BULLETIN №084Last updated · 12 Aug 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.5m
- YoY volume
- -23.7%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 11 Dec 2024 | Granit Bostad Beritsholm ABGranit Bostad Beritsholm AB was fined by IMY for conducting video surveillance without a lawful basis. The authority also found that required information was not provided to affected individuals, constituting a GDPR breach. | SE | IMY | GDPR | €17,366 | ↗ |
| 12 Dec 2024 | SOCIETE EXERCANT UNE ACTIVITE DE COMPARATEUR D'AUTO-ECOLES (procédure simplifiée)The CNIL imposed an administrative fine of EUR 10,000 on SOCIETE EXERCANT UNE ACTIVITE DE COMPARATEUR D'AUTO-ECOLES. The case was handled under a simplified procedure. | FR | CNIL | GDPR | €10,000 | ↗ |
| 12 Dec 2024 | Wind Tre S.p.A.Wind Tre S.p.A. was fined €347,520 by the Garante for violations related to processing personal data for promotional purposes and for inadequate technical and organizational measures. The case concerned telemarketing activities and the protection of the data involved. | IT | Garante | GDPR | €347,000 | ↗ |
| 12 Dec 2024 | Agenzia delle Dogane e dei MonopoliAgenzia delle Dogane e dei Monopoli was fined by the Garante in the amount of EUR 40,000 for violations related to data processing. The case concerned non-compliance with Art. 2-ter of the Italian Data Protection Code. | IT | Garante | GDPR | €40,000 | ↗ |
| 12 Dec 2024 | BREOGAN AUTOLUX, S.L.BREOGAN AUTOLUX, S.L. was fined EUR 10,000 by the AEPD for sending unsolicited SMS advertisements without prior consent from recipients. The authority also found that the messages did not provide an opt-out mechanism, in breach of the LSSI. | ES | AEPD | ePrivacy | €10,000 | ↗ |
| 12 Dec 2024 | SOCIETE DE COMMERCE DE DETAIL D'HABILLEMENT (procédure simplifiée)The CNIL imposed an administrative fine of EUR 3,000 on SOCIETE DE COMMERCE DE DETAIL D'HABILLEMENT under a simplified procedure. The case concerned a confirmed regulatory breach, with no further details provided in the record. | FR | CNIL | GDPR | €3,000 | ↗ |
| 12 Dec 2024 | Breathe Services LtdBreathe Services Ltd, a debt advice company based in Bolton, was investigated by the ICO following complaints about unsolicited calls to potentially vulnerable individuals. The ICO found that the company spoofed outbound numbers and made 4,376,037 unsolicited direct marketing calls to numbers registered with the Telephone Preference Service, generating multiple complaints. | GB | ICO | GDPR | €206,000 | ↗ |
| 12 Dec 2024 | Azienda Sanitaria dell’Alto AdigeThe Garante imposed a fine on Azienda Sanitaria dell’Alto Adige for breaches of data protection rules. The case involved inadequate data handling and insufficient security measures. | IT | Garante | GDPR | €5,000 | ↗ |
| 12 Dec 2024 | SOCIETE EDITANT DES LOGICIELS OUTILS DE DEVELOPPEMENT ET DE LANGAGES (procédure simplifiée)The CNIL imposed an administrative fine of EUR 20,000 on SOCIETE EDITANT DES LOGICIELS OUTILS DE DEVELOPPEMENT ET DE LANGAGES and issued an injunction. The case was handled under a simplified procedure. | FR | CNIL | GDPR | €20,000 | ↗ |
| 12 Dec 2024 | Money Bubble Ltd MPNBetween October and November 2022, the company made 168,852 spam calls, leading to further complaints to the ICO and TPS. Money Bubble Ltd MPN did not provide evidence that the called individuals had consented to receive calls. The ICO imposed a £120,000 fine. | GB | ICO | GDPR | €145,000 | ↗ |
| 12 Dec 2024 | SOCIETE EXPLOITANT DES PORTAILS INTERNET (procédure simplifiée)The CNIL imposed an administrative fine of EUR 20,000 on SOCIETE EXPLOITANT DES PORTAILS INTERNET and issued an injunction. The case was handled under a simplified procedure. | FR | CNIL | GDPR | €20,000 | ↗ |
| 12 Dec 2024 | Ambiente 2000 S.r.l.Ambiente 2000 S.r.l. was fined EUR 20,000 by the Garante. The authority found that the company required employees to disclose passwords to their work email and files containing personal data, in breach of the GDPR. | IT | Garante | GDPR | €20,000 | ↗ |
| 12 Dec 2024 | Meta Platforms Ireland LimitedThe Irish DPC imposed a fine of EUR 251,000,000 on Meta Platforms Ireland Limited in connection with inquiries IN-18-10-1 and IN-18-11-1. The matter is currently pending appeal. | IE | DPC | GDPR | €251,000,000 | ↗ |
| 12 Dec 2024 | DEUX SOCIETES EXERCANT DES ACTIVITES D'AGENCES DE PRESSE (procédure simplifiée)The CNIL imposed an administrative fine of EUR 5,000 on DEUX SOCIETES EXERCANT DES ACTIVITES D'AGENCES DE PRESSE. Available information indicates a simplified procedure and two fines of EUR 5,000 each. | FR | CNIL | GDPR | €5,000 | ↗ |
| 12 Dec 2024 | Anonymisiert (DSB 2024-0.796.258)The individual unlawfully processed intimate photos by transferring and storing them without the data subject’s consent. This breached GDPR principles of lawfulness, purpose limitation, and data minimization. | AT | DSB | GDPR | €2,000 | ↗ |
| 12 Dec 2024 | SOCIETE DE COMMERCE DE DETAIL D'HABILLEMENT (procédure simplifiée)CNIL imposed an administrative fine of EUR 5,000 on SOCIETE DE COMMERCE DE DETAIL D'HABILLEMENT under a simplified procedure. The case concerns a breach of rules addressed by the supervisory authority. | FR | CNIL | GDPR | €5,000 | ↗ |
| 12 Dec 2024 | Start To Fly S.r.l.Start To Fly S.r.l. was fined by the Garante 10,000 EUR for sending unsolicited emails and SMS messages to a complainant. The complainant was unable to unsubscribe from the mailing list despite multiple attempts. | IT | Garante | GDPR | €10,000 | ↗ |
| 12 Dec 2024 | Comune di Corte FrancaComune di Corte Franca was fined EUR 6,000 for publishing personal data online without a proper legal basis. The authority found breaches of GDPR Articles 5 and 6 and Article 2-ter of the Italian Privacy Code. | IT | Garante | GDPR | €6,000 | ↗ |
| 12 Dec 2024 | Provvedimento del 12 dicembre 2024 [10095836]A doctor was fined EUR 20,000 for breaching core data protection principles. The authority cited failures relating to lawfulness, fairness, transparency, purpose limitation, data minimization, and integrity and confidentiality. | IT | Garante | GDPR | €20,000 | ↗ |
| 12 Dec 2024 | Istituto Comprensivo Statale CalenzanoIstituto Comprensivo Statale Calenzano was fined EUR 1,000 by the Garante for breaching data protection principles. The case concerned the processing of personal data without meeting the requirements of lawfulness, fairness, and transparency. | IT | Garante | GDPR | €1,000 | ↗ |