Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-22.5%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
26 May 2022Azienda Sanitaria Locale Roma 1The Garante fined Azienda Sanitaria Locale Roma 1 EUR 46,000 for the unauthorized publication of health-related personal data on its institutional website. The case concerned a breach of data protection rules through the disclosure of sensitive information without a lawful basis.ITGaranteGDPR€46,000
15 Mar 2018Directafin s.p.a.Directafin s.p.a. was fined by the Garante in the amount of EUR 20,000 for using a single consent flag for multiple processing purposes. This included marketing and sharing personal data with third parties without valid consent.ITGaranteGDPR€20,000
29 Oct 2020Ministero dell’InternoThe Italian Data Protection Authority fined the Ministry of the Interior EUR 50,000 for the incorrect disclosure of personal data to a limited number of organizations. It also ordered the Ministry to consider training initiatives to improve data accuracy.ITGaranteGDPR€50,000
04 Apr 2013Gustavo CapizziGustavo Capizzi was fined €6,000 by the Garante for failing to provide the required data protection notice. The breach concerned a video surveillance system at the association “La Petit Nuit”.ITGaranteGDPR€6,000
17 Apr 2026Framos Italia s.r.l. in liquidazioneFramos Italia s.r.l. in liquidation was fined EUR 5,000 by the Garante. The authority found that former employees’ email accounts were not deactivated and that information on data processing was not clear and comprehensive.ITGaranteGDPR€5,000
26 Nov 2020Reti Televisive Italiane S.p.a.Reti Televisive Italiane S.p.a. was fined EUR 10,000 by the Garante for broadcasting a segment on “Le Iene” that included footage of an individual recorded without consent. The person was identifiable, which constituted a breach of data protection rules.ITGaranteGDPR€10,000
25 Nov 2015Video s.r.l.Video s.r.l. was fined by the Garante 25,000 EUR for registering 500 phone cards to five unaware individuals without their consent. The case concerns a breach of data protection rules and the absence of a lawful basis for processing personal data.ITGaranteGDPR€25,000
11 Sept 2025Ministero dell’Interno - Dipartimento dei Vigili del Fuoco, del Soccorso Pubblico e della Difesa CivileThe Ministry of the Interior – Department of Firefighters was fined EUR 12,000 by the Garante. The case concerned personal data processing in breach of GDPR Articles 5, 6 and 9, as well as Articles 2-ter and 2-sexies of the Italian Privacy Code.ITGaranteGDPR€12,000
11 Apr 2024BAR DEL PORTICO S.A.S.BAR DEL PORTICO S.A.S. was fined EUR 1,000 by the Garante for operating active video surveillance. The system recorded both customers and employees without meeting GDPR requirements.ITGaranteGDPR€1,000
25 Mar 2021Comune di MonteiasiComune di Monteiasi was fined by the Garante €4,000 for breaching the data minimization principle. The municipality published personal data on its website, including names and IBANs, that were not necessary for transparency purposes.ITGaranteGDPR€4,000
20 Jun 2024Fastweb S.p.A.Fastweb S.p.A. was fined by the Garante EUR 1,000,000 for carrying out telemarketing activities without obtaining proper consent from the contacted individuals. The authority found a breach of fairness and transparency principles in the processing of personal data.ITGaranteGDPR€1,000,000
24 Jul 2014Future srlFuture srl was fined EUR 36,000 by the Garante for making unsolicited promotional phone calls without proper consent. The authority found that the company’s conduct breached data protection rules.ITGaranteGDPR€36,000
01 Jun 2023Comune di GuardiagreleComune di Guardiagrele was fined EUR 5,000 by the Garante for failing to provide an adequate response to a data access request. The authority found a breach of the principles of lawfulness, fairness, and transparency in data processing.ITGaranteGDPR€5,000
29 Mar 2018Farmacia del Sole delle dottoresse De Vito Luana e Lubelli Chiara s.n.c.Farmacia del Sole was fined by the Garante for issuing receipts that showed medication names instead of the authorization number. This practice breached privacy rules and exposed sensitive customer information.ITGaranteGDPR€12,000
26 May 2022Comune di AfragolaComune di Afragola was fined EUR 10,000 by the Garante for breaching data protection principles, including lawfulness, fairness, transparency, and data minimization. The authority found that personal data had been handled improperly.ITGaranteGDPR€10,000
05 Nov 2015Enterprise Service s.r.l.Enterprise Service s.r.l. was fined EUR 62,000 by the Garante. The sanction concerned sending unsolicited promotional faxes without prior consent, in breach of privacy rules.ITGaranteGDPR€62,000
05 Sept 2013Top Secret S.r.l.Top Secret S.r.l. was fined by the Garante 6,000 EUR for collecting personal data through forms on its website without the required privacy notice. The authority found this to be a breach of the Italian Data Protection Code.ITGaranteGDPR€6,000
11 Sept 2025MY s.r.l.MY s.r.l. was fined by the Garante for operating video surveillance without proper alignment with data protection requirements. The case concerned breaches related to the processing of personal data through the camera system.ITGaranteGDPR€6,000
08 Jun 2023La Rinascente S.p.A.La Rinascente S.p.A. was fined by the Garante for unauthorized access to customer data and its modification. The breach led to the issuance of a new loyalty card containing incorrect personal details.ITGaranteGDPR€300,000
21 Nov 2018Legea s.p.a.Legea s.p.a. was fined for processing personal data through forms on its website without providing the required information notice to data subjects. The case concerned a breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400