Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-20.7%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
24 May 2013RIZOS S.L.RIZOS S.L. was fined by the AEPD EUR 1,800 for sending commercial messages without providing information on how to opt out. This breached Article 21.2 of the LSSI, which requires a clear unsubscribe option for recipients.ESAEPDePrivacy€1,800
24 May 2013ARGATEL SOLUTIONS SLARGATEL SOLUTIONS SL was fined EUR 600 by the AEPD. The sanction concerned sending unsolicited premium SMS advertisements without recipient consent, in breach of Article 21.2 of the LSSI.ESAEPDePrivacy€600
03 Jun 2013BBVA SERVICIOS, S.A.BBVA SERVICIOS, S.A. was fined by the AEPD EUR 30,001 for sending unsolicited commercial emails without prior consent. This conduct breached Article 21.1 of the LSSI.ESAEPDePrivacy€30,001
04 Jun 2013UN LUGAR DIFERENTE. S.L.UN LUGAR DIFERENTE. S.L. was fined by the AEPD for sending unauthorized commercial SMS messages to a customer. The messages were sent despite the customer's prior request to opt out.ESAEPDePrivacy€600
11 Jun 2013MUNDO TOUR ESPAÑA, S.L.MUNDO TOUR ESPAÑA, S.L. was fined by the AEPD EUR 1,200 for sending commercial emails without the recipients’ consent. The conduct breached Article 21.2 of the LSSI on unsolicited commercial communications.ESAEPDePrivacy€1,200
13 Jun 2013Mafeco S.r.l.Mafeco S.r.l. was fined by the Garante in the amount of EUR 6,000 for failing to provide the required privacy notice when collecting personal data through website forms. The authority found this to be a breach of the Italian Data Protection Code.ITGaranteGDPR€6,000
13 Jun 2013BBJ s.r.l.BBJ s.r.l. was fined by the Garante EUR 64,000 for running SMS and email marketing campaigns without providing the required information to data subjects and without obtaining their consent. The authority found this to be a breach of data protection rules.ITGaranteGDPR€64,000
13 Jun 2013Vito GiacoiaVito Giacoia was fined EUR 2,400 by the Italian data protection authority, Garante. The case concerned the failure to provide the required privacy notice for a video surveillance system at the “Fratelli Venaria” club, in breach of the Italian Privacy Code.ITGaranteGDPR€2,400
13 Jun 2013Hotel Villa Las Tronas s.r.l.Hotel Villa Las Tronas s.r.l. was fined EUR 2,400 by the Garante for failing to provide simplified information about video surveillance. The authority found this to be a breach of data protection rules.ITGaranteGDPR€2,400
20 Jun 2013ASL di SalernoASL di Salerno was fined EUR 18,000 by the Garante for failing to implement minimum security measures. The authority cited, among other issues, the absence of designated data processing managers and the use of common, outdated passwords for electronic systems.ITGaranteGDPR€18,000
20 Jun 2013Terme di Montecatini s.p.a.Terme di Montecatini s.p.a. was fined by the Garante in the amount of 10,000 EUR. The company processed personal and sensitive data of national health service patients undergoing spa treatments without obtaining consent, in breach of Article 23 of the Italian Data Protection Code.ITGaranteGDPR€10,000
20 Jun 2013Terme di Agnano s.p.a.Terme di Agnano s.p.a. was fined EUR 16,000 by the Garante for processing personal and sensitive data of individuals undergoing thermal treatments without the required notice and consent. The authority also found that personal data of job applicants were processed without providing the mandatory information notice.ITGaranteGDPR€16,000
27 Jun 2013REY2MOND S.n.c. di Reymond Luciano & C.REY2MOND S.n.c. was fined EUR 4,800 by the Garante for collecting personal data through online forms without providing the required privacy notice. The authority found this to be a breach of the Italian Data Protection Code.ITGaranteGDPR€4,800
27 Jun 2013New Company di Scattolin LorisNew Company di Scattolin Loris was fined EUR 6,400 by the Garante for making unsolicited promotional phone calls without proper consent. The conduct breached Articles 13 and 130 of the Italian Data Protection Code.ITGaranteGDPR€6,400
27 Jun 2013Comune di PadovaComune di Padova was fined by the Garante 10,000 EUR for unlawfully publishing personal data online beyond the legally permitted period. The authority found this to be a breach of data protection rules.ITGaranteGDPR€10,000
04 Jul 2013OASI AZZURRA di Intravaia Lorenzo & C. S.a.s.OASI AZZURRA di Intravaia Lorenzo & C. S.a.s. was fined EUR 2,400 by the Italian data protection authority, Garante. The case concerned inadequate privacy notices for the website contact form and the video surveillance system.ITGaranteGDPR€2,400
04 Jul 2013Global ResearchGlobal Research was fined EUR 12,800 by the Garante for sending unsolicited promotional faxes without the required information and consent. The authority found this to be a breach of data protection rules.ITGaranteGDPR€12,800
04 Jul 2013Parco Faunistico Le Cornelle S.r.l.Parco Faunistico Le Cornelle S.r.l. was fined by the Garante EUR 2,400 for collecting personal data through a website contact form without providing the required privacy notice. The authority found a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€2,400
04 Jul 2013Comune di CiampinoThe Municipality of Ciampino was fined EUR 4,000 by the Garante for publishing on its website a list containing personal data of individuals eligible to serve as polling station scrutineers. The publication was made without an appropriate legal basis.ITGaranteGDPR€4,000
11 Jul 2013Naturmedia s.r.l.Naturmedia s.r.l. was fined EUR 2,400 by the Italian Garante. The case concerned the collection of personal data without providing the required information notice, in breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€2,400