Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.5m
YoY volume
-23.1%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
02 Oct 2014Comune di Piana degli AlbanesiThe Municipality of Piana degli Albanesi was fined EUR 8,000 by the Garante for failing to appoint data processing officers. The authority also found that the required security program document had not been drafted, in breach of data protection rules.ITGaranteGDPR€8,000
02 Oct 2014San Petronio s.r.l.San Petronio s.r.l. was fined by the Garante for failing to appoint data processing officers and for providing inadequate information about video surveillance. The authority found that these practices breached data protection rules.ITGaranteGDPR€10,000
02 Oct 2014Addressvitt s.r.l.Addressvitt s.r.l. was fined by the Garante in the amount of EUR 130,000 for processing personal data without providing adequate information or obtaining consent. The case also involved data taken from public telephone directories and used without proper authorization.ITGaranteGDPR€130,000
23 Sept 2014XD SOFTWARE, S.L.XD SOFTWARE, S.L. was fined by the AEPD in the amount of 6,000 EUR for sending unsolicited commercial emails and messages without recipient consent. The conduct breached Article 21 of the LSSI and involved marketing communications sent without prior authorization.ESAEPDePrivacy€6,000
18 Sept 2014Europlan s.p.a.Europlan s.p.a. was fined by the Garante 2,400 EUR for processing personal data related to job applications without providing the required information notice. The case concerned the information duty under Article 13 of the Italian Data Protection Code.ITGaranteGDPR€2,400
18 Sept 2014History s.a.s.History s.a.s. was fined EUR 2,400 by the Italian data protection authority, Garante. The case concerned failure to provide the required information notice under Article 13 of the Italian Privacy Code when operating a video surveillance system.ITGaranteGDPR€2,400
18 Sept 2014Meridi s.r.l.Meridi s.r.l. was fined by the Garante 40,000 EUR for failing to provide adequate information about video surveillance and for not appointing data processing officers. The authority found a breach of data security measures.ITGaranteGDPR€40,000
18 Sept 2014Blue Dream Hotel s.r.l.Blue Dream Hotel s.r.l. was fined EUR 2,400 by the Garante for processing personal data related to job applications without providing the required privacy notice. The authority found a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€2,400
18 Sept 2014Fattoria di Casalbosco s.r.l.Fattoria di Casalbosco s.r.l. was fined 2,400 EUR by the Garante. The case concerned the collection of personal data through a website form without providing the required privacy notice, in breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€2,400
11 Sept 2014Alabarda Gestioni s.r.l.Alabarda Gestioni s.r.l. was fined by the Garante 2,400 EUR for processing personal data related to job applications without providing the required information notice. This breached Article 13 of the Italian Data Protection Code.ITGaranteGDPR€2,400
11 Sept 2014Happy Fit s.r.l.Happy Fit s.r.l. was fined by the Garante in the amount of EUR 16,400 for making an unsolicited promotional phone call. The company did not provide the required information or obtain consent, breaching data protection rules.ITGaranteGDPR€16,400
11 Sept 2014Villa dei Cedri s.p.a.Villa dei Cedri s.p.a. was fined by the Garante 2,400 EUR for failing to provide simplified information on the use of video surveillance systems. The authority found this to be a breach of privacy rules.ITGaranteGDPR€2,400
11 Sept 2014Liliana ImbrogianoLiliana Imbrogiano was fined by the Italian Garante for failing to provide adequate simplified information about the use of a video surveillance system. The authority found a breach of privacy regulations.ITGaranteGDPR€2,400
10 Sept 2014SAMPLE GESTION S.L.U.SAMPLE GESTION S.L.U. was fined by the AEPD in the amount of 1,100 EUR for sending unsolicited commercial SMS messages despite the recipient's request to opt out. This constituted a breach of Article 21.1 of the LSSI on unsolicited marketing communications.ESAEPDePrivacy€1,100
08 Sept 2014MUCHODESTINO, S.L.MUCHODESTINO, S.L. was fined by the AEPD €2,900 for sending unsolicited commercial emails. The conduct breached Article 21.1 of the LSSI, which restricts marketing communications without prior consent.ESAEPDePrivacy€2,900
03 Sept 2014Anonymised (HDPA 119/2014)A fine was imposed for the unlawful collection and processing of personal data, including email addresses, and for sending unsolicited marketing emails without subscriber consent. The case concerns breaches of lawful processing requirements and the need for prior consent for marketing communications.GRHDPAePrivacy€4,000
29 Aug 2014INTERNET OTT CHANNELS S.L.INTERNET OTT CHANNELS S.L. was fined by the AEPD in the amount of 1,400 EUR for sending unsolicited commercial emails to a user who had opted out. The authority found a breach of Article 21.1 of the LSSI.ESAEPDePrivacy€1,400
21 Aug 2014GROUPON SPAIN, S.L.U.Groupon Spain, S.L.U. was fined by the AEPD EUR 30,000 for sending unsolicited commercial emails to the complainant. The authority found that the conduct breached the Spanish LSSI requirements governing marketing communications.ESAEPDePrivacy€30,000
08 Aug 2014THE GOLDEN ATHENS SPAThe company processed personal data without consent, breaching the principles of lawfulness and data minimization under Greek law. HDPA imposed a fine of EUR 1,000.GRHDPAGDPR€1,000
08 Aug 2014RANNER ETAIREIA SYLLOGIS KAI DIACHEIRISIS PLIROFORION E.P.E.RANNER ETAIREIA SYLLOGIS KAI DIACHEIRISIS PLIROFORION E.P.E. was fined by the HDPA in the amount of EUR 3,000. The authority found processing of personal data without consent and the sending of unsolicited electronic messages for marketing purposes.GRHDPAGDPR€3,000