BULLETIN №082Last updated · 01 Aug 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.7m
- YoY volume
- -21.1%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 14 Jun 2018 | Faiella Nicola s.r.l.Faiella Nicola s.r.l. was fined EUR 112,000 by the Garante for improper processing of personal data using geolocation and video surveillance systems. The authority found that the company did not comply with data protection requirements when deploying these tools. | IT | Garante | GDPR | €112,000 | ↗ |
| 02 Jul 2015 | Lycamobile s.r.l.Lycamobile s.r.l. was fined EUR 102,000 by the Garante for failing to provide requested information on the retention of telephone and telematic traffic data. The case concerned a breach of data protection rules. | IT | Garante | GDPR | €102,000 | ↗ |
| 25 Sept 2025 | Azienda Ospedaliero Universitaria di FerraraAzienda Ospedaliero Universitaria di Ferrara was fined EUR 20,000 by the Garante for irregularities in the handling of personal data in its health dossier system. The authority found that the organization failed to implement adequate measures to protect data privacy. | IT | Garante | GDPR | €20,000 | ↗ |
| 13 Nov 2025 | Maviglia Assicurazioni snc di Gherardo Maviglia & c.Maviglia Assicurazioni was fined by the Garante 10,000 EUR for unlawful processing of personal data. The case involved automatic email redirection and indefinite retention of email logs and content, which breached GDPR principles. | IT | Garante | GDPR | €10,000 | ↗ |
| 27 Feb 2025 | Ministero dell’Interno-Dipartimento per gli affari interni e territorialiThe Ministry of the Interior was fined EUR 3,000 for processing personal data through the CIE-Agenda Online service. The authority found that the processing did not comply with the principles of lawfulness, fairness, transparency, and purpose limitation. | IT | Garante | GDPR | €3,000 | ↗ |
| 23 May 2024 | Provvedimento del 23 maggio 2024 [10043051]The Garante imposed a fine of EUR 400 for the unlawful use of surveillance cameras capturing public areas without a proper legal basis. The conduct breached privacy and data protection requirements. | IT | Garante | GDPR | €400 | ↗ |
| 04 Jun 2025 | Comune di LatinaThe Garante fined Comune di Latina EUR 4,000 for violations linked to the activation process for the “Dedicata a te” card. Requiring a payment to avoid cancellation of the benefit raised compliance concerns. | IT | Garante | GDPR | €4,000 | ↗ |
| 04 Feb 2016 | Hans Christoph Josef DietrichHans Christoph Josef Dietrich was fined EUR 4,000 by the Garante. The case concerned the public display of a list of patients who had not paid for medical services, which amounted to unauthorized disclosure of personal data. | IT | Garante | GDPR | €4,000 | ↗ |
| 09 Jan 2014 | Virano s.n.c. di Virano Franco & C.Virano s.n.c. was fined by the Garante for collecting personal data through its website without providing an adequate privacy notice. The authority found a breach of Article 13 of the Italian Privacy Code. | IT | Garante | GDPR | €2,400 | ↗ |
| 18 Sept 2014 | Fattoria di Casalbosco s.r.l.Fattoria di Casalbosco s.r.l. was fined 2,400 EUR by the Garante. The case concerned the collection of personal data through a website form without providing the required privacy notice, in breach of Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €2,400 | ↗ |
| 04 Dec 2014 | Value Retail Managment s.r.l.Value Retail Managment s.r.l. was fined EUR 36,000 by the Garante. The authority found that the company failed to provide adequate simplified information about its video surveillance system, in breach of data protection rules. | IT | Garante | GDPR | €36,000 | ↗ |
| 11 Feb 2021 | Roma CapitaleRoma Capitale was fined EUR 350,000 by the Garante for breaches of GDPR principles, including data minimization and security. The violations resulted in unauthorized access to personal data over an extended period. | IT | Garante | GDPR | €350,000 | ↗ |
| 27 Apr 2023 | Tiziana Life Science LimitedTiziana Life Science Limited was fined by the Italian Garante in the amount of EUR 30,000. The case concerned failure to provide information and obtain consent for processing personal and genetic data acquired from the bankrupt company Shar.Dna S.p.A. for scientific research purposes. | IT | Garante | GDPR | €30,000 | ↗ |
| 14 Jun 2018 | Osimo Servizi s.p.a.Osimo Servizi s.p.a. was fined EUR 8,000 by the Garante. The breach concerned the failure to notify the processing of biometric data used in an employee attendance system. | IT | Garante | GDPR | €8,000 | ↗ |
| 12 Mar 2026 | Hanako s.r.l.Hanako s.r.l. was fined by the Garante EUR 2,000 for operating a video surveillance system without ensuring GDPR compliance. The authority cited inadequate security measures and failure to provide sufficient information to employees. | IT | Garante | GDPR | €2,000 | ↗ |
| 26 Mar 2026 | Comune di XXThe Garante fined Comune di XX EUR 3,000 for breaches of GDPR Articles 6 and 9 and Article 2-ter of the Italian Privacy Code. The case concerned processing personal data without a proper legal basis. | IT | Garante | GDPR | €3,000 | ↗ |
| 01 Mar 2018 | Yahoo! Italia s.r.l.Yahoo! Italia s.r.l. was fined by the Garante in the amount of 60,000 EUR. The company failed to comply with a request to remove certain URLs containing personal information from its search engine and did not provide information on the implementation of that request. | IT | Garante | GDPR | €60,000 | ↗ |
| 11 Sept 2025 | Comune di BuccinoComune di Buccino was fined by the Garante EUR 6,000 for breaching data protection principles, including lawfulness, fairness, transparency, and data minimization. The case involved improper handling of personal data. | IT | Garante | GDPR | €6,000 | ↗ |
| 11 Dec 2008 | agenzia funebre floricoltura Rampura di Loi AlessandroThe funeral agency was fined by the Garante for providing clients with inadequate information. The authority found this to be a breach of data protection rules. | IT | Garante | GDPR | €3,000 | ↗ |
| 30 Oct 2013 | Regione LazioRegione Lazio was fined EUR 12,000 by the Garante for collecting personal data through web forms without providing adequate information to data subjects. The authority found this to be a breach of Article 13 of the Italian Privacy Code. | IT | Garante | GDPR | €12,000 | ↗ |