BULLETIN №082Last updated · 31 Jul 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.7m
- YoY volume
- -21.4%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 12 Dec 2023 | B*** GmbHB*** GmbH was fined by the DSB EUR 5,900 for failing to timely report a data breach to the supervisory authority and for not providing sufficient information required under GDPR. The company also did not cooperate with the authority’s further requests for information. | AT | DSB | GDPR | €5,900 | ↗ |
| 17 Apr 2026 | Comune di Campo CalabroThe Garante fined Comune di Campo Calabro EUR 6,000 for publishing personal data online. The case concerned a breach of data protection rules and the unlawful disclosure of information. | IT | Garante | GDPR | €6,000 | ↗ |
| 12 Feb 2020 | AEMA HISPANICA, S.L.AEMA HISPANICA, S.L. was fined by the AEPD 6,000 EUR for sending one employee's payroll to another employee. The incident constituted a breach of data protection rules. | ES | AEPD | GDPR | €6,000 | ↗ |
| 04 Apr 2013 | Gustavo CapizziGustavo Capizzi was fined €6,000 by the Garante for failing to provide the required data protection notice. The breach concerned a video surveillance system at the association “La Petit Nuit”. | IT | Garante | GDPR | €6,000 | ↗ |
| 11 Feb 2020 | AMALFI SERVICIOS DE RESTAURACIÓN S.L.AMALFI SERVICIOS DE RESTAURACIÓN S.L. was fined by the AEPD 6,000 EUR for installing surveillance cameras without proper consent. The authority also found that the cameras captured images of public spaces without sufficient justification, breaching data protection rules. | ES | AEPD | GDPR | €6,000 | ↗ |
| 10 Oct 2023 | UAB RamidonasThe supervisory authority imposed a €6,000 fine on UAB Ramidonas for personal data security violations. The case concerned deficiencies in data protection controls that could have exposed individuals’ information to risk. | LT | Valstybinė duomenų apsaugos inspekcija | GDPR | €6,000 | ↗ |
| 05 Sept 2013 | Top Secret S.r.l.Top Secret S.r.l. was fined by the Garante 6,000 EUR for collecting personal data through forms on its website without the required privacy notice. The authority found this to be a breach of the Italian Data Protection Code. | IT | Garante | GDPR | €6,000 | ↗ |
| 11 Sept 2025 | MY s.r.l.MY s.r.l. was fined by the Garante for operating video surveillance without proper alignment with data protection requirements. The case concerned breaches related to the processing of personal data through the camera system. | IT | Garante | GDPR | €6,000 | ↗ |
| 07 Oct 2010 | Easynetwork s.r.l.Easynetwork s.r.l. was fined EUR 6,000 by the Italian data protection authority, Garante. The sanction concerned the sending of promotional communications by fax without providing data subjects with the required information. This constituted a breach of Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €6,000 | ↗ |
| 05 Dec 2013 | Comune di San Felice CirceoThe Garante fined Comune di San Felice Circeo EUR 6,000 for failing to provide the information required under Art. 13 and for not updating the security program document under Art. 33. The authority also found non-compliance with a prior order. | IT | Garante | GDPR | €6,000 | ↗ |
| 10 Feb 2022 | Istituto Nazionale di StatisticaIstituto Nazionale di Statistica was fined €6,000 by the Garante for breaches of data protection rules. The case concerned inadequate security measures and data processing practices that did not meet compliance requirements. | IT | Garante | GDPR | €6,000 | ↗ |
| 10 Mar 2011 | Riabitalia s.r.l.Riabitalia s.r.l. was fined EUR 6,000 by the Garante for sending an unsolicited promotional fax without prior explicit consent. The authority also found that the required privacy notice was not provided, constituting a breach of Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €6,000 | ↗ |
| 13 Jan 2011 | Ashley s.r.l.Ashley s.r.l. was fined 6,000 EUR by the Garante for failing to provide adequate information to data subjects about its video surveillance system. The authority found a breach of Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €6,000 | ↗ |
| 18 Jun 2015 | Azienda USL5 di PisaAzienda USL5 di Pisa was fined EUR 6,000 for unlawful processing of personal data through a video surveillance system. The authority found that the required information notice was not provided to individuals, in breach of Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €6,000 | ↗ |
| 15 Apr 2026 | Javno komunalno podjetjeThe Slovenian Information Commissioner fined a municipal utility company EUR 6,000 for continuously and indiscriminately collecting employees’ location data via GPS trackers in company vehicles. The authority found no valid legal basis under GDPR Article 6 and also noted inadequate employee notice and a failure to assess legitimate interest separately for each processing purpose. | SI | Informacijski pooblaščenec | GDPR | €6,000 | ↗ |
| 04 Oct 2021 | AD735 DATA MEDIA ADVERTISING S.L.The entity was fined by the AEPD for breaching data protection rules. It continued sending commercial emails despite repeated requests from the complainant to delete their data. | ES | AEPD | ePrivacy | €6,000 | ↗ |
| 01 Jan 2019 | ZHANG BORDETA 2006, S.L.ZHANG BORDETA 2006, S.L. was fined EUR 6,000 by the AEPD for disproportionate video surveillance of public areas. The authority also found that no informational notice was provided inside the establishment, breaching data protection rules. | ES | AEPD | GDPR | €6,000 | ↗ |
| 15 Nov 2023 | COMMUNE (procédure simplifiée)CNIL imposed a EUR 6,000 fine on COMMUNE under a simplified procedure. The case concerns an administrative sanction decision. | FR | CNIL | GDPR | €6,000 | ↗ |
| 27 Apr 2023 | ADENET SYSTEMS, S.L.ADENET SYSTEMS, S.L. was fined EUR 6,000 by the AEPD for failing to provide access. The authority treated this as a breach of Article 58(1) GDPR and an obstruction of its investigative functions. | ES | AEPD | GDPR | €6,000 | ↗ |
| 15 Mar 2024 | LEADDESK, S.L.LEADDESK, S.L. was fined by the AEPD for failing to provide information requested by the data protection authority during an investigation. The conduct breached Article 58(1) GDPR and hindered supervisory oversight. | ES | AEPD | GDPR | €6,000 | ↗ |