Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-20.7%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
19 Mar 2015Trust Center A.E.The company was fined for failing to adequately inform data subjects about the processing of their creditworthiness data. The authority found a breach of Article 11 of the Greek data protection law.GRHDPAGDPR€3,000
20 May 2025TRUEBA SPORT S.L.TRUEBA SPORT S.L. was fined by the AEPD 2,000 EUR for sending an email to more than 300 recipients without hiding their email addresses. The authority found this breached data protection principles and failed to properly inform the affected individuals about data processing.ESAEPDGDPR€2,000
06 Oct 2014TROPIAUTO MOTRIL SATROPIAUTO MOTRIL SA was fined by the AEPD EUR 2,000 for sending unsolicited advertising emails after the recipient had exercised the right to opt out. The authority found a breach of Article 21 of the LSSI.ESAEPDePrivacy€2,000
25 Jan 2018Trivenet s.r.l.Trivenet s.r.l. was fined EUR 40,000 by the Garante. The authority found that the company retained call data longer than permitted under data protection rules.ITGaranteGDPR€40,000
01 Oct 2024TRIVE CREDIT SPAIN, S.L.TRIVE CREDIT SPAIN, S.L. failed to properly handle a data subject access request, which constitutes a breach of Article 15 GDPR. The AEPD imposed a fine for non-compliance with a prior resolution.ESAEPDGDPR€450,000
02 Mar 2017Trilogy s.r.l.Trilogy s.r.l. and Fastweb s.p.a. were fined for making unsolicited promotional calls to a phone number listed in the public opt-out register. The conduct breached data protection rules.ITGaranteGDPR€20,000
02 Mar 2017Trilogy s.r.l.Trilogy s.r.l. was fined EUR 48,000 by the Garante for making unsolicited marketing calls. The authority found that the company failed to provide the required information and did not obtain consent, in breach of the Italian Data Protection Code.ITGaranteGDPR€48,000
28 Jan 2021TRES-F-NETWORK, S.A.UTRES-F-NETWORK, S.A.U was fined by the AEPD 4,000 EUR for sending commercial SMS messages without the recipient's consent and without an existing commercial relationship. The authority found this conduct breached Article 21 of the LSSI.ESAEPDePrivacy€4,000
14 Apr 2011Trentino Trasporti Esercizio S.p.A.Trentino Trasporti Esercizio S.p.A. was fined by the Garante 25,000 EUR for collecting personal data through web forms without providing the required privacy notice. This constituted a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€25,000
19 Jan 2023TRC TRUCKS 2020, S.L.TRC TRUCKS 2020, S.L. was fined EUR 1,000 by the AEPD for failing to respond to a data subject’s request for erasure. The case concerns non-compliance with GDPR obligations relating to the exercise of data subject rights.ESAEPDGDPR€1,000
03 Apr 2014Travelplan Italia s.r.l.Travelplan Italia s.r.l. was fined EUR 16,000 by the Garante for sending unsolicited promotional faxes. The authority found that the company failed to provide the required information notice and did not obtain consent, in breach of the Italian Data Protection Code.ITGaranteGDPR€16,000
01 Jan 2016TRAVELGENIO, S.L.TRAVELGENIO, S.L. was fined by the AEPD in the amount of €1,500 for sending unsolicited commercial emails to a customer. The conduct breached Article 21.1 of the LSSI, which governs marketing communications without prior consent.ESAEPDePrivacy€1,500
11 Apr 2013Travel Factory srl in liquidazioneTravel Factory srl in liquidazione was fined EUR 22,000 by the Garante. The authority found that the company sent promotional faxes and collected data through web forms without providing the required privacy information notice.ITGaranteGDPR€22,000
22 Feb 2024Trasporto Passeggeri Emilia-Romagna S.p.A.The Garante fined Trasporto Passeggeri Emilia-Romagna S.p.A. 50,000 EUR for improper data processing and a lack of transparency in collecting consent for marketing purposes. The case concerned failures to properly inform data subjects and to meet consent requirements.ITGaranteGDPR€50,000
01 Feb 2018Transpe S.p.A.Transpe S.p.A. was fined by the Garante in the amount of 20,000 EUR for failing to notify the installation of a geolocation system on its vehicles. The authority treated this as a breach of data protection notification obligations.ITGaranteGDPR€20,000
21 Sept 2017Tra.n.sider S.p.A.Tra.n.sider S.p.A. was fined EUR 20,000 by the Italian Garante. The case concerned the failure to notify the installation of a geolocation system on company vehicles, breaching data protection notification requirements.ITGaranteGDPR€20,000
12 Nov 2021Transavia Airlines C.V.Transavia Airlines C.V. was fined by the AP 400,000 EUR for failing to implement appropriate security measures to protect personal data. The Article 32 GDPR breach led to unauthorized access to systems containing data of approximately 25 million individuals.NLAPGDPR€400,000
22 May 2024TRADING INTERNATIONAL TOURIST, S.L.TRADING INTERNATIONAL TOURIST, S.L. was fined 2,000 EUR by the AEPD for adding the complainant’s phone number to a WhatsApp group with more than 500 members without consent. The authority found a breach of Article 6(1) GDPR, which requires a lawful basis for processing personal data.ESAEPDGDPR€2,000
27 Oct 2014TRADEINN RETAIL SERVICES, S.L.TRADEINN RETAIL SERVICES, S.L. was fined EUR 60,000 by the AEPD for sending unsolicited commercial emails to a non-customer. The authority found this breached Article 21 of the LSSI on electronic marketing communications.ESAEPDePrivacy€60,000
02 Feb 2023TRACTAMENT D'AIGUES TEIA, S.L.TRACTAMENT D'AIGUES TEIA, S.L. was fined by the AEPD EUR 1,000 for failing to comply with a data subject's request to delete personal data. The case indicates non-compliance with GDPR obligations regarding the exercise of individual rights.ESAEPDGDPR€1,000