BULLETIN №083Last updated · 08 Aug 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.5m
- YoY volume
- -23.6%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 01 Jan 2016 | WIZINK BANK S.A.WIZINK BANK S.A. was fined by the AEPD €4,100 for sending unsolicited commercial communications by electronic means. The authority found that the legal requirements for such communications were not met. | ES | AEPD | ePrivacy | €4,100 | ↗ |
| 01 Jan 2016 | HAPPY SOCIAL MEDIA, LTDHAPPY SOCIAL MEDIA, LTD was fined by the AEPD EUR 3,400 for sending unsolicited marketing emails. The authority found that the messages did not include a simple opt-out mechanism, which breached the LSSI. | ES | AEPD | ePrivacy | €3,400 | ↗ |
| 01 Jan 2016 | BANCO SANTANDER, S.A.Banco Santander, S.A. was fined by the AEPD €8,000 for sending unsolicited commercial emails. The authority found that the messages did not provide a valid email address for recipients to opt out, breaching Article 21 of the LSSI. | ES | AEPD | ePrivacy | €8,000 | ↗ |
| 01 Jan 2016 | TELE PIZZA S.A.U.TELE PIZZA S.A.U. was fined EUR 2,500 by the AEPD for sending commercial emails without providing a valid electronic address for exercising ARCO rights. This breached Article 21.2 of the LSSI and indicates a failure to meet required recipient information obligations. | ES | AEPD | ePrivacy | €2,500 | ↗ |
| 01 Jan 2016 | TOYS CENTRE, S.L.TOYS CENTRE, S.L. continued sending promotional emails to a complainant even after confirming removal from the mailing list. The AEPD fined the company for failing to comply with the requirements for commercial communications. | ES | AEPD | ePrivacy | €6,200 | ↗ |
| 01 Jan 2016 | PROCTER & GAMBLE ESPAÑAProcter & Gamble España was fined 20,000 EUR by the AEPD for continuing to send marketing emails to a complainant after unsubscribe requests. The authority found this conduct breached the LSSI rules on electronic communications. | ES | AEPD | ePrivacy | €20,000 | ↗ |
| 01 Jan 2016 | VODAFONE ONO, S.A.U.Vodafone Ono, S.A.U. was fined by the AEPD 6,000 EUR for sending unsolicited advertising SMS messages to a complainant. The complainant's data had previously been canceled, indicating a breach of data handling and marketing communication rules. | ES | AEPD | ePrivacy | €6,000 | ↗ |
| 01 Jan 2016 | ORANGE ESPAGNE S.A.U.ORANGE ESPAGNE S.A.U. was fined by the AEPD 2,500 EUR for sending unsolicited commercial communications by electronic means without the recipient's consent. The case indicates a breach of electronic marketing rules and the requirement for prior consent. | ES | AEPD | ePrivacy | €2,500 | ↗ |
| 17 Dec 2015 | Orange s.r.l.Orange s.r.l. was fined by the Garante in the amount of 8,800 EUR for processing personal data without the required information and consent. The authority also found that the company used a video surveillance system without providing adequate simplified information. | IT | Garante | GDPR | €8,800 | ↗ |
| 17 Dec 2015 | Caaf Cgil Sardegna srlCaaf Cgil Sardegna srl was fined by the Garante 12,000 EUR for failing to provide the required privacy notice on its website. The authority found this to be a breach of Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €12,000 | ↗ |
| 17 Dec 2015 | G.I.T. s.a.sG.I.T. s.a.s was fined 4,800 EUR by the Garante. The authority found that the company failed to provide adequate simplified information for its video surveillance system and did not give the required notice when collecting personal data through its website. | IT | Garante | GDPR | €4,800 | ↗ |
| 17 Dec 2015 | Zero srlZero srl was fined EUR 2,400 by the Garante for failing to provide the required privacy notice on its website. The breach concerned Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €2,400 | ↗ |
| 17 Dec 2015 | Maurizio De AngelisMaurizio De Angelis was fined for providing inadequate data protection information in a video surveillance system. The authority found a breach of the Italian Data Protection Code. | IT | Garante | GDPR | €2,400 | ↗ |
| 11 Dec 2015 | EAE INSTITUCION SUPERIOR DE FORMACION UNIVERSITARIA S.L.EAE INSTITUCION SUPERIOR DE FORMACION UNIVERSITARIA S.L. was fined by the AEPD EUR 3,000 for sending commercial emails without the required consent. The authority found this conduct breached Article 21.2 of the LSSI. | ES | AEPD | ePrivacy | €3,000 | ↗ |
| 10 Dec 2015 | Nuovo Pic Nic s.r.l.Nuovo Pic Nic s.r.l. was fined 2,400 EUR by the Garante for failing to provide adequate simplified information about its video surveillance system. The authority treated this as a breach of data protection rules. | IT | Garante | GDPR | €2,400 | ↗ |
| 10 Dec 2015 | Aruba s.p.a.Aruba s.p.a. was fined by the Italian data protection authority, Garante, in the amount of EUR 40,000. The case concerned the sending of promotional emails without obtaining the required consent, in breach of articles 23 and 130 of the Italian data protection code. | IT | Garante | GDPR | €40,000 | ↗ |
| 02 Dec 2015 | Sea srlSea srl was fined EUR 2,400 by the Italian Garante. The case concerned the installation of a video surveillance system without providing the required privacy notice, in breach of Article 13 of the Italian Privacy Code. | IT | Garante | GDPR | €2,400 | ↗ |
| 02 Dec 2015 | A.M.A.M. Azienda Meridionale Acque Messina s.p.a.A.M.A.M. Azienda Meridionale Acque Messina s.p.a. was fined by the Garante for processing employees' biometric data without notification and without requesting prior verification. The authority found that the company breached data protection rules. | IT | Garante | GDPR | €34,000 | ↗ |
| 25 Nov 2015 | Video s.r.l.Video s.r.l. was fined by the Garante 25,000 EUR for registering 500 phone cards to five unaware individuals without their consent. The case concerns a breach of data protection rules and the absence of a lawful basis for processing personal data. | IT | Garante | GDPR | €25,000 | ↗ |
| 25 Nov 2015 | Ente Parco dei NebrodiEnte Parco dei Nebrodi was fined EUR 8,000 by the Garante for processing employees’ biometric data without prior notification. The authority found a breach of Article 37 of the Codice Privacy. | IT | Garante | GDPR | €8,000 | ↗ |