Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.5m
YoY volume
-23.6%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
23 Jan 2008Italmarmo di Rossin EzioItalmarmo di Rossin Ezio was fined EUR 4,000 by the Garante for failing to provide timely access to personal data upon request. The case concerned non-compliance with data protection obligations.ITGaranteGDPR€4,000
10 Jun 2024MEDECIN GENERALISTE (procédure simplifiée)CNIL imposed an administrative fine of EUR 4,000 on MEDECIN GENERALISTE and issued an injunction. The case was handled under a simplified procedure.FRCNILGDPR€4,000
13 Feb 2025Azienda ULSS n. 02573090236The public health company was fined for making a disciplinary proceeding document visible to unauthorized employees. The authority found breaches of GDPR Articles 5 and 6 and Article 2-ter of the Italian Privacy Code.ITGaranteGDPR€4,000
04 Jun 2025Comune di LatinaThe Garante fined Comune di Latina EUR 4,000 for violations linked to the activation process for the “Dedicata a te” card. Requiring a payment to avoid cancellation of the benefit raised compliance concerns.ITGaranteGDPR€4,000
04 Feb 2016Hans Christoph Josef DietrichHans Christoph Josef Dietrich was fined EUR 4,000 by the Garante. The case concerned the public display of a list of patients who had not paid for medical services, which amounted to unauthorized disclosure of personal data.ITGaranteGDPR€4,000
22 Jun 2023LOCAL VERTICALS, S.L.LOCAL VERTICALS, S.L. was fined EUR 4,000 by the AEPD for failing to provide information about the website owner and for not having a privacy policy. The case concerns breaches of data protection information obligations.ESAEPDePrivacy€4,000
16 Jul 2025Georgescu CălinThe operator Georgescu Călin was fined by ANSPDCP in the amount of EUR 4,000 for violations of GDPR provisions. The case concerned non-compliance with personal data protection requirements.ROANSPDCPGDPR€4,000
02 Jul 2020Comune di Greve in ChiantiComune di Greve in Chianti was fined by the Garante for unlawfully disclosing personal data relating to criminal convictions and proceedings. The conduct breached the principles of lawfulness, fairness, and transparency in data processing.ITGaranteGDPR€4,000
02 Jul 2015Ordinanza ingiunzione - 2 luglio 2015 [4337649]The condominium administrator did not respond to requests for information related to a data protection complaint. Garante imposed a fine of EUR 4,000 for violating data protection rules.ITGaranteGDPR€4,000
29 Apr 2026Istituto Comprensivo Statale MontelibrettiIstituto Comprensivo Statale Montelibretti was fined EUR 4,000 by the Garante for breaches of data protection rules in the processing of personal data on its institutional website. The authority cited failures to comply with lawfulness, fairness, transparency, and data minimization principles.ITGaranteGDPR€4,000
21 Apr 2016Comune di OttavianoComune di Ottaviano was fined for publishing individuals’ personal data on its website without a legal basis. The authority found this breached Article 19 of the Italian Data Protection Code.ITGaranteGDPR€4,000
04 Jun 2025Istituto d’Istruzione Superiore “Carlo e Nello Rosselli”The Garante imposed a EUR 4,000 fine on Istituto d’Istruzione Superiore “Carlo e Nello Rosselli” for failing to appoint a Data Protection Officer and for delaying notification of the DPO’s contact details to the authority. The authority also found that transparency obligations toward data subjects were not met.ITGaranteGDPR€4,000
01 Jan 2024ASOCIACIÓN ESCUELA NACIONAL DE EQUITACIÓNThe entity was fined €4,000 by the AEPD for processing personal data without a lawful basis and for failing to inform the data subject. The authority found breaches of Articles 6 and 14 of the GDPR.ESAEPDGDPR€4,000
10 Mar 2016Ministero della giustizia – Dipartimento dell’amministrazione penitenziariaThe Ministry of Justice's Department of Penitentiary Administration was fined EUR 4,000 by the Garante for unlawful processing of personal data. The breach involved disclosing the names and details of prison police personnel who received overtime compensation.ITGaranteGDPR€4,000
15 May 2025SOCIETE OFFRANT DES PRESTATIONS DE SECURITE PRIVEE (procédure simplifiée)The CNIL used a simplified procedure against SOCIETE OFFRANT DES PRESTATIONS DE SECURITE PRIVEE and ordered liquidation of a penalty payment of EUR 4,000. The decision concerns failure to comply with a prior obligation imposed by the supervisory authority.FRCNILGDPR€4,000
08 Jun 2023ALTERNATIVA CORELLANA INDEPENDIENTE (ACI)ALTERNATIVA CORELLANA INDEPENDIENTE (ACI) was fined by the AEPD for failing to respond to information requests. The authority treated this as a breach of Article 58.1 of the GDPR.ESAEPDGDPR€4,000
07 Feb 2024GESTIÓN DE PATRIMONIOS ANFIPOLIS SOCIEDAD DE RESPONSABILIDAD LIMITADAThe entity was fined by the AEPD 4,000 EUR for failing to provide access to personal data and the information requested by the data protection authority. The case concerns non-compliance with Article 58.1 of the GDPR.ESAEPDGDPR€4,000
02 Apr 2015Provincia di TriesteProvincia di Trieste was fined for publishing personal data on its institutional website without a legal basis. This breached Article 19 of the Italian Data Protection Code.ITGaranteGDPR€4,000
04 Jul 2024Comune di VillasimiusComune di Villasimius was fined for failing to respond to a request to remove personal data from its website and for unlawfully publishing personal data. The authority found breaches of lawfulness, fairness, transparency, and data minimization.ITGaranteGDPR€4,000
25 Mar 2025Star Delta Electrical ServicesThe Jersey Data Protection Authority fined Jon Peacock t/a Star-Delta Electrical Services £4,000. The case arose from a client complaint concerning the handling of personal data by the sole trader. The penalty was issued under the Data Protection (Jersey) Law 2018.JEJOICGDPR€4,787