Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-20.7%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
04 Oct 2011NGI s.p.a.NGI s.p.a. was fined by the Garante 50,000 EUR for breaches of data protection rules. The authority found that the company failed to designate data processing officers, did not prepare the required security program document, and improperly retained traffic data.ITGaranteGDPR€50,000
04 Oct 2011Il Marmo s.r.l.Il Marmo s.r.l. was fined by the Garante in the amount of 10,000 EUR for failing to provide the required privacy notice on its website, specifically in the contact form. The breach concerned Article 13 of the Italian Data Protection Code.ITGaranteGDPR€10,000
04 Oct 2011Villa Azzurra Hospital s.r.l.Villa Azzurra Hospital s.r.l. was fined by the Garante in the amount of 30,000 EUR for failing to comply with data processing notification requirements. The breach concerned obligations under the Italian Data Protection Code.ITGaranteGDPR€30,000
18 Oct 2011MSales GmbHMSales GmbH was fined EUR 30,001 by the AEPD for sending unauthorized SMS messages to a user of its service. The authority found this breached Article 21 of the LSSI on unsolicited electronic communications.ESAEPDePrivacy€30,001
20 Oct 2011Betfair Italia srlBetfair Italia srl was fined EUR 40,000 by the Garante for violations related to the omission of information on how data subjects can exercise their rights, as well as other data protection obligations. The case concerned incomplete compliance with information requirements toward users.ITGaranteGDPR€40,000
26 Oct 2011H3G S.p.A.H3G S.p.A. was fined EUR 120,000 by the Garante for sending unsolicited promotional communications to a fixed telephone line. The conduct breached data protection provisions.ITGaranteGDPR€120,000
26 Oct 2011Remida srlRemida srl was fined EUR 22,400 by the Garante for installing a surveillance camera in a condominium without providing adequate information. The authority found this to be a breach of data protection rules.ITGaranteGDPR€22,400
26 Oct 2011Smart s.n.c.Smart s.n.c. was fined EUR 12,800 by the Garante. The authority found that the company sent promotional emails without the recipients’ prior explicit consent.ITGaranteGDPR€12,800
10 Nov 2011Idea Service S.r.l.Idea Service S.r.l. was fined EUR 20,000 by the Garante for failing to provide information about an unwanted switch of telephone service provider. The authority found a breach of Article 164 of the Italian Data Protection Code.ITGaranteGDPR€20,000
10 Nov 2011C.O.E.STRA. S.p.A.C.O.E.STRA. S.p.A. was fined EUR 30,000 by the Italian data protection authority, Garante. The sanction concerned the failure to appoint data processing officers, which breached the minimum security measures required under the Italian Data Protection Code.ITGaranteGDPR€30,000
11 Nov 2011Galineio Melathro Private ClinicThe clinic unlawfully disclosed sensitive personal data without the required authorization from the HDPA. The breach involved special-category personal data and resulted in a 2,000 EUR fine.GRHDPAGDPR€2,000
11 Nov 2011Galineio Melathro Private ClinicThe clinic disclosed sensitive personal data without informing the data subject in advance. This breached the individual's right to object to the processing.GRHDPAGDPR€1,000
17 Nov 2011Impresa individuale Implantomat di Guidi CristianoThe company was fined EUR 36,000 by the Garante for unlawfully publishing and distributing advertising flyers that featured an individual's image without consent. The authority found this to be a breach of data protection rules.ITGaranteGDPR€36,000
21 Nov 2011PUBLIACCION, PUBLICIDAD Y COMUNICACION S.L.U.PUBLIACCION, PUBLICIDAD Y COMUNICACION S.L.U. was fined by the AEPD €1,200 for sending unsolicited SMS messages without recipient consent. The conduct breached Article 21 of the LSSI on unsolicited electronic communications.ESAEPDePrivacy€1,200
24 Nov 2011Gema s.p.a.Gema s.p.a. was fined by the Italian data protection authority, Garante, for failing to provide the required data protection information to users and entities through its website. The authority also found that the company used a video surveillance system without proper notification, in breach of the Italian Data Protection Code.ITGaranteGDPR€22,000
01 Dec 2011Soprintendenza per i beni architettonici, paesaggistici, storici, artistici e etnoantropologici per Napoli e provinciaThe Garante fined Soprintendenza 32,000 EUR for violations related to the processing of biometric data. The authority found that the processing did not comply with the required legal requirements.ITGaranteGDPR€32,000
02 Dec 2011PROMOMOVIL TELECOMUNICACIONES S.L.PROMOMOVIL TELECOMUNICACIONES S.L. was fined by the AEPD 1,200 EUR for sending unsolicited promotional SMS messages without recipient consent. The conduct breached Article 21 of the LSSI on commercial communications without prior consent.ESAEPDePrivacy€1,200
06 Dec 2011Composad s.r.l.Composad s.r.l. was fined by the Garante €26,000 for processing personal data collected through its website without properly appointing a data processor. The case concerned a breach of data protection rules and related organizational obligations.ITGaranteGDPR€26,000
06 Dec 2011Tiscali Italia SpATiscali Italia SpA was fined €420,000 by the Garante for retaining customer traffic data beyond the legal retention period. The authority also found that Amdocs accessed the data without being properly designated as a data processor or obtaining customer consent.ITGaranteGDPR€420,000
15 Dec 2011dott. Mancini Endriodott. Mancini Endrio was fined EUR 8,000 by the Garante for violating data protection rules. The case concerned inadequate compliance with data security requirements under Article 162, paragraph 2-bis, of the Italian Privacy Code.ITGaranteGDPR€8,000