BULLETIN №081Last updated · 28 Jul 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.7m
- YoY volume
- -20.7%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 21 Mar 2013 | dr. Attilio Vincenzo PignatelliDr. Attilio Vincenzo Pignatelli was fined by the Garante EUR 2,400 for operating a video surveillance system without the required simplified notice and for failing to comply with data retention rules. The case concerned non-compliance with information duties and retention periods for recorded footage. | IT | Garante | GDPR | €2,400 | ↗ |
| 21 Mar 2013 | Compu & Games srlCompu & Games srl was fined EUR 54,000 by the Garante. The company registered numerous phone cards to unaware third parties without providing the required data protection information. | IT | Garante | GDPR | €54,000 | ↗ |
| 21 Mar 2013 | HU YunteHU Yunte was fined by the Garante for failing to provide the required data protection notice in connection with a video surveillance system. The breach concerned Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €2,400 | ↗ |
| 21 Mar 2013 | Giant s.r.l.Giant s.r.l. was fined 114,000 EUR by the Garante for the unauthorized registration of numerous phone cards to third parties without their knowledge. The authority found this conduct to be in breach of data protection rules. | IT | Garante | GDPR | €114,000 | ↗ |
| 22 Mar 2013 | PUBLIACTIVOS COMUNICACION Y MARKETING, S.L.The entity was fined by the AEPD for sending unsolicited commercial emails. This conduct breached Article 21.1 of the LSSI, which prohibits marketing communications without prior consent. | ES | AEPD | ePrivacy | €600 | ↗ |
| 26 Mar 2013 | GRUPORUM RESPUESTA DIRECTA, S.L.GRUPORUM RESPUESTA DIRECTA, S.L. was fined by the AEPD for sending unsolicited commercial emails without prior consent from recipients. The conduct breached Article 21.1 of the LSSI, which requires prior consent for direct marketing by email. | ES | AEPD | ePrivacy | €1,800 | ↗ |
| 04 Apr 2013 | Gustavo CapizziGustavo Capizzi was fined €6,000 by the Garante for failing to provide the required data protection notice. The breach concerned a video surveillance system at the association “La Petit Nuit”. | IT | Garante | GDPR | €6,000 | ↗ |
| 04 Apr 2013 | Kinesi s.r.l.Kinesi s.r.l. was fined by the Garante in the amount of 2,400 EUR for collecting personal data through a website form without providing the required privacy notice. This constituted a breach of Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €2,400 | ↗ |
| 04 Apr 2013 | Stifter Josef KGStifter Josef KG was fined 2,400 EUR by the Garante. The company failed to provide the required data protection notice to customers when collecting personal data during online orders. | IT | Garante | GDPR | €2,400 | ↗ |
| 04 Apr 2013 | Stifter Josef KG.Stifter Josef KG. was fined by the Garante for failing to provide the required data protection notice to customers when collecting personal data during e-commerce transactions. This constituted a breach of Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €2,400 | ↗ |
| 04 Apr 2013 | Discotape di Filippin Angelo & C. sncDiscotape di Filippin Angelo & C. snc was fined EUR 12,000 by the Garante. The case concerned registering numerous phone cards to an individual without their knowledge and failing to provide the required information notice. | IT | Garante | GDPR | €12,000 | ↗ |
| 10 Apr 2013 | VIRTUALIZZA S.L.VIRTUALIZZA S.L. was fined EUR 600 by the AEPD for sending unsolicited commercial emails without proper consent. The authority also found that the company failed to provide an effective opt-out mechanism, in breach of Article 21 of the LSSI. | ES | AEPD | ePrivacy | €600 | ↗ |
| 11 Apr 2013 | I.S.P. Italia srlI.S.P. Italia srl was fined by the Garante for sending unsolicited promotional faxes without the required information notice and without obtaining recipients’ consent. The authority found that the conduct breached rules on prior consent and information duties. | IT | Garante | GDPR | €32,000 | ↗ |
| 11 Apr 2013 | Diners Club Italia s.r.l.Diners Club Italia s.r.l. was fined €40,000 by the Garante for breaches of data protection rules. The authority found that the company failed to designate data processing officers and did not update the security program document. | IT | Garante | GDPR | €40,000 | ↗ |
| 11 Apr 2013 | Errebian S.p.aErrebian S.p.a was fined EUR 6,000 by the Italian Garante. The case concerned the failure to provide the required data protection notice on website forms, in breach of Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €6,000 | ↗ |
| 11 Apr 2013 | Zeno VincoZeno Vinco was fined by the Garante for registering SIM cards to 36 individuals without their knowledge. The case involved a breach of data protection rules. | IT | Garante | GDPR | €108,000 | ↗ |
| 11 Apr 2013 | PLD srlPLD srl was fined €100,000 by the Italian Garante. The company registered numerous phone cards to unaware third parties without providing the required data protection information. | IT | Garante | GDPR | €100,000 | ↗ |
| 11 Apr 2013 | Kihria S.r.l.Kihria S.r.l. was fined 2,400 EUR by the Garante for failing to provide adequate information about data collection through a website contact form. The authority found a breach of Article 13 of the Italian Privacy Code. | IT | Garante | GDPR | €2,400 | ↗ |
| 11 Apr 2013 | Travel Factory srl in liquidazioneTravel Factory srl in liquidazione was fined EUR 22,000 by the Garante. The authority found that the company sent promotional faxes and collected data through web forms without providing the required privacy information notice. | IT | Garante | GDPR | €22,000 | ↗ |
| 11 Apr 2013 | Casa di cura La Quiete srlCasa di cura La Quiete srl was fined by the Garante for failing to notify data processing activities related to patients’ laboratory tests. The data could reveal infectious diseases, which required notification under the Italian data protection code. | IT | Garante | GDPR | €40,000 | ↗ |