Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21.4%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
13 Nov 2024FederprivacyFederprivacy was fined EUR 6,000 by the Garante after a data breach caused by a cyberattack. The attack compromised the website, email accounts, and social media, indicating inadequate technical and organizational measures.ITGaranteGDPR€6,000
05 Jun 2024Ambitious People Group B.V.Ambitious People Group B.V. was fined by the AP EUR 6,000 for failing to handle data erasure requests submitted by three individuals within the required timeframe. The breach concerned GDPR Articles 17 and 12.NLAPGDPR€6,000
16 Jun 2020SAUNIER-TEC, MANTENIMIENTOS DE CALOR Y FRIO, S.LSAUNIER-TEC was fined EUR 6,000 by the AEPD for a data breach. The incident involved unauthorized access to personal data and bank account information, breaching GDPR Articles 33 and 34.ESAEPDGDPR€6,000
11 Apr 2013Errebian S.p.aErrebian S.p.a was fined EUR 6,000 by the Italian Garante. The case concerned the failure to provide the required data protection notice on website forms, in breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000
12 Feb 2026Comune di CoccaglioComune di Coccaglio was fined EUR 6,000 for using surveillance footage for disciplinary purposes without informing employees. The authority also found that no data protection impact assessment had been carried out, in breach of data protection rules.ITGaranteGDPR€6,000
01 Jan 2021COMUNIDAD DE PROPIETARIOS R.R.R.The community of property owners was fined by the AEPD for collecting excessive personal data in connection with access to the community pool. The authority also found that users were not properly informed about the processing of their personal data.ESAEPDGDPR€6,000
22 Feb 2024S.A.T.E. (Servizi Ambiente Territorio Energia)The Garante fined S.A.T.E. 6,000 EUR for breaches of data protection principles, including lawfulness, integrity, and confidentiality. The authority found that inadequate security measures led to unauthorized access to data.ITGaranteGDPR€6,000
22 Feb 2024Blue Work s.r.l.Blue Work s.r.l. was fined EUR 6,000 by the Garante for unlawful processing of biometric data using facial recognition for employee attendance tracking. The authority found that the same purpose could have been achieved through less intrusive means.ITGaranteGDPR€6,000
06 Aug 2014ECLIPSE COMUNICACION DIXITAL S.L.ECLIPSE COMUNICACION DIXITAL S.L. was fined by the AEPD in the amount of 6,000 EUR for sending unsolicited advertising emails. The company continued sending messages despite requests to be removed, which constitutes a breach of Article 21 of the LSSI.ESAEPDePrivacy€6,000
28 Oct 2022FORMAESTUDIO, C.B.FORMAESTUDIO, C.B. was fined €6,000 by the AEPD for requiring students to disclose their COVID vaccination status and present a passport as a condition for participating in teaching practice. The authority found that this processing breached data protection rules.ESAEPDGDPR€6,000
26 Nov 2025Anonimizirano (IP-RS 0609-104/2025/18)The entity was fined EUR 6,000 for systematically and indiscriminately collecting employees’ location data through GPS devices in company vehicles without a legal basis. The authority found a breach of the lawfulness principle under Article 5 GDPR.SIIP-RSGDPR€6,000
13 Nov 2024Montini Group S.r.l.Montini Group S.r.l. was fined EUR 6,000 by the Garante. The case concerned contacting an employee’s general practitioner without consent, which breached GDPR rules on processing health data.ITGaranteGDPR€6,000
29 May 2008Consulting S.p.A.Consulting S.p.A. was fined for collecting personal data through its website without providing adequate prior information. The authority found this to be a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000
01 Jan 2016EDUCACION COMPETENCIAL S.L.EDUCACION COMPETENCIAL S.L. was fined by the AEPD €6,000 for sending unsolicited advertising emails. The emails exposed recipients’ addresses, breaching data protection and electronic communications rules.ESAEPDePrivacy€6,000
26 May 2022PREICO JURIDICOS S.L.PREICO JURIDICOS S.L. was fined EUR 6,000 by the AEPD for failing to provide required information. The case concerned a breach of Article 58(1) GDPR.ESAEPDGDPR€6,000
29 Apr 2009Altea Servizi s.r.l.Altea Servizi s.r.l. was fined for processing personal data without providing the required information notice, in connection with sending promotional faxes without consent. The authority found a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000
01 Jan 2013GALIBROKER GESTION TURISTICA, S.L.GALIBROKER GESTION TURISTICA, S.L. was fined by the AEPD 6,000 EUR for sending unsolicited commercial emails without recipient consent. The conduct breached Article 21.1 of the LSSI.ESAEPDePrivacy€6,000
19 May 2025GATIGOS, S.L.GATIGOS, S.L. was fined EUR 6,000 by the AEPD for failing to provide access to personal data and the information requested by the data protection authority. The authority found a breach of Article 58(1) GDPR.ESAEPDGDPR€6,000
08 Oct 2020Servicio de Alojamientos Responsables, S.L.The entity was fined by the AEPD 6,000 EUR for processing personal data without a legal basis. The breach involved signing a contract on behalf of an individual without authorization.ESAEPDGDPR€6,000
19 May 2010Roadhouse Grill Italia s.r.l.Roadhouse Grill Italia s.r.l. was fined 6,000 EUR by the Garante for failing to provide proper data protection notices to individuals through signage for its video surveillance system. The authority found a breach of data protection rules.ITGaranteGDPR€6,000