Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.5m
YoY volume
-23.6%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
22 Feb 2023CONGREGACIÓN DEL SANTÍSIMO REDENTOR CURIA PROVINCIALThe entity was fined 500 EUR by the AEPD for installing a video surveillance system that could capture public areas without prior administrative authorization. The authority found this to be a breach of Article 5(1)(c) GDPR.ESAEPDGDPR€500
16 May 2012CONFORAMA ESPAÑA S.A.CONFORAMA ESPAÑA S.A. was fined by the AEPD in the amount of 3,000 EUR for sending unsolicited advertising SMS messages to customers. The conduct breached Article 21 of the LSSI on marketing communications without prior consent.ESAEPDePrivacy€3,000
27 Oct 2016Confezioni Hu LingzhiConfezioni Hu Lingzhi was fined EUR 2,400 by the Garante. The authority found that the company failed to provide data subjects with information about the processing of personal data through a video surveillance system.ITGaranteGDPR€2,400
12 Nov 2019CONFEDERACION GENERAL DEL TRABAJOCONFEDERACION GENERAL DEL TRABAJO was fined by the AEPD €5,000 for disclosing the complainant’s personal data without consent. The disclosure included details of a verbal abuse and harassment case, family relations, pregnancy status, and home address, shared with about 400 union members.ESAEPDGDPR€5,000
10 May 2022CONECTA5 TELECINCO, S.A.U.CONECTA5 TELECINCO, S.A.U. was fined by the AEPD 50,000 EUR for publishing audio of a victim’s court testimony without voice distortion. The authority found a breach of data protection principles.ESAEPDGDPR€50,000
12 Oct 2016Condominio via Michelangelo da CaravaggioThe condominium was fined €4,800 by the Garante. The authority found that the surveillance system notices did not identify the data controller, which breached data protection rules.ITGaranteGDPR€4,800
27 Nov 2025Conde NastThe French data protection authority CNIL fined Conde Nast EUR 750,000 over cookie practices on the Vanity Fair website. The authority found that the company placed cookies without valid consent, did not provide sufficient information about necessary cookies, and made refusal and withdrawal mechanisms ineffective.FRCNILGDPR€750,000
04 May 2022Concordia Capital IFN S.A.The company was fined for installing audio-video cameras in employee offices. The authority found that this monitoring violated data protection rules.ROANSPDCPGDPR€4,000
08 May 2014Concetta VivinoConcetta Vivino was fined by the Garante in the amount of EUR 2,400 for failing to provide adequate simplified information about the use of a video surveillance system. This constituted a breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400
08 Sept 2016CONCEPTO ARGENTINO SL (LA VACA ARGENTINA)The AEPD fined CONCEPTO ARGENTINO SL (LA VACA ARGENTINA) 1,500 EUR for sending unsolicited emails despite the recipient's request to unsubscribe. The authority found a breach of Article 21.1 of the LSSI.ESAEPDePrivacy€1,500
26 Nov 2020Concentrix Cvg Italy s.r.l.Concentrix Cvg Italy s.r.l. was fined 20,000 EUR by the Garante for violating GDPR principles. The case concerned a company policy that improperly handled employees' personal data, including a requirement to keep personal items visible on desks.ITGaranteGDPR€20,000
16 Feb 2023CONCENTRA CENTRAL DE COMPRAS Y SERVICIOS S.L.The entity was fined for making misleading advertising calls without explicit consent from recipients. The authority cited breaches of GDPR Articles 14 and 21(4).ESAEPDGDPR€2,000
16 May 2018Conafi Prestitò s.p.a.Conafi Prestitò s.p.a. was fined by the Garante for failing to notify certain data processing activities related to loan management. The breach concerned obligations under the Italian Data Protection Code.ITGaranteGDPR€20,000
25 Aug 2022COMUNIDAD PROPIETARIOS R.R.R.The community of owners COMUNIDAD PROPIETARIOS R.R.R. was fined EUR 150 by the AEPD for installing a video surveillance system in the building entrance hall without proper data protection compliance. The authority found a breach of Article 13 GDPR concerning the duty to inform data subjects.ESAEPDGDPR€150
01 Jan 2021COMUNIDAD PROPIETARIOS ***DIRECCIÓN.1The Community of Property Owners was fined by the AEPD EUR 500 for posting on notice boards a list of owners in arrears together with personal data. The information was accessible to third parties, which constituted a breach of data protection rules.ESAEPDGDPR€500
27 May 2022COMUNIDAD PROPIETARIOS ***COMUNIDAD.1The community of property owners was fined by the AEPD EUR 600 for using a surveillance system that recorded audio in common areas. The authority found the measure excessive and unnecessary and also noted insufficient information on the surveillance signs.ESAEPDGDPR€600
09 Sept 2022COMUNIDAD PROPIETARIO R.R.R.The entity installed a video surveillance system without approval from the property owners' association. The authority found this to be a breach of data protection rules and imposed a fine of 1,500 EUR.ESAEPDGDPR€1,500
05 Aug 2021COMUNIDAD DE VECINOS ***COMUNIDAD.1The community of neighbors was fined EUR 1,000 by the AEPD for failing to provide adequate information about video surveillance. The authority found a breach of Article 13 of the GDPR.ESAEPDGDPR€1,000
23 Jun 2020COMUNIDAD DE PROPIETAROS R.R.R.The entity was fined for installing video surveillance cameras without the required informational signage. The case concerned a breach of data protection rules and the obligation to properly inform individuals subject to monitoring.ESAEPDGDPR€2,000
18 Apr 2024COMUNIDAD DE PROPIETARIOS R.R.R.The entity was fined for sending an email to all community members containing a list of individual heating consumption linked to specific apartments. The authority found this to be a breach of data protection rules.ESAEPDGDPR€600