Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-20.7%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
27 Apr 2011Comune di AdroThe Municipality of Adro was fined 15,000 EUR by the Italian supervisory authority Garante. The case concerned the publication of employees’ personal data, including health information, in a periodical.ITGaranteGDPR€15,000
05 May 2011Idrablu SpaIdrablu Spa was fined by the Garante in the amount of EUR 20,000 for failing to respond to requests for information about the transfer of personal data to another company. The authority treated this as a breach of data protection rules.ITGaranteGDPR€20,000
05 May 2011Mondolibri s.p.a.Mondolibri s.p.a. was fined EUR 8,000 by the Garante for collecting personal email addresses through its website without providing adequate information to the data subjects. The authority found a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€8,000
12 May 2011Jnternet srlJnternet srl was fined by the Italian data protection authority, Garante, in the amount of EUR 10,000. The case concerned the failure to respond to requests for information about compliance with data protection obligations in connection with promotional emails sent without proper consent.ITGaranteGDPR€10,000
12 May 2011Centrale Palace HotelCentrale Palace Hotel was fined EUR 6,000 by the Garante. The violation concerned the failure to provide the required privacy notice for its video surveillance system, in breach of the Italian data protection code.ITGaranteGDPR€6,000
17 May 2011LA CIGUEÑA DEL BEBE, S.L.LA CIGUEÑA DEL BEBE, S.L. was fined by the AEPD in the amount of 1,800 EUR for sending unsolicited commercial emails without recipient consent. The case concerned Article 21.1 of the LSSI, which governs electronic marketing communications.ESAEPDePrivacy€1,800
19 May 2011Limbiati oreficeria orologeria ottica s.n.c. di L. Limbiati & C.Limbiati oreficeria orologeria ottica s.n.c. was fined by the Garante for collecting personal data through its website without providing adequate information or obtaining the required consent. The authority found this to be a breach of the Italian Privacy Code.ITGaranteGDPR€9,000
19 May 2011Anonymised (HDPA 59/2011)The company was fined for sending unsolicited electronic messages and faxes without subscriber consent. This conduct breached e-privacy rules governing direct electronic communications.GRHDPAePrivacy€2,000
19 May 2011Anonymised (HDPA 59/2011)The company was fined for unlawfully processing email addresses without prior consent. The authority found this to be a breach of data protection law.GRHDPAGDPR€2,000
26 May 2011Eredi Trossello dei Fratelli Trossello C.A.R. s.n.c.The company was fined EUR 10,000 by the Garante for operating a video surveillance system without the required privacy notice. The authority found a breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€10,000
26 May 2011DVDR.it s.r.l.DVDR.it s.r.l. was fined EUR 7,000 by the Garante. The authority found that the company sent unsolicited commercial emails without consent, in breach of data protection rules.ITGaranteGDPR€7,000
30 May 2011CABLEUROPA, S.A.U.CABLEUROPA, S.A.U. was fined EUR 600 by the AEPD for continuing to send advertising communications to an individual after repeated requests for data cancellation. The authority found a breach of Article 21.1 of the LSSI.ESAEPDePrivacy€600
09 Jun 2011GREEN TAL, S.A.GREEN TAL, S.A. was fined by the AEPD in the amount of EUR 1,200 for sending unsolicited commercial emails. The conduct breached Article 21 of the LSSI, which restricts marketing communications without prior consent.ESAEPDePrivacy€1,200
10 Jun 2011Azienda mobilità trasporti di Bari s.p.a.Azienda mobilità trasporti di Bari s.p.a. was fined by the Garante for processing employees' biometric data without proper notice, consent, or adequate information. The authority found violations of several provisions of the Italian data protection code.ITGaranteGDPR€34,000
15 Jun 2011Fastrent Money srlFastrent Money srl was fined by the Garante EUR 6,000 for sending unsolicited commercial faxes. The authority also found that the required data protection information under Article 13 of the Italian Data Protection Code was not provided.ITGaranteGDPR€6,000
15 Jun 2011Azienda Multiservizi e Igiene Urbana S.p.A.Azienda Multiservizi e Igiene Urbana S.p.A. was fined for collecting personal data through a web form without providing users with the required privacy notice. The authority found this to be a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€9,000
24 Jun 2011Azienda ospedaliera San Giuseppe Moscati (AOSGM)Azienda ospedaliera San Giuseppe Moscati was fined EUR 20,000 by the Garante. The authority found that the security program document was not updated and that minimum security measures were not adopted for the processing of health data.ITGaranteGDPR€20,000
30 Jun 2011Porto di Tropea s.p.a.Porto di Tropea s.p.a. was fined by the Garante 10,000 EUR for failing to provide adequate information about video surveillance. The authority also found that data processors were not formally appointed for customer data collected through mooring contracts.ITGaranteGDPR€10,000
30 Jun 2011New Stereo In srlNew Stereo In srl was fined by the Garante 15,000 EUR for unlawful processing of personal data. The case concerned the activation of two unsolicited phone cards, in breach of Article 157 of the Italian Data Protection Code.ITGaranteGDPR€15,000
07 Jul 2011F.B. Aurum di Ferrero Wilma e Barathier Sergio s.n.c.F.B. Aurum di Ferrero Wilma e Barathier Sergio s.n.c. was fined by the Garante 10,000 EUR for operating a video surveillance system without providing the required notice to data subjects. This constituted a breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€10,000