BULLETIN №081Last updated · 28 Jul 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.7m
- YoY volume
- -20.7%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 16 Nov 2017 | Terre Etrusche e di Maremma Credito CooperativoThe Garante fined Terre Etrusche e di Maremma Credito Cooperativo EUR 10,000 for inadequate password security measures. The case concerned non-compliance with data protection requirements. | IT | Garante | GDPR | €10,000 | ↗ |
| 18 May 2017 | Terrecablate reti e servizi s.r.l.Terrecablate reti e servizi s.r.l. was fined by the Garante €10,000 for inadequate security measures. The violation concerned weak password authentication on servers storing telephone traffic data. | IT | Garante | GDPR | €10,000 | ↗ |
| 15 Oct 2024 | TERRA, BRASA Y MAR, S.L.TERRA, BRASA Y MAR, S.L. was fined 500 EUR by the AEPD for adding the complainant's phone number to a WhatsApp group without consent. The authority treated this as a breach of data protection rules. | ES | AEPD | GDPR | €500 | ↗ |
| 21 Feb 2013 | Terme Rosapepe s.a.s.Terme Rosapepe s.a.s. was fined EUR 4,800 by the Garante. The authority found that the company collected personal data through a website registration form without providing the required privacy notice, in breach of Article 13 of the Italian Data Protection Code. | IT | Garante | GDPR | €4,800 | ↗ |
| 21 Feb 2013 | Terme Forlenza di Forlenza Ferruccio & C. s.n.c.Terme Forlenza was fined EUR 4,800 by the Italian Garante. The case concerned the failure to provide the required privacy notice when collecting personal data through the hotel booking form on its website. | IT | Garante | GDPR | €4,800 | ↗ |
| 20 Jun 2013 | Terme di Montecatini s.p.a.Terme di Montecatini s.p.a. was fined by the Garante in the amount of 10,000 EUR. The company processed personal and sensitive data of national health service patients undergoing spa treatments without obtaining consent, in breach of Article 23 of the Italian Data Protection Code. | IT | Garante | GDPR | €10,000 | ↗ |
| 20 Jun 2013 | Terme di Agnano s.p.a.Terme di Agnano s.p.a. was fined EUR 16,000 by the Garante for processing personal and sensitive data of individuals undergoing thermal treatments without the required notice and consent. The authority also found that personal data of job applicants were processed without providing the mandatory information notice. | IT | Garante | GDPR | €16,000 | ↗ |
| 02 Jun 2021 | TENTEA ENERGY, S.L.TENTEA ENERGY, S.L. was fined by the AEPD EUR 5,000 for using personal data and a signature without consent in connection with energy service contracts. The authority also found a refusal to provide access to personal data in relation to a cancellation request. | ES | AEPD | GDPR | €5,000 | ↗ |
| 04 Apr 2023 | Tensa Art Design SRLThe company was fined for sending commercial messages to individuals by phone and email despite their requests to stop contact. The case concerned failure to respect opt-out requests against further marketing communication. | RO | ANSPDCP | GDPR | €3,000 | ↗ |
| 10 Apr 2025 | Tensa Art Design S.A.Tensa Art Design S.A. was fined by ANSPDCP EUR 10,000 for GDPR violations related to its website www.lensa.ro. The case concerned non-compliant processing of personal data under data protection requirements. | RO | ANSPDCP | GDPR | €10,000 | ↗ |
| 01 Mar 2025 | Tensa Art Design S.A.The Romanian data protection authority investigated Tensa Art Design S.A., operator of lensa.ro, in March 2025. It found GDPR violations involving direct marketing without valid consent and improper handling of data subject access and erasure requests. Two fines totaling 15,000 EUR were imposed. | RO | ANSPDCP | GDPR | €10,000 | ↗ |
| 10 Apr 2025 | Tensa Art Design S.A.Tensa Art Design S.A. was fined by ANSPDCP EUR 5,000 for GDPR violations related to its website www.lensa.ro. The case concerned non-compliant processing of personal data under data protection requirements. | RO | ANSPDCP | GDPR | €5,000 | ↗ |
| 05 Feb 2026 | Tensa Art Design S.AThe National Supervisory Authority for Personal Data Processing completed an investigation in January 2026 at Tensa Art Design S.A. It found violations of GDPR provisions and imposed a fine of EUR 20,000. | RO | ANSPDCP | GDPR | €20,000 | ↗ |
| 01 Feb 2023 | Tensa Art Design SAANSPDCP completed an investigation in January 2023 at Tensa Art Design SA and found violations of GDPR provisions. As a result, the company was fined EUR 1,000. | RO | ANSPDCP | GDPR | €1,000 | ↗ |
| 24 Apr 2023 | Tensa Art Design SAThe National Supervisory Authority completed an investigation in March 2023 at Tensa Art Design SA and found violations of GDPR provisions. As a result, the company was fined 1,000 EUR. | RO | ANSPDCP | GDPR | €1,000 | ↗ |
| 22 May 2014 | Tenacta Group s.p.a.Tenacta Group s.p.a. was fined €10,000 by the Garante for making an unsolicited promotional phone call. The conduct breached the complainant’s right to object, as recorded in the public opt-out list. | IT | Garante | GDPR | €10,000 | ↗ |
| 03 Jul 2014 | Tenacta Group s.p.a.Tenacta Group s.p.a. was fined 10,000 EUR by the Garante for making unsolicited promotional phone calls. The company failed to consult the public opposition register, thereby violating the subscriber's right to object. | IT | Garante | GDPR | €10,000 | ↗ |
| 10 Oct 2023 | TemuThe European Commission imposed a EUR 200 million fine on Temu under the Digital Services Act. The authority said Temu failed to identify, analyse, and assess systemic risks linked to illegal products offered on its platform. | EU | European Commission | DSA | €200,000,000 | ↗ |
| 27 May 2021 | Tempocasa S.p.A.Tempocasa S.p.A. was fined €120,000 by the Italian Garante. The authority found that the company made unsolicited promotional calls without the required consent, breaching GDPR rules on data processing and consent. | IT | Garante | GDPR | €120,000 | ↗ |
| 24 Jan 2014 | TEMAR Y ASOCIADOS S.L.TEMAR Y ASOCIADOS S.L. was fined by the AEPD in the amount of EUR 600 for sending unsolicited commercial emails. The conduct breached Article 21 of the LSSI, which prohibits marketing communications without prior consent. | ES | AEPD | ePrivacy | €600 | ↗ |