018MAISONS DU MONDE ESPAÑA, S.L.MAISONS DU MONDE ESPAÑA, S.L. was fined by the AEPD 15,000 EUR for sending unsolicited commercial SMS messages. The company did not provide recipients with an effective opt-out mechanism, despite prior requests to unsubscribe.ESAEPDePrivacy€15,000
01 Jan 2012MAIL MARKETING SERVICIOS INFORMATICOS, S.LMAIL MARKETING SERVICIOS INFORMATICOS, S.L was fined by the AEPD in the amount of 7,000 EUR for sending unsolicited commercial emails. The case concerned a breach of Article 21 of the LSSI, which governs electronic marketing communications.ESAEPDePrivacy€7,000
18 Jun 2021Magyar Telekom Nyrt.The Hungarian data protection authority fined Magyar Telekom Nyrt. for unlawful processing of personal data. The case involved failure to delete an email address and improper handling of data subject rights.HUNAIHGDPR€28,100
22 Apr 2022Magyar Kétfarkú Kutya PártThe Hungarian party Magyar Kétfarkú Kutya Párt was fined by NAIH for failing to implement adequate security measures when storing supporter and activist data. The authority found breaches of GDPR Articles 32 and 5.HUNAIHGDPR€8,100
24 Oct 2019Magyar Honvédség Egészségügyi KözpontMagyar Honvédség Egészségügyi Központ was fined by NAIH for failing to report a data breach involving a patient's application form within 72 hours. The authority also found that the organization lacked an internal incident management policy.HUNAIHGDPR€7,600