Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-22.8%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
04 Mar 2010Fastweb s.p.a.Fastweb s.p.a. was fined by the Garante for failing to provide adequate information to data subjects about the processing of their personal data. The case concerned a breach of the Italian Data Protection Code.ITGaranteGDPR€15,000
25 Jul 2013Fast-typeThe HDPA imposed a fine of EUR 1,000 on Fast-type for the illegal collection and further processing of personal data. The case concerns a breach of core data processing legality requirements.GRHDPAGDPR€1,000
25 Jul 2013Fast-typeFast-type was fined EUR 500 by the HDPA for sending unsolicited marketing emails without subscriber consent. The case concerns a failure to obtain prior consent for marketing communications.GRHDPAePrivacy€500
15 Jun 2011Fastrent Money srlFastrent Money srl was fined by the Garante EUR 6,000 for sending unsolicited commercial faxes. The authority also found that the required data protection information under Article 13 of the Italian Data Protection Code was not provided.ITGaranteGDPR€6,000
01 Jan 2013FASTFLY, INGENIEROS Y PROFESIONALES ESPECIALIZADOS J.J.G., S.L.FASTFLY was fined by the AEPD in the amount of 1,800 EUR for sending unsolicited commercial emails. The conduct breached Article 21 of the LSSI, which governs electronic marketing communications.ESAEPDePrivacy€1,800
16 Sept 2021Farpa s.r.l.Farpa s.r.l. was fined by the Garante 1,000 EUR for failing to provide proper information to data subjects, including workers, about the processing of personal data through a video surveillance system. The authority found that the information duty toward affected individuals was not met adequately.ITGaranteGDPR€1,000
27 Nov 2024Faro di RomaFaro di Roma was fined 15,000 EUR by the Garante for failing to comply with data protection rules. The case concerned the failure to honor requests for erasure and rectification of personal data linked to a judicial matter.ITGaranteGDPR€15,000
05 Feb 2025FARMEC SAThe National Supervisory Authority for Personal Data Processing completed an investigation in December 2024 at FARMEC SA and found a GDPR violation. As a result, the company was fined EUR 5,000.ROANSPDCPGDPR€5,000
09 May 2022FARMACIA MERCADO CENTRAL DE SAN FERNANDO C.BThe pharmacy was fined by the AEPD for operating a video surveillance system that recorded public areas and conversations between employees and customers. The authority found that this processing breached data protection rules.ESAEPDGDPR€1,000
17 Jul 2012FARMACIA INTERNACIONALFARMACIA INTERNACIONAL was fined by the AEPD EUR 1,800 for continuing to send electronic newsletters to a customer after the customer had unsubscribed. The authority found a breach of Article 21.1 of the LSSI.ESAEPDePrivacy€1,800
29 Mar 2018Farmacia del Sole delle dottoresse De Vito Luana e Lubelli Chiara s.n.c.Farmacia del Sole was fined by the Garante for issuing receipts that showed medication names instead of the authorization number. This practice breached privacy rules and exposed sensitive customer information.ITGaranteGDPR€12,000
27 Jun 2023Farmacia Ardealul SRLFarmacia Ardealul SRL was fined by ANSPDCP EUR 2,500 for a data security breach on its website. Unauthorized malware installation led to the compromise of personal data confidentiality, including banking data, of a significant number of clients.ROANSPDCPGDPR€2,500
23 Nov 2017Fantozzi Marinella e Banca Nazionale del Lavoro S.p.A.Fantozzi Marinella and Banca Nazionale del Lavoro S.p.A. were fined by the Garante in the amount of 4,000 EUR for breaches of data protection measures under the Italian Privacy Code. The case concerned non-compliance with requirements for the protection of personal data.ITGaranteGDPR€4,000
23 Dec 2024Fan Courier Express S.R.L.Fan Courier Express S.R.L. was fined €2,000 by ANSPDCP for breaching Article 3 of the GDPR. The case concerned non-compliance with the rules on the regulation’s scope of application.ROANSPDCPGDPR€2,000
12 Nov 2025Fan Courier Express S.R.L.Fan Courier Express S.R.L. was fined by ANSPDCP in the amount of €3,000 for processing personal data in breach of GDPR. The case concerned unlawful handling of personal data by the company.ROANSPDCPGDPR€3,000
12 Nov 2025Fan Courier Express S.R.L.Fan Courier Express S.R.L. was fined by ANSPDCP in the amount of €1,000 for processing personal data in violation of GDPR. The case concerned unlawful processing of personal data.ROANSPDCPGDPR€1,000
23 Nov 2017Famicord Italia s.r.l.Famicord Italia s.r.l. was fined by the Garante for processing personal data relating to health without notifying the authority. The company also collected personal data through its website without providing the required privacy notice.ITGaranteGDPR€22,400
22 Feb 2018FAMAS S.R.L.FAMAS S.R.L. was fined by the Garante for using a biometric system based on fingerprint recognition to record employee attendance without a proper legal basis. The case concerned the processing of biometric data in an employment context, where specific lawful grounds are required.ITGaranteGDPR€30,000
26 Apr 2018Falotico Luca CarmeloFalotico Luca Carmelo, a general practitioner, was fined for failing to implement minimum security measures to protect personal and sensitive data. This allowed unauthorized access to the healthcare system.ITGaranteGDPR€10,000
14 Jun 2018Faiella Nicola s.r.l.Faiella Nicola s.r.l. was fined EUR 112,000 by the Garante for improper processing of personal data using geolocation and video surveillance systems. The authority found that the company did not comply with data protection requirements when deploying these tools.ITGaranteGDPR€112,000