Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.5m
YoY volume
-23.7%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
18 Mar 2025ALVEA SOLUCIONES TECNOLÓGICAS, S.L.ALVEA Soluciones Tecnológicas, S.L. was fined 35,000 EUR by the AEPD for improper handling of personal data. The authority cited sharing data without consent and failing to comply with data retention policies.ESAEPDGDPR€35,000
19 Dec 2024Altroconsumo Edizioni S.r.l.Altroconsumo Edizioni S.r.l. was fined by the Garante EUR 60,000 for sending unsolicited marketing emails despite unsubscribe requests. The authority also found deficiencies in obtaining valid consent and in the handling of personal data by third-party affiliates involved in the campaign.ITGaranteGDPR€60,000
15 Dec 2022Altroconsumo Edizioni S.r.lAltroconsumo Edizioni S.r.l was fined EUR 100,000 by the Garante for making unsolicited promotional calls without a proper legal basis. The authority also found that the company failed to provide adequate information and to obtain free and specific consent from data subjects.ITGaranteGDPR€100,000
05 Mar 2026Altex România S.R.L.The National Supervisory Authority for Personal Data Processing imposed fines totaling EUR 8,000 on Altex România S.R.L. for GDPR violations. The case followed complaints from data subjects.ROANSPDCPGDPR€8,000
18 Nov 2024Altex România S.A.ANSPDCP completed an investigation in October 2024 at Altex România S.A. and found violations of GDPR provisions. As a result, the company was fined EUR 20,000.ROANSPDCPGDPR€20,000
08 Mar 2023ALTERNATIVA CORELLANA INDEPENDIENTE (ACI)The organization published a court ruling on its blog without anonymizing the personal data of the individuals involved. The AEPD found a breach of the data minimization principle and imposed a 500 EUR fine.ESAEPDGDPR€500
08 Jun 2023ALTERNATIVA CORELLANA INDEPENDIENTE (ACI)ALTERNATIVA CORELLANA INDEPENDIENTE (ACI) was fined by the AEPD for failing to respond to information requests. The authority treated this as a breach of Article 58.1 of the GDPR.ESAEPDGDPR€4,000
19 Nov 2020ALTERNA OPERADOR INTEGRAL, S.L.ALTERNA OPERADOR INTEGRAL, S.L. was fined by the AEPD EUR 50,000 for changing an electricity provider without the customer's consent. The authority found that the processing lacked a valid legal basis under Article 6(1)(b) GDPR.ESAEPDGDPR€50,000
23 Dec 2010Altea Servizi s.r.l.Altea Servizi s.r.l. was fined by the Garante in the amount of 12,000 EUR. The authority found two violations for failing to provide timely information to data subjects as required by Article 13 of the Italian Data Protection Code.ITGaranteGDPR€12,000
29 Apr 2009Altea Servizi s.r.l.Altea Servizi s.r.l. was fined for processing personal data without providing the required information notice, in connection with sending promotional faxes without consent. The authority found a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000
29 Apr 2009Altea Servizi s.r.l.Altea Servizi s.r.l. was fined by the Garante 2,580 EUR for sending promotional faxes without obtaining specific and informed consent from consumers. The conduct breached the consumer code and data protection rules.ITGaranteGDPR€2,580
31 Mar 2022ALQUILER SEGURO, S.A.U.ALQUILER SEGURO, S.A.U. accessed personal data from Asnef for purposes other than those intended. The AEPD found this to be a breach of data protection rules and imposed a 70,000 EUR fine.ESAEPDGDPR€70,000
06 Oct 2022Alpha Exploration Co. Inc.Alpha Exploration Co. Inc. was fined by the Garante EUR 2,000,000 for violations related to data processing practices on its social media platform, Clubhouse. The case concerned irregularities in the way user data was processed.ITGaranteGDPR€2,000,000
29 Aug 2022Alpha Bank România SAAlpha Bank România SA was fined EUR 1,000 by ANSPDCP for a data security breach. A document was mistakenly sent to the wrong recipient via WhatsApp.ROANSPDCPGDPR€1,000
23 Apr 2024ALPHA BANK ROMANIA SAALPHA BANK ROMANIA SA was fined by ANSPDCP for a data security breach caused by improper management of a record system by an employee. This led to unauthorized disclosure and access to the personal data of certain clients.ROANSPDCPGDPR€2,000
06 Feb 2025ALPHA BANK ANONYMI ETAIREIAAlpha Bank was fined by the HDPA for failing to implement adequate security measures. This led to unauthorized access to the personal data of 6,176 employees after a system administrator role was not revoked following an internal transfer.GRHDPAGDPR€3,000
12 Jun 2015ALPHA BANKThe HDPA imposed a fine of EUR 100,000 on ALPHA BANK for the unlawful provision of data from the TIRESIAS databases. The case concerned a breach of rules on the processing and disclosure of personal data.GRHDPAGDPR€100,000
12 Jun 2015ALPHA BANKALPHA BANK was fined 30,000 EUR by the HDPA. The authority found that the bank failed to notify the location and facilities used for ICAP data processing.GRHDPAGDPR€30,000
23 Nov 2023Alpha BankAlpha Bank was fined for failing to satisfy the complainant’s request for access to personal data. The authority found breaches of GDPR Articles 15 and 5.GRHDPAGDPR€10,000
21 Aug 2018Alpha BankAlpha Bank was fined by the HDPA for failing to maintain and process accurate data of its debtors. The authority found that the bank’s conduct breached data protection requirements.GRHDPAGDPR€10,000