Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21.4%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
16 Feb 2011Athena Research s.r.l.Athena Research s.r.l. was fined 6,000 EUR by the Garante for sending unsolicited commercial faxes without the recipients' explicit consent. The authority also found that the required privacy notice was not provided, in breach of the Italian Data Protection Code.ITGaranteGDPR€6,000
29 Dec 2025SOCIETE EXERCANT UNE ACTIVITE DE COMMERCE DE GRANDE DISTRIBUTION (procédure simplifiée)CNIL imposed an administrative fine of 6,000 EUR on SOCIETE EXERCANT UNE ACTIVITE DE COMMERCE DE GRANDE DISTRIBUTION and issued an injunction. The case was handled under a simplified procedure.FRCNILGDPR€6,000
12 Apr 2024TECNOCRÁTICA CENTRO DE DATOS S.L.TECNOCRÁTICA CENTRO DE DATOS S.L. was fined by the AEPD for failing to provide access to personal data and information requested during an investigation. The authority found a breach of Article 58.1 of the GDPR.ESAEPDGDPR€6,000
31 Aug 2025RISING SUN CAR RENTAL S.L.RISING SUN CAR RENTAL S.L. was fined by the AEPD 6,000 EUR for using surveillance cameras that recorded images and sound without explicit consent or proper justification. The authority also found that the mandatory camera information signs were not displayed.ESAEPDGDPR€6,000
15 Dec 2022Comune di BraccianoComune di Bracciano was fined EUR 6,000 by the Garante for violations related to the processing of personal data. The case involved failures to comply with data protection principles and improper legal bases for processing.ITGaranteGDPR€6,000
23 May 2024ETABLISSEMENT PUBLIC NATIONAL (ENSEIGNEMENT) (procédure simplifiée)CNIL imposed an administrative fine of EUR 6,000 on ETABLISSEMENT PUBLIC NATIONAL (ENSEIGNEMENT) under a simplified procedure. The case concerned a breach identified by the supervisory authority.FRCNILGDPR€6,000
12 Sept 2019MALONEY'S SPORT BAR S.L.MALONEY'S SPORT BAR S.L. was fined by the AEPD in the amount of 6,000 EUR for operating a video surveillance system that monitored public spaces without proper justification. The authority found this practice to be in breach of data protection rules.ESAEPDGDPR€6,000
18 Dec 2025SOCIETE EXERCANT UNE ACTIVITE DE REALISATION D'OPERATIONS DE PROSPECTION COMMERCIALE PAR VOIE ELECTRONIQUE POUR LE COMPTE D'AGENCES DE PUBLICITE (procédure simplifiée)CNIL imposed an administrative fine of EUR 6,000 on SOCIETE EXERCANT UNE ACTIVITE DE REALISATION D'OPERATIONS DE PROSPECTION COMMERCIALE PAR VOIE ELECTRONIQUE POUR LE COMPTE D'AGENCES DE PUBLICITE. The case was handled under a simplified procedure.FRCNILGDPR€6,000
09 Dec 2010Bios s.p.a.Bios s.p.a. was fined by the Italian Garante for failing to provide adequate and timely information about the processing of personal data through a video surveillance system. The conduct breached Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000
10 Nov 2022Conservatorio di Musica S. Cecilia di RomaThe Conservatorio di Musica S. Cecilia di Roma was fined €6,000 by the Garante. The authority found unlawful processing of personal data contained in an audio/video recording used in disciplinary proceedings against a student without a lawful basis.ITGaranteGDPR€6,000
01 Feb 2026Biržų ligoninėVDAI imposed a EUR 6,000 fine on Biržų ligoninė for improper processing of personal data. The case concerns a breach of data protection requirements and indicates non-compliance with GDPR obligations.LTVDAIGDPR€6,000
24 Feb 2010ADEC Assistenza dentistica e cure odontoiatriche-ortodontiche s.r.l.ADEC Assistenza dentistica e cure odontoiatriche-ortodontiche s.r.l. was fined 6,000 EUR by the Garante. The authority found that personal data were processed through the website contact form without the required information notice, in breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000
14 Mar 2013Università Telematica San Raffaele RomaUniversità Telematica San Raffaele Roma was fined by the Garante EUR 6,000 for providing inadequate data protection information through its enrollment and information request forms on its website. The case concerned a breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€6,000
13 Feb 2024FACTOR ENERGÍA, S.A.FACTOR ENERGÍA, S.A. was fined by the AEPD 6,000 EUR for processing personal data without a legal basis, in breach of Article 6(1) GDPR. The company failed to communicate the termination of a gas contract and improperly shared personal data with other companies.ESAEPDGDPR€6,000
28 May 2026Comune di SciaccaComune di Sciacca was fined EUR 6,000 by the Garante for violations related to the processing and dissemination of personal data in the public sector. The case concerned improper handling of personal data within public administration activities.ITGaranteGDPR€6,000
07 Nov 2019Comune di TivoliThe Municipality of Tivoli was fined by the Italian data protection authority, Garante, for unlawfully publishing personal data on its institutional website. The publication also included information about a pending criminal proceeding, breaching the principles of lawfulness, fairness, and transparency.ITGaranteGDPR€6,000
28 May 2020Azienda Teatro del GiglioAzienda Teatro del Giglio was fined 6,000 EUR by the Garante for breaching data protection principles. The authority found violations of lawfulness, fairness, transparency, and data minimization.ITGaranteGDPR€6,000
16 Dec 2010Impresa individuale Iba MarinoImpresa individuale Iba Marino was fined by the Garante 6,000 EUR for collecting personal data through its website without providing adequate information to data subjects. This constituted a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000
17 Apr 2026Comune di Mazara del ValloThe Garante fined Comune di Mazara del Vallo 6,000 EUR for violations related to the online publication of personal data. The case concerned the improper disclosure of personal information through online publication.ITGaranteGDPR€6,000
11 Apr 2013Teknoelettronica s.r.l.Teknoelettronica s.r.l. was fined EUR 6,000 by the Italian data protection authority, Garante. The company failed to provide the required privacy notice on its website, in breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000