Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
02 Apr 2015Provincia di TriesteProvincia di Trieste was fined for publishing personal data on its institutional website without a legal basis. This breached Article 19 of the Italian Data Protection Code.ITGaranteGDPR€4,000
16 Apr 2015Web performance s.r.l.Web performance s.r.l. was fined by the Garante for collecting personal data through website forms without proper consent. The authority found this to be a breach of data protection rules.ITGaranteGDPR€10,000
16 Apr 2015avv. Pasquale GiordanoAvv. Pasquale Giordano was fined EUR 4,000 by the Italian data protection authority, Garante. The sanction concerned the disclosure of a client's personal data to the opposing party's lawyer in a divorce proceeding without the client's consent, in breach of Article 23 of the Italian Privacy Code.ITGaranteGDPR€4,000
16 Apr 2015Media Lab Italia s.r.l.Media Lab Italia s.r.l. was fined by the Garante EUR 10,000 for processing personal data through a website form without obtaining separate consent for different purposes. The purposes included promotional communications and market research.ITGaranteGDPR€10,000
23 Apr 2015Soprintendenza per i Beni Architettonici e Paesaggistici di Venezia e LagunaThe Soprintendenza per i Beni Architettonici e Paesaggistici di Venezia e Laguna was fined 4,000 EUR by the Garante. The authority found that personal data had been unlawfully communicated to private entities without an appropriate legal basis, in breach of Article 19 of the Italian Data Protection Code.ITGaranteGDPR€4,000
23 Apr 2015Novelli DonataNovelli Donata was fined EUR 20,000 by the Garante. The case concerned the activation of eight phone cards in the names of four individuals without their knowledge, which breached data protection rules.ITGaranteGDPR€20,000
23 Apr 2015Compagnia dei Telefoni s.r.l.Compagnia dei Telefoni s.r.l. was fined by the Garante 80,000 EUR for conducting telemarketing through automated calls without prior informed consent. The company also made promotional calls while concealing the caller's identity.ITGaranteGDPR€80,000
23 Apr 2015Comune di AostaComune di Aosta was fined for publishing personal data that revealed health information on its website. The conduct breached privacy and personal data protection rules.ITGaranteGDPR€10,000
23 Apr 2015Comune di CastelplanioComune di Castelplanio was fined by the Garante for publishing personal data, including names, on its online notice board. This conduct breached privacy regulations.ITGaranteGDPR€4,000
04 May 2015CitibankThe HDPA imposed a fine of EUR 8,000 on Citibank. The case concerned the bank’s failure to satisfy the complainant’s right of access to personal data.GRHDPAGDPR€8,000
04 May 2015CitibankThe HDPA imposed a fine of EUR 8,000 on Citibank for unlawful processing of the complainant’s creditworthiness data. The case concerned a breach of the rules governing lawful processing of personal data.GRHDPAGDPR€8,000
07 May 2015Burger Joint/Maria Galioni I.K.E.The company was fined for unlawfully operating a video surveillance system in the workplace. The authority found a privacy violation because employees and customers were monitored without proper justification.GRHDPAGDPR€3,000
07 May 2015Pelamatti GiacomoPelamatti Giacomo was fined by the Garante EUR 10,000 for activating phone cards in the names of individuals without their knowledge. The authority found this to be a breach of data protection rules.ITGaranteGDPR€10,000
07 May 2015Ordinanza ingiunzione - 7 maggio 2015 [4226113]The Garante imposed a EUR 2,400 fine on the company for providing an inadequate privacy notice on its website contact form. The breach concerned the requirements of the Italian Data Protection Code.ITGaranteGDPR€2,400
07 May 2015Patru Dumitra DanielaPatru Dumitra Daniela was fined by the Garante in the amount of EUR 2,400 for operating a video surveillance system at the bar “New Liberty” without providing adequate simplified information. The authority treated this as a breach of privacy rules.ITGaranteGDPR€2,400
07 May 2015Provincia di FrosinoneProvincia di Frosinone was fined for failing to update the Security Policy Document (DPS) for several years. The authority found this to be a breach of security measures required under the Italian Data Protection Code.ITGaranteGDPR€10,000
07 May 2015Nappo Nicola JolandaNappo Nicola Jolanda was fined EUR 45,000 by the Garante for activating 37 phone cards in the names of 15 individuals without their knowledge. The conduct breached data protection rules.ITGaranteGDPR€45,000
07 May 2015Zampino Giuseppe GiovanniZampino Viaggi, operated by Zampino Giuseppe Giovanni, was fined 2,400 EUR by the Garante. The authority found that personal data were collected through the website without the required privacy notice, in breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€2,400
07 May 2015Comune di GenovaThe Municipality of Genoa was fined by the Garante for unlawfully keeping personal and judicial data on its institutional website beyond the legally permitted period. The authority found this to be a breach of data protection rules.ITGaranteGDPR€4,000
07 May 2015Lucchese FrancoLucchese Franco was fined by the Garante EUR 12,000 for retaining surveillance footage beyond the legally prescribed period. The case concerned non-compliance with data protection retention rules.ITGaranteGDPR€12,000