Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-20.7%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
22 Jun 2023Autostrade per l’Italia S.p.A.Autostrade per l’Italia S.p.A. was fined by the Garante EUR 1,000,000 for violations linked to an application that processed users’ personal data. The app was used to handle refunds of highway ticket costs for delays caused by construction works.ITGaranteGDPR€1,000,000
16 Nov 2023Autostrade per l’Italia S.p.A.Autostrade per l’Italia S.p.A. was fined by the Garante 100,000 EUR for failing to respond to employees' requests for access and rectification of personal data linked to annual severance pay calculations. The case concerns a failure to meet obligations for handling data subject rights requests.ITGaranteGDPR€100,000
08 Jul 2015Autotrasporti Multipli Arcese SpaAutotrasporti Multipli Arcese Spa was fined 12,000 EUR by the Garante for retaining surveillance footage longer than the period allowed under the authority's guidelines. The case concerns non-compliance with data protection rules on video retention.ITGaranteGDPR€12,000
28 Jun 2018Autotrasporti Viviani s.r.l.Autotrasporti Viviani s.r.l. was fined by the Garante 8,000 EUR for failing to comply with notification obligations related to the geolocation system installed on its transport vehicles. The case concerned missing required notices regarding the processing of data.ITGaranteGDPR€8,000
15 Feb 2018Auto Uno s.r.l.Auto Uno s.r.l. was fined EUR 30,000 by the Italian Garante. The case concerned improper management of a video surveillance system, including excessive retention of recorded images.ITGaranteGDPR€30,000
22 Jun 2016Autoverde 07 s.r.l.Autoverde 07 s.r.l. was fined by the Garante in the amount of 2,400 EUR for processing customers’ personal data through its website without providing adequate information. The authority found this to be a breach of data protection rules.ITGaranteGDPR€2,400
08 Apr 2022AVALIA ARAGÓN SOCIEDAD DE GARANTÍA RECÍPROCAAVALIA ARAGÓN SOCIEDAD DE GARANTÍA RECÍPROCA was fined by the AEPD for failing to implement robust access controls. The weakness enabled attackers to encrypt files and demand a ransom, indicating significant gaps in technical and organizational safeguards.ESAEPDGDPR€40,000
14 Apr 2021Avalos Consultores, S.L.Avalos Consultores, S.L. was fined by the AEPD 4,000 EUR for transferring personal data to another company without the data subject's consent. The authority found this breached Article 6 of the GDPR.ESAEPDGDPR€4,000
25 Jun 2024AvanzaAvanza Bank AB was fined by IMY for failing to implement appropriate technical and organizational measures to ensure an adequate level of security for personal data. This resulted in unauthorized transfers of personal data to Meta.SEIMYGDPR€1,336,000
21 Sept 2020AVATA HISPANIA, S.L.AVATA HISPANIA, S.L. was fined by the AEPD 5,000 EUR for using personal data after the contract had ended. The company acted as a data processor, and continued use of the data was inconsistent with its obligations in that role.ESAEPDGDPR€5,000
03 Dec 2025AVATEL TELECOM, S.A.AVATEL TELECOM, S.A. was fined 500,000 EUR by the AEPD for unauthorized duplication of SIM cards and their fraudulent use. The case concerns breaches of data protection principles and controls over access to telecommunications services.ESAEPDGDPR€500,000
06 Mar 2025AVENTURA EN TRAMPOLINES S.L.AVENTURA EN TRAMPOLINES S.L. was fined 900 EUR by the AEPD for failing to comply with data protection authority resolutions. The case concerned Article 58(2) GDPR, which requires cooperation with the supervisory authority.ESAEPDGDPR€900
02 Oct 2023AVENTURA EN TRAMPOLINES, S.L.Aventura en Trampolines, S.L. was fined by the AEPD EUR 2,000 for breaching GDPR Article 7. The company required consent for image use without allowing users to refuse specific terms, which did not meet data protection requirements.ESAEPDGDPR€2,000
19 Feb 2018AVIS ALQUILE UN COCHE S.A.AVIS ALQUILE UN COCHE S.A. was fined by the AEPD 10,000 EUR for improper handling of personal data. This led to the wrongful publication of an individual's details in the Official State Gazette as the responsible party for a traffic violation they did not commit.ESAEPDGDPR€10,000
25 Jan 2018Avis Budget Italia s.p.a.Avis Budget Italia s.p.a. was fined EUR 60,000 by the Garante for improper installation and notification of geolocation devices on its vehicle fleet. The authority found that the company did not comply with data protection requirements.ITGaranteGDPR€60,000
26 Jun 2026AVIZIERO S.R.LAVIZIERO S.R.L was fined RON 5,000 by ANSPDCP for allowing the storage of information and access to information stored on user equipment when users accessed its website. The authority found this conduct to be in breach of ePrivacy requirements.ROANSPDCPePrivacylei 5,000
22 Jan 2024AVOCAT (procédure simplifiée)The CNIL imposed an administrative fine of EUR 500 on AVOCAT (procédure simplifiée). The record indicates a regulatory breach, but no further details are provided.FRCNILGDPR€500
05 Feb 2026AVOCAT (procédure simplifiée)The CNIL imposed a fine of EUR 1,000 on AVOCAT (procédure simplifiée) in connection with the liquidation of astreinte. The case concerns enforcement of a prior obligation and the amount due for failure to comply on time.FRCNILGDPR€1,000
15 Jan 2024AVOCAT (procédure simplifiée)The CNIL imposed an administrative fine of EUR 5,000 on AVOCAT (procédure simplifiée). The case concerned a confirmed regulatory breach, with no further details provided in the record.FRCNILGDPR€5,000
17 Jul 2025AVOCAT (procédure simplifiée)The CNIL imposed an administrative fine of 3,000 EUR on AVOCAT and issued an injunction. The case was handled under a simplified procedure.FRCNILGDPR€3,000