BULLETIN №083Last updated · 08 Aug 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.5m
- YoY volume
- -23.6%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 06 Feb 2014 | Anthea Preziosi s.a.s.Anthea Preziosi s.a.s. was fined EUR 2,400 by the Italian data protection authority, Garante. The case concerned the collection of personal data through a website form without providing the required information notice, in breach of Article 13 of the Italian Privacy Code. | IT | Garante | GDPR | €2,400 | ↗ |
| 16 Sept 2021 | Azienda sanitaria provinciale di CosenzaAzienda sanitaria provinciale di Cosenza was fined by the Garante for unlawfully publishing health data on its institutional website. The case involved breaches of data protection principles and required security measures for sensitive data. | IT | Garante | GDPR | €18,000 | ↗ |
| 27 Mar 2025 | Corriere del Giorno 1947 Media Group Soc. Coop. ArlThe Garante imposed a fine of 6,000 EUR on Corriere del Giorno 1947 Media Group Soc. Coop. Arl for violations related to the right to be forgotten. The authority found that certain articles were no longer relevant and were not in the public interest. | IT | Garante | GDPR | €6,000 | ↗ |
| 30 Jul 2015 | Comune di MontallegroComune di Montallegro was fined for publishing documents on its website that contained sensitive personal data revealing individuals' health conditions. This constituted a breach of data protection law. | IT | Garante | GDPR | €10,000 | ↗ |
| 12 Mar 2015 | Giuseppe PernaGiuseppe Perna was fined 64,000 EUR by the Garante for collecting and selling users’ email and IP addresses without proper consent and notice. The authority found this conduct to be in breach of data protection rules. | IT | Garante | GDPR | €64,000 | ↗ |
| 24 Nov 2022 | dott.ssa Emilia ColosimoThe Garante imposed a EUR 1,000 fine on dott.ssa Emilia Colosimo for breaches of the principles of lawful, fair and transparent processing of personal data, data minimization, and data security. The authority also cited insufficient safeguards against unauthorized or unlawful processing. | IT | Garante | GDPR | €1,000 | ↗ |
| 05 Jul 2017 | Compagnia Generale Trattori S.p.A.Compagnia Generale Trattori S.p.A. was fined by the Garante EUR 20,000 for using a GPS/GPRS system to monitor employee activities without proper notification. The authority found this to be a breach of data protection rules. | IT | Garante | GDPR | €20,000 | ↗ |
| 01 Jan 2026 | CloudflareAGCOM issued an ordinanza ingiunzione against Cloudflare under the Digital Services Act. The fine is 100,000 EUR and relates to a breach of DSA obligations. | IT | AGCOM | DSA | €100,000 | ↗ |
| 23 Oct 2014 | sig.ra Pan MiaomiaoThe individual was fined for failing to provide adequate information about the use of a video surveillance system. The authority found this to be a breach of privacy and data protection rules. | IT | Garante | GDPR | €2,400 | ↗ |
| 18 Jul 2013 | Yang YijieYang Yijie was fined EUR 6,000 by the Garante for failing to provide the required privacy notice in connection with a video surveillance system at his business. The authority found a breach of Article 13 of the Italian Privacy Code. | IT | Garante | GDPR | €6,000 | ↗ |
| 31 Aug 2023 | Provvedimento del 31 agosto 2023 [9938463]The decision concerned a breach of rules on the processing of health data by a medical center. Garante imposed a fine of EUR 10,000. | IT | Garante | GDPR | €10,000 | ↗ |
| 11 Feb 2021 | Roma Servizi per La Mobilita S.r.l.Roma Servizi per La Mobilita S.r.l. was fined EUR 60,000 by the Garante for inadequate security measures. The weakness led to unauthorized access to personal data related to ZTL permits. | IT | Garante | GDPR | €60,000 | ↗ |
| 13 Dec 2018 | Ministero dell’Istruzione, dell’Università e della Ricerca – Ufficio Scolastico Regionale per la Lombardia – Ufficio III – Ambito territoriale di BergamoThe Ministry of Education’s regional office in Bergamo was fined for unlawfully publishing personal data related to disciplinary proceedings on its website. The authority found a breach of data protection rules. | IT | Garante | GDPR | €4,000 | ↗ |
| 26 Jun 2014 | Mitomet s.r.l.Mitomet s.r.l. was fined 12,000 EUR by the Garante for using an integrated video surveillance system. The system allowed viewing images from workplaces without implementing the required privacy safeguards. | IT | Garante | GDPR | €12,000 | ↗ |
| 11 Jan 2024 | Libero Consorzio comunale di CaltanissettaLibero Consorzio comunale di Caltanissetta was fined by the Garante EUR 2,000 for breaching Article 37(7) of the GDPR. The decision also orders publication of the sanction on the authority’s website. | IT | Garante | GDPR | €2,000 | ↗ |
| 22 Feb 2024 | Unica s.r.l.s.Unica s.r.l.s. was fined by the Garante EUR 2,000 for using a facial recognition system to record employee attendance without a proper legal basis. The authority found that the processing of biometric data breached GDPR requirements. | IT | Garante | GDPR | €2,000 | ↗ |
| 27 Feb 2025 | Energia Pulita S.r.l.Energia Pulita S.r.l. was fined EUR 300,000 by the Garante for making unsolicited marketing calls without a valid legal basis. The authority found a breach of GDPR Article 5. | IT | Garante | GDPR | €300,000 | ↗ |
| 07 Mar 2013 | Greentel Soc. Coop.Greentel Soc. Coop. was fined by the Garante 10,400 EUR for sending promotional communications by fax without providing adequate information or obtaining explicit consent. The authority found violations of Articles 13 and 130 of the Italian Data Protection Code. | IT | Garante | GDPR | €10,400 | ↗ |
| 23 Apr 2015 | Comune di CastelplanioComune di Castelplanio was fined by the Garante for publishing personal data, including names, on its online notice board. This conduct breached privacy regulations. | IT | Garante | GDPR | €4,000 | ↗ |
| 22 Jan 2015 | Comune di RealmonteComune di Realmonte was fined by the Garante for unlawfully publishing personal data revealing health information on its website. The case concerned a breach of privacy and data protection rules. | IT | Garante | GDPR | €10,000 | ↗ |