Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.5m
YoY volume
-23.6%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
25 May 2022CLINT IS GOOD DIGITAL CREATIVE TEAM, S.L.CLINT IS GOOD DIGITAL CREATIVE TEAM, S.L. was fined 500 EUR by the AEPD. The case concerned sending unsolicited commercial communications by email without consent, in breach of Article 21 of the LSSI.ESAEPDePrivacy€500
25 May 2022RoulartaThe Belgian data protection authority, APD, sanctioned Roularta in decision 85/2022 of 25 May 2022. The case concerned the placement of non-essential cookies on its press websites without prior user consent. The fine was EUR 50,000.BEAutorité de protection des donnéesGDPR€50,000
26 May 2022Azienda Sanitaria Locale Roma 1The Garante fined Azienda Sanitaria Locale Roma 1 EUR 46,000 for the unauthorized publication of health-related personal data on its institutional website. The case concerned a breach of data protection rules through the disclosure of sensitive information without a lawful basis.ITGaranteGDPR€46,000
26 May 2022Comune di AfragolaComune di Afragola was fined EUR 10,000 by the Garante for breaching data protection principles, including lawfulness, fairness, transparency, and data minimization. The authority found that personal data had been handled improperly.ITGaranteGDPR€10,000
26 May 2022COMUNIDAD.1The owners’ community installed a video surveillance system in common areas without informed consent from all property owners. The AEPD found this to be a breach of data protection rules.ESAEPDGDPR€1,000
26 May 2022Regione ToscanaThe Garante fined Regione Toscana EUR 16,000 for publishing unnecessary personal data on the web. The data were later removed, but the authority still found a sanctionable breach.ITGaranteGDPR€16,000
26 May 2022PREICO JURIDICOS, S.L.PREICO JURIDICOS, S.L. was fined by the AEPD 3,000 EUR for failing to respond to information requests linked to a data breach investigation. The authority found a breach of Article 58(1) GDPR.ESAEPDGDPR€3,000
26 May 2022Università Agraria di NettunoUniversità Agraria di Nettuno was fined 4,000 EUR by the Garante for breaching data protection principles. The authority found unlawful handling of personal data, including failures in lawfulness, fairness, transparency, and data minimization, involving information publicly accessible online since 2019.ITGaranteGDPR€4,000
26 May 2022PREICO JURIDICOS S.L.PREICO JURIDICOS S.L. was fined EUR 6,000 by the AEPD for failing to provide required information. The case concerned a breach of Article 58(1) GDPR.ESAEPDGDPR€6,000
26 May 2022Intesa Sanpaolo S.p.A.Intesa Sanpaolo S.p.A. was fined EUR 100,000 by the Garante for unlawfully disclosing personal banking data to unauthorized third parties. The case concerned a breach of data protection rules and required review of the bank’s data-sharing controls.ITGaranteGDPR€100,000
26 May 2022Azienda sanitaria universitaria Friuli OccidentaleAzienda sanitaria universitaria Friuli Occidentale was fined EUR 5,000 by the Garante for violations related to the processing of personal data in the electronic health dossier. The authority found non-compliance with GDPR requirements.ITGaranteGDPR€5,000
26 May 2022Kalemci MusaThe sole proprietorship “Turkish City” was fined 2,000 EUR by the Garante. The authority found that its video surveillance system did not meet the information requirements under GDPR Article 13.ITGaranteGDPR€2,000
27 May 2022B.B.B.B.B.B. was fined EUR 2,000 by the AEPD for failing to provide adequate data protection information in rental contract documentation. The authority found a breach of Article 13 GDPR.ESAEPDGDPR€2,000
27 May 2022COMUNIDAD PROPIETARIOS ***COMUNIDAD.1The community of property owners was fined by the AEPD EUR 600 for using a surveillance system that recorded audio in common areas. The authority found the measure excessive and unnecessary and also noted insufficient information on the surveillance signs.ESAEPDGDPR€600
27 May 2022B.B.B.The entity was fined for improperly directing a surveillance camera toward public space without justification. The authority considered this a breach of data protection rules.ESAEPDGDPR€400
30 May 2022DIGITECNIA SOLUTIONS, S.L.DIGITECNIA SOLUTIONS, S.L. was fined by the AEPD 2,000 EUR for publishing an image on its website without authorization. The authority found this to be a breach of Article 6 of the GDPR.ESAEPDGDPR€2,000
30 May 2022ASOCIACIÓN CONTRA LA CORRUPCION Y EN DEFENSA DE LA ACCIÓN PÚBLICAACODAP was fined EUR 10,000 by the AEPD for publishing complainants’ personal data on its website without anonymization. The authority found this conduct to be contrary to GDPR Article 5(1)(b).ESAEPDGDPR€10,000
30 May 2022MARIELI GABRIELA, S.L.MARIELI GABRIELA, S.L. was fined by the AEPD in the amount of 3,000 EUR for charging amounts to the complainant's bank account without consent. The authority found a breach of Article 6(1) GDPR, meaning there was no lawful basis for the processing.ESAEPDGDPR€3,000
31 May 2022DKN.5131.51.2021StatusuchylonaTytuUODO imposed an administrative fine of PLN 10,000 for a breach involving the recording and storage of sound in a monitoring system. The case concerned improper use of CCTV monitoring with audio capture.PLUODOGDPR€2,183
31 May 2022B.B.B.The entity was fined for using a surveillance camera with audio to monitor an employee without prior notice. The authority found this to be a breach of data protection rules.ESAEPDGDPR€5,000