Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-20.7%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
13 Dec 2018Anonymizováno (ÚOOÚ UOOU-08001/18-14)The entity was fined 40,000 CZK by the UOOU for insufficient security measures in the processing of personal data. The authority cited inadequate audit logs and a lack of regular access checks to electronic health records.CZUOOUGDPR€1,549
29 Aug 2018Anonymizováno (ÚOOÚ UOOU-08277/18-40)The entity was fined for sending unsolicited commercial communications by electronic means without recipients' consent. This breached Czech rules on information society services.CZUOOUePrivacy€3,496
27 Jul 2018Anonymizováno (ÚOOÚ UOOU-08596/17-64)The individual was fined for publishing the personal data of a municipal social department employee on Facebook. The authority found a breach of confidentiality obligations under Czech law.CZUOOUGDPR€117
18 Apr 2018Anonymizováno (ÚOOÚ UOOU-09774/17-25)The entity was fined for processing personal data of hundreds of thousands of individuals without consent or another legal basis. The authority found this to be a breach of § 5(2) of the Czech Data Protection Act.CZUOOUGDPR€31,616
20 Feb 2018Anonymizováno (ÚOOÚ UOOU-12027/17-24)The entity was fined CZK 20,000 for disclosing sensitive personal data of a witness and a victim in a criminal case during a TV report. The authority found that the processing took place without explicit consent and without a valid legal exception.CZUOOUGDPR€790
13 Mar 2019Anonymizováno (ÚOOÚ UOOU-12081/17-63)The entity was fined CZK 23,000 by the UOOU for repeatedly sending unsolicited commercial communications without recipients’ consent. The authority found this conduct breached Section 7 of the Czech Act on Certain Information Society Services.CZUOOUePrivacy€896
14 May 2020Anonymizováno (ÚOOÚ UOOU-1936/19-68)The entity was fined 1,500,000 CZK by the UOOU. The authority found that required corrective measures under the Czech Data Processing Act were not implemented.CZUOOUGDPR€54,405
19 Oct 2017A.N.S.A. s.r.l.A.N.S.A. s.r.l. was fined for processing personal health data without notifying the Garante. The authority found a breach of Articles 37 and 38 of the Italian Privacy Code.ITGaranteGDPR€20,000
28 Jun 2018ANSORGE LOGISTICA ITALIA S.r.l.ANSORGE LOGISTICA ITALIA S.r.l. was fined EUR 8,000 by the Garante. The case concerned employee geolocation carried out without proper compliance with data protection rules.ITGaranteGDPR€8,000
12 Oct 2017Antea Service soc. coop.Antea Service soc. coop. was fined by the Garante 10,000 EUR for unlawfully processing biometric data of employees. The data were used to monitor workplace attendance. The case concerns a breach of personal data protection rules in an employment context.ITGaranteGDPR€10,000
02 Jul 2010Antena 3 de Televisión, S.A.Antena 3 de Televisión, S.A. was fined by the AEPD in the amount of 30,001 EUR for sending commercial SMS messages without prior recipient consent. The conduct breached the LSSI rules on marketing communications.ESAEPDePrivacy€30,001
02 Jul 2010ANTENA 3 DE TELEVISIÓN S.A.ANTENA 3 DE TELEVISIÓN S.A. was fined by the AEPD in the amount of 1,000 EUR for sending commercial SMS messages without prior recipient consent. The case concerns a breach of direct marketing rules and consent requirements for electronic communications.ESAEPDePrivacy€1,000
11 Feb 2016Anteprima Group srlAnteprima Group srl was fined EUR 6,400 by the Garante. The case concerned an unsolicited promotional call made without prior information to the recipient and without obtaining consent.ITGaranteGDPR€6,400
06 Feb 2014Anthea Preziosi s.a.s.Anthea Preziosi s.a.s. was fined EUR 2,400 by the Italian data protection authority, Garante. The case concerned the collection of personal data through a website form without providing the required information notice, in breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400
18 Dec 2025Anticimex s.r.l.Anticimex s.r.l. was fined EUR 40,000 by the Garante for breaching data protection rules. The company failed to provide an employee with access to personal data, including work-related emails and CRM access logs, despite a request under Article 15 GDPR.ITGaranteGDPR€40,000
05 Mar 2015Antonianum s.r.l.Antonianum s.r.l. was fined EUR 8,000 by the Garante. The authority found that consent flags for data processing were pre-set on the company’s websites, which did not meet user consent requirements.ITGaranteGDPR€8,000
10 Oct 2013Antonio CastielloAntonio Castiello was fined for failing to provide the required privacy notice in relation to a video surveillance system at his gaming establishment. The authority found that the omission breached the information duties owed to individuals captured by the cameras.ITGaranteGDPR€2,400
04 Dec 2014Antonio FrazzanoAntonio Frazzano was fined EUR 4,000 by the Garante for sending promotional faxes without the required information notice and without obtaining recipient consent. The case concerned violations of data protection and direct marketing rules.ITGaranteGDPR€4,000
16 Apr 2026An unnamed energy companyHungary’s data protection authority, NAIH, imposed a HUF 75 million GDPR fine in case NAIH-19-18/2024 on an unnamed energy company. The case concerned data processing for a nationwide LED replacement program and identified serious privacy compliance failures.HUNemzeti Adatvédelmi és Információszabadság HatóságGDPR€205,000
14 May 2010ANUNTIS SEGUNDAMANO ESPAÑA S.L.UANUNTIS SEGUNDAMANO ESPAÑA S.L.U was fined by the AEPD EUR 600 for sending unsolicited commercial communications without proper consent. The conduct breached Article 21 of the LSSI.ESAEPDePrivacy€600