Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.5m
YoY volume
-23.7%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
29 Jan 2026dott. Paolo MontemurroDott. Paolo Montemurro was fined 5,000 EUR by the Garante for posting photographs of a patient's surgical procedure on Instagram without consent. The authority found this breached GDPR principles of lawfulness, fairness, and transparency.ITGaranteGDPR€5,000
10 Jul 2025dottoressa Monica Maria FerrariThe doctor was fined for recording conversations with a patient during a specialist visit without proper consent. The authority also found a failure to provide required information, breaching transparency and information obligations.ITGaranteGDPR€7,000
29 Apr 2026dottoressa GuzzoThe Garante imposed a fine of EUR 5,000 on dottoressa Guzzo for unlawfully processing personal data by publishing images of a deceased minor without consent. The authority found that this breached core data protection principles.ITGaranteGDPR€5,000
10 Jun 2021dott. MariniThe Garante imposed a EUR 20,000 fine on dott. Marini for unlawfully collecting information about patients' HIV status. The authority found a breach of the principles of necessity and proportionality in personal data processing.ITGaranteGDPR€20,000
15 Dec 2011dott. Mancini Endriodott. Mancini Endrio was fined EUR 8,000 by the Garante for violating data protection rules. The case concerned inadequate compliance with data security requirements under Article 162, paragraph 2-bis, of the Italian Privacy Code.ITGaranteGDPR€8,000
19 Sept 2013dott. Luigi Ventronedott. Luigi Ventrone was fined for failing to respond to requests for information concerning the processing of personal data in connection with a complaint by Ms. Ilaria Corsale. The authority found a breach of Article 157 of the Italian Data Protection Code.ITGaranteGDPR€4,000
11 Mar 2021dott. Gregorio GrecoDott. Gregorio Greco was fined 6,400 EUR by the Garante for failing to provide information to data subjects and for processing patients' health-related personal data without consent. The case concerns patient data and breaches of transparency and lawful basis requirements.ITGaranteGDPR€6,400
11 Jan 2024dott. BagnatoA doctor was fined by the Garante for breaching privacy rules. The case involved improper handling of medical prescriptions outside the office, which could expose sensitive personal data.ITGaranteGDPR€20,000
26 Jan 2011Doss s.a.s. di Mazza Mario & C.Doss s.a.s. was fined by the Garante EUR 6,000 for processing personal data without proper consent. The company purchased and used personal data lists for promotional mailings without an adequate legal basis.ITGaranteGDPR€6,000
16 Jun 2026Dormeo Home SRLANSPDCP completed an investigation at Dormeo Home SRL in May 2026 and found a breach of GDPR provisions. As a result, a fine of EUR 1,000 was imposed.ROANSPDCPGDPR€1,000
03 Feb 2022DOOR2DOOR SPAIN, S.L.DOOR2DOOR SPAIN, S.L. did not comply with a decision of the Spanish Data Protection Agency (AEPD) requiring measures to inform individuals whose personal data were collected. The authority treated this as a breach of Article 58(2) GDPR and imposed a fine of EUR 1,000.ESAEPDGDPR€1,000
01 Jan 2014Don D.D.D.Don D.D.D. was fined by the AEPD in the amount of 1,400 EUR for sending unsolicited commercial emails. The conduct breached the LSSI rules on marketing communications.ESAEPDePrivacy€1,400
01 Jan 2019Don B.B.B.Don B.B.B. was fined by the AEPD in the amount of 1,000 EUR for sending an unsolicited commercial email. The conduct breached Article 21 of the LSSI, which governs marketing communications without prior consent.ESAEPDePrivacy€1,000
01 Jan 2015Doña C.C.C.Doña C.C.C. was fined EUR 1,000 by the AEPD. The sanction concerned sending unsolicited commercial communications without a valid opt-out mechanism, in breach of Article 21 of the LSSI.ESAEPDePrivacy€1,000
31 Jul 2023DOÑA B.B.B.The sanctioned individual created a WhatsApp group with 255 participants without prior consent. As a result, the names and phone numbers of the participants were disclosed, constituting a breach of personal data protection rules.ESAEPDGDPR€2,000
12 Mar 2026Domiziana GiorgianniThe Garante imposed a EUR 2,000 fine on Domiziana Giorgianni for failing to implement adequate technical and organizational measures to support data subject rights. The authority also found that requests were not handled without undue delay.ITGaranteGDPR€2,000
20 Mar 2026Domeniul Public și Privat SADomeniul Public și Privat SA was fined 2,000 EUR by ANSPDCP for GDPR violations. The case concerned non-compliance with personal data protection requirements.ROANSPDCPGDPR€2,000
20 Mar 2026Domeniul Public și Privat SADomeniul Public și Privat SA was fined EUR 1,000 for breaching Article 15 of the GDPR. The case concerned improper handling of data subject access rights.ROANSPDCPGDPR€1,000
08 May 2014Domenico Ciano AlbaneseDomenico Ciano Albanese was fined 4,800 EUR by the Garante for collecting personal data without providing adequate information to the data subjects. The authority found a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€4,800
01 Oct 2015Dolce Salato & C. s.r.l.Dolce Salato & C. s.r.l. was fined by the Garante 2,400 EUR for failing to provide data subjects with the required information about the processing of personal data through a video surveillance system. The case concerned a breach of the Italian Data Protection Code.ITGaranteGDPR€2,400