Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.5m
YoY volume
-23.6%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
12 May 2016Leonardo SestaLeonardo Sesta, a lawyer, was fined by the Italian data protection authority, Garante. The violation concerned transmitting personal data by email instead of registered mail, contrary to data protection rules.ITGaranteGDPR€4,000
05 May 2016S.I.S Società Italiana Scommesse s.r.lS.I.S Società Italiana Scommesse s.r.l was fined EUR 2,400 by the Garante. The authority found that the company failed to provide adequate simplified information about its video surveillance system, in breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400
05 May 2016Polo scolastico paritario Scuola Domani s.r.l.The private school Polo scolastico paritario Scuola Domani s.r.l. was fined EUR 2,400 by the Garante. The authority found that the website did not provide the required privacy information to users submitting inquiries or job applications.ITGaranteGDPR€2,400
03 May 2016REAL AUTOMOVIL CLUB DE ESPAÑAREAL AUTOMOVIL CLUB DE ESPAÑA was fined by the AEPD EUR 1,000 for sending unsolicited commercial emails despite the recipient's requests to unsubscribe. The authority found a breach of Article 21.1 of the LSSI.ESAEPDePrivacy€1,000
29 Apr 2016CRUZ ROJA ESPAÑOLACRUZ ROJA ESPAÑOLA was fined by the AEPD EUR 1,100 for sending unsolicited commercial emails to a recipient who had previously requested data cancellation. The authority found a breach of Article 21.1 of the LSSI.ESAEPDePrivacy€1,100
29 Apr 2016ACROSS SRLACROSS SRL was fined by the AEPD in the amount of 1,500 EUR for sending unsolicited commercial emails without proper consent. The case concerned Article 21.1 of the LSSI and indicates a lack of a valid legal basis for direct marketing.ESAEPDePrivacy€1,500
27 Apr 2016Luziotti Auto s.r.l.Luziotti Auto s.r.l. was fined by the Garante 2,400 EUR for collecting personal data through its website without providing users with the required information notice. This constituted a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€2,400
27 Apr 2016Lin ShaochunLin Shaochun was fined EUR 2,400 by the Italian data protection authority, Garante. The authority found that the company failed to provide data subjects with adequate information about video surveillance, in breach of privacy rules.ITGaranteGDPR€2,400
25 Apr 2016HAPPY SOCIAL MEDIA LTDHAPPY SOCIAL MEDIA LTD was fined by the AEPD in the amount of 1,400 EUR. The case concerned unsolicited marketing emails sent without a simple opt-out mechanism, in breach of the LSSI.ESAEPDePrivacy€1,400
25 Apr 2016HAPPY SOCIAL MEDIA LTDHAPPY SOCIAL MEDIA LTD was fined EUR 1,400 by the AEPD. The case concerned sending unsolicited commercial emails without providing a simple and free opt-out mechanism, in breach of the LSSI.ESAEPDePrivacy€1,400
25 Apr 2016PARABEBES SERVICIOS INFANTILES Y PREMAMÁ, S.L.The entity was fined by the AEPD for sending unsolicited commercial emails to a complainant. The authority found a breach of Article 21.1 of the LSSI.ESAEPDePrivacy€2,900
21 Apr 2016Comune di PozzuoliComune di Pozzuoli was fined EUR 10,000 by the Garante for publishing a minor’s personal data, including health information, on its institutional website. The conduct breached privacy and data protection rules.ITGaranteGDPR€10,000
21 Apr 2016Romana Supernegozi s.r.l.Romana Supernegozi s.r.l. was fined by the Garante 2,400 EUR for failing to provide adequate simplified information about its video surveillance system. The case concerned breaches of data protection information duties.ITGaranteGDPR€2,400
21 Apr 2016Comune di OttavianoComune di Ottaviano was fined for publishing individuals’ personal data on its website without a legal basis. The authority found this breached Article 19 of the Italian Data Protection Code.ITGaranteGDPR€4,000
21 Apr 2016Ditta individuale Fang WeiweiDitta individuale Fang Weiwei was fined 2,400 EUR by the Garante. The authority found that the video surveillance system was used without providing the information required under privacy rules.ITGaranteGDPR€2,400
21 Apr 2016Estracom s.p.a.Estracom s.p.a. was fined EUR 20,000 by the Garante for retaining customers’ call data for more than thirty days. The authority found this to be a breach of data protection rules.ITGaranteGDPR€20,000
20 Apr 2016TELEFÓNICA DE ESPAÑA, S.A.U.Telefónica de España, S.A.U. was fined by the AEPD in the amount of 12,000 EUR for continuing to send advertising to a complainant despite repeated requests to stop. The authority found this conduct breached Article 21 of the LSSI.ESAEPDePrivacy€12,000
20 Apr 2016VODAFONE ONO, S.A.U.VODAFONE ONO, S.A.U. was fined 1,250 EUR by the AEPD for making unsolicited marketing calls and sending SMS messages to a non-customer. The authority found this conduct breached Article 21.1 of the LSSI.ESAEPDePrivacy€1,250
07 Apr 2016Comune di LizzanoComune di Lizzano was fined by the Garante for publishing personal data, including health information about a minor, on its online notice board. The authority found this to be a breach of data protection rules.ITGaranteGDPR€4,000
07 Apr 2016CityFan s.r.l.CityFan s.r.l. was fined EUR 4,000 by the Italian data protection authority, Garante. The case concerned the failure to formally designate employees and collaborators as data processors under Article 33 of the Italian Data Protection Code.ITGaranteGDPR€4,000