Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.5m
YoY volume
-23.6%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
02 Feb 2017Euro Comunication System s.r.l.Euro Comunication System s.r.l. was fined EUR 1,260,000 by the Garante. The authority found that funds were transferred without obtaining consent for data processing and that transactions were split to avoid detection, breaching AML rules.ITGaranteGDPR€1,260,000
02 Feb 2017Sigue Global Service LimitedSigue Global Service Limited was fined by the Garante 5,880,000 EUR for breaches of data protection rules and anti-money laundering requirements. The authority cited money transfers carried out without proper consent, techniques used to obscure the true origin of funds, and non-compliance with AML obligations.ITGaranteGDPR€5,880,000
02 Feb 2017Marc 1 s.r.l.Marc 1 s.r.l. was fined €850,000 by the Garante for transferring money to China using techniques designed to avoid anti-money laundering rules. The authority also found that the actual senders had not given consent for the processing of their personal data.ITGaranteGDPR€850,000
02 Feb 2017Sirama s.r.lSirama s.r.l was fined EUR 1,430,000 by the Garante for transferring money to China using techniques intended to evade anti-money laundering rules. The authority also found that personal data were processed without consent from the actual senders.ITGaranteGDPR€1,430,000
26 Jan 2017Comune di Roma CapitaleComune di Roma Capitale was fined EUR 10,000 by the Garante for unlawfully publishing personal data of disabled individuals on its website. The case concerned a breach of data protection rules and required removal of the disclosed information.ITGaranteGDPR€10,000
23 Jan 2017BANCO BILBAO VIZCAYA ARGENTARIA, S.A.Banco Bilbao Vizcaya Argentaria, S.A. was fined by the AEPD for sending unsolicited commercial emails to a complainant. The authority found a breach of Article 21.1 of the LSSI.ESAEPDePrivacy€3,300
19 Jan 2017D’Agostino Domenico FedeleD’Agostino Domenico Fedele was fined EUR 9,600 by the Garante for failing to provide individuals with the required data protection information. The breach concerned Article 13 of the Italian Data Protection Code.ITGaranteGDPR€9,600
19 Jan 2017Perrone Rosaria e Azienda Universitaria Ospedaliera Ospedali Riuniti di TriestePerrone Rosaria and Azienda Universitaria Ospedaliera Ospedali Riuniti di Trieste were fined by the Garante 20,000 EUR. The sanction concerned unauthorized access by medical staff to personal health data, in breach of data protection rules.ITGaranteGDPR€20,000
19 Jan 2017Bertolotto Michele e Azienda Universitaria Ospedaliera Ospedali Riuniti di TriesteThe Garante imposed a 10,000 EUR fine on Bertolotto Michele and Azienda Universitaria Ospedaliera Ospedali Riuniti di Trieste. The case concerned unauthorized access by two doctors to personal health data, including Bertolotto’s data.ITGaranteGDPR€10,000
18 Jan 2017Anonymizováno (ÚOOÚ UOOU-01178/17-265)The company was fined for repeatedly sending unsolicited commercial communications without a legal basis. The case concerned a breach of the Czech law on certain information society services.CZUOOUePrivacy€14,064
12 Jan 2017Globo Vigilanza s.r.l.Globo Vigilanza s.r.l. was fined by the Garante EUR 12,000 for using a GPS tracking system on company vehicles without providing employees with the required information about the purposes of data processing. The case also involved the use of those data in disciplinary actions against employees.ITGaranteGDPR€12,000
12 Jan 2017Centro Studi Raffaello s.r.l.Centro Studi Raffaello s.r.l. was fined by the Garante for inadequate data protection measures and improper collection of consent for marketing purposes. The case indicates deficiencies in the company's personal data processing controls and compliance framework.ITGaranteGDPR€20,000
11 Jan 2017WIZINK BANK, S.A.WIZINK BANK, S.A. was fined by the AEPD EUR 5,000 for sending unsolicited commercial emails despite a request to unsubscribe. The authority found a breach of Article 21 of the LSSI.ESAEPDePrivacy€5,000
10 Jan 2017ORANGE ESPAGNE, S.A.U.ORANGE ESPAGNE, S.A.U. was fined by the AEPD 10,000 EUR for sending unsolicited commercial SMS messages. The messages were sent despite the complainant being registered on the Robinson List, breaching Articles 21.1 and 21.2 of the LSSI.ESAEPDePrivacy€10,000
03 Jan 2017EL CORTE INGLES, S.A.EL CORTE INGLES, S.A. was fined by the AEPD in the amount of EUR 5,700 for continuing to send marketing emails to a complainant despite requests to stop. The authority found a breach of Article 21.1 of the LSSI.ESAEPDePrivacy€5,700
01 Jan 2017A DOS RUEDAS EN LA RED, SLA DOS RUEDAS EN LA RED, SL was fined EUR 2,200 by the AEPD for sending unsolicited commercial emails. The conduct breached Article 21 of the LSSI, which restricts marketing communications without prior consent.ESAEPDePrivacy€2,200
01 Jan 2017Happy Social Media LTD.Happy Social Media LTD. was fined by the AEPD EUR 2,000 for sending advertising emails to individuals who had opted out of receiving them. The case concerned Article 21.1 of the LSSI and the obligation to respect objections to marketing communications.ESAEPDePrivacy€2,000
01 Jan 2017NIUNO ESTÉTICA, S.L.NIUNO ESTÉTICA, S.L. was fined by the AEPD 1,000 EUR for sending unsolicited commercial SMS messages. The conduct breached the requirements of Spain’s LSSI governing marketing communications.ESAEPDePrivacy€1,000
01 Jan 2017WEWI MOBILE, S.L.WEWI MOBILE, S.L. was fined by the AEPD in the amount of €5,000 for sending unsolicited commercial messages to individuals without their prior consent. This conduct breached the LSSI rules on marketing communications.ESAEPDePrivacy€5,000
01 Jan 2017MAS MOVIL TELECOM 3.0 S.A.U. (actualmente XFERA MOVILES, S.A.)The entity was fined by the AEPD in the amount of 2,500 EUR for sending unsolicited marketing messages without providing an opt-out option. This conduct breached article 21.2 of the LSSI, which requires recipients to be able to refuse such communications.ESAEPDePrivacy€2,500