Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21.4%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
30 Jan 2026un operator persoană fizicăA fine of 5,000 EUR was imposed on an individual controller by ANSPDCP for GDPR violations. The case concerned non-compliance with personal data protection requirements.ROANSPDCPGDPR€5,000
01 Jan 2015Jazz Telecom SAUJazz Telecom SAU was fined by the AEPD EUR 5,000 for sending an unsolicited commercial SMS. The conduct breached Article 21.1 of the LSSI, which governs commercial communications without prior consent.ESAEPDePrivacy€5,000
01 Jan 2015SERVICIOS VARIOS 8020, S.L.SERVICIOS VARIOS 8020, S.L. was fined by the AEPD in the amount of 5,000 EUR for sending unsolicited commercial emails. The messages did not include an unsubscribe option for recipients, which breached Article 21 of the LSSI.ESAEPDePrivacy€5,000
17 Oct 2024Immobiliare Pianezza S.r.l.s.Immobiliare Pianezza S.r.l.s. was fined €5,000 by the Garante for making unsolicited marketing calls without consent. The authority also noted a failure to respond to requests for deletion of personal data.ITGaranteGDPR€5,000
29 Jan 2025EDA TV CONSULTING, S.L.EDA TV CONSULTING, S.L. was fined by the AEPD 5,000 EUR for requiring a copy of the DNI when exercising data protection rights. The authority found this to breach the GDPR data minimization principle.ESAEPDGDPR€5,000
09 Oct 2025FT Solutions S.r.l.FT Solutions S.r.l. was fined by the Garante 5,000 EUR for processing personal data for marketing purposes without proper consent. The case involved more than 2 million records and resulted in unauthorized telemarketing activities.ITGaranteGDPR€5,000
04 Dec 2019VODAFONE ESPAÑA, S.A.U.VODAFONE ESPAÑA, S.A.U. was fined EUR 5,000 by the AEPD for failing to provide requested information. The case concerned a breach of obligations under data protection rules.ESAEPDGDPR€5,000
16 Sept 2021Accademia di Belle Arti di RomaAccademia di Belle Arti di Roma was fined EUR 5,000 by the Garante for breaching data protection principles. The case involved improper handling of personal data in a disciplinary procedure and the dissemination of sensitive information.ITGaranteGDPR€5,000
16 Jun 2020SCHOOL FITNESS HOLIDAY & FRANCHISING, S.L.U.SCHOOL FITNESS HOLIDAY & FRANCHISING, S.L.U. was fined by the AEPD 5,000 EUR for breaching the GDPR information obligations under Article 13. The case followed a complaint from the Madrid City Council's Consumer Unit.ESAEPDGDPR€5,000
08 Aug 2016Anonymizováno (ÚOOÚ UOOU-01297/16-48)The individual was fined for operating surveillance cameras that recorded personal data without a legal basis. The case concerns a breach of privacy and personal data protection rules.CZUOOUGDPR€185
10 Apr 2025Tensa Art Design S.A.Tensa Art Design S.A. was fined by ANSPDCP EUR 5,000 for GDPR violations related to its website www.lensa.ro. The case concerned non-compliant processing of personal data under data protection requirements.ROANSPDCPGDPR€5,000
26 Oct 2021OPEN BANK, S.A.OPEN BANK, S.A. was fined by the AEPD for using non-essential third-party cookies without prior user consent. The authority also found that the cookies could not be removed, which breached Article 22.2 of the LSSI.ESAEPDePrivacy€5,000
30 Dec 2025SOCIETE AYANT POUR ACTIVITE L'ACQUISITION ET LA GESTION D'HOTELS/RESIDENCES HOTELIERES (procédure simplifiée)The CNIL imposed an administrative fine of 5,000 EUR on the company engaged in the acquisition and management of hotels and hotel residences. The case was handled under a simplified procedure.FRCNILGDPR€5,000
26 Jun 2026AVIZIERO S.R.LAVIZIERO S.R.L was fined RON 5,000 by ANSPDCP for allowing the storage of information and access to information stored on user equipment when users accessed its website. The authority found this conduct to be in breach of ePrivacy requirements.ROANSPDCPePrivacylei 5,000
05 Jun 2025SOCIETE EXERCANT UNE ACTIVITE HOSPITALIERE A BUT LUCRATIF EN MEDECINE-CHIRURGIE-OBSTETRIQUE (procédure simplifiée)The CNIL imposed an administrative fine of 5,000 EUR on SOCIETE EXERCANT UNE ACTIVITE HOSPITALIERE A BUT LUCRATIF EN MEDECINE-CHIRURGIE-OBSTETRIQUE under a simplified procedure. The decision concerns a confirmed compliance breach and was issued by the French data protection authority.FRCNILGDPR€5,000
31 May 2024LABORATORIO PEDRO PERALES, S.L.P.LABORATORIO PEDRO PERALES, S.L.P. was fined by the AEPD 5,000 EUR for failing to comply with data protection rules in relation to cookie management on its website. The case concerned deficiencies in how users were informed and how consent was handled.ESAEPDePrivacy€5,000
21 Apr 2021Società Eurosanità s.p.a.Società Eurosanità s.p.a. was fined by the Garante in the amount of 5,000 EUR for a breach involving the processing of health data. The authority found violations of GDPR Articles 5 and 9, indicating improper handling of special category personal data.ITGaranteGDPR€5,000
11 Jan 2023Reweb s.r.l.Reweb s.r.l. was fined 5,000 EUR by the Garante. The company kept a former employee’s email account active and accessed it after the employment relationship ended, in breach of GDPR requirements.ITGaranteGDPR€5,000
05 Nov 2025CABINET D'AVOCATS (procédure simplifiée)The CNIL imposed an administrative fine of EUR 5,000 on CABINET D'AVOCATS (procédure simplifiée). The case was handled under a simplified administrative procedure by the French data protection authority.FRCNILGDPR€5,000
06 May 2024DQG NORTE A.I.E.DQG NORTE A.I.E. was fined by the AEPD for collecting copies of identity documents and personal data of minors and their guardians without proper data protection information. The authority found breaches of GDPR data minimization and transparency principles.ESAEPDGDPR€5,000