Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-20.7%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
20 Nov 2008Silvia BriggiSilvia Briggi, a financial consultant, was fined EUR 3,000 by the Garante. The authority found that clients were not provided with the required data protection information under Article 13 of the Italian Data Protection Code.ITGaranteGDPR€3,000
20 Nov 2008Banca di Roma S.p.A.Banca di Roma S.p.A. was fined EUR 30,000 by the Garante for unauthorized access to the Bank of Italy's risk center. The authority also found that the company failed to provide adequate information to data subjects, in breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€30,000
20 Nov 2008XYThe entity was fined by the Garante in the amount of 4,000 EUR for failing to respond to a request for information concerning unsolicited promotional emails. The case concerned non-compliance with data protection obligations.ITGaranteGDPR€4,000
20 Nov 2008G.F.A. marketing di Cavezzali PatriziaG.F.A. marketing di Cavezzali Patrizia was fined EUR 3,000 by the Italian Garante for failing to provide the required data protection notice to recipients of promotional faxes. The conduct breached Article 13 of the Italian Data Protection Code.ITGaranteGDPR€3,000
11 Dec 2008Centro di analisi e patologia clinica A. Agostini & L. Roussier Fusco & C. s.n.c.Centro di analisi e patologia clinica A. Agostini & L. Roussier Fusco & C. s.n.c. was fined for failing to notify the Garante of personal data processing activities within the required timeframe. The case concerned obligations under the Italian Data Protection Code.ITGaranteGDPR€10,000
11 Dec 2008Comune di PontenureComune di Pontenure was fined EUR 3,000 by the Garante for failing to provide the required data protection notice when sending a questionnaire about waste management tariffs. The authority found a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€3,000
11 Dec 2008Eutelia S.p.A.Eutelia S.p.A. was fined by the Garante for processing personal data without providing the required privacy notice. The breach occurred during the activation of an unsolicited telephone service and concerned Article 13 of the Italian Data Protection Code.ITGaranteGDPR€54,000
11 Dec 2008agenzia funebre floricoltura Rampura di Loi AlessandroThe funeral agency was fined by the Garante for providing clients with inadequate information. The authority found this to be a breach of data protection rules.ITGaranteGDPR€3,000
01 Apr 2009Casa di cura Sant'Antonio s.p.a.Casa di cura Sant'Antonio s.p.a. was fined by the Italian data protection authority, Garante. The case concerned processing personal data without the required notification under the Italian Data Protection Code.ITGaranteGDPR€10,000
29 Apr 2009Altea Servizi s.r.l.Altea Servizi s.r.l. was fined for processing personal data without providing the required information notice, in connection with sending promotional faxes without consent. The authority found a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000
29 Apr 2009Altea Servizi s.r.l.Altea Servizi s.r.l. was fined by the Garante 2,580 EUR for sending promotional faxes without obtaining specific and informed consent from consumers. The conduct breached the consumer code and data protection rules.ITGaranteGDPR€2,580
16 Dec 2009BonassisaLab s.r.l.BonassisaLab s.r.l. was fined by the Garante for failing to notify personal data processing activities. The breach concerned requirements under the Italian Data Protection Code.ITGaranteGDPR€10,000
16 Dec 2009Campolongo Hospital s.p.a.Campolongo Hospital s.p.a. was fined by the Garante in the amount of 20,000 EUR. The case concerned the processing of personal data without the required notification under the Italian Data Protection Code.ITGaranteGDPR€20,000
16 Dec 2009Casa di cura Villa Russo s.p.a.Casa di cura Villa Russo s.p.a. was fined by the Garante for processing personal data without proper notification. The authority found violations of articles 37 and 38 of the Italian Data Protection Code.ITGaranteGDPR€30,000
16 Dec 2009Polisportiva Eschilo 1 società sportiva dilettantistica a r.l.Polisportiva Eschilo 1 was fined EUR 10,000 by the Italian Garante. The case concerned processing biometric data without prior notification to the supervisory authority, which breached data protection rules.ITGaranteGDPR€10,000
16 Dec 2009Campolongo Hospital s.p.a.Campolongo Hospital s.p.a. was fined by the Garante for collecting personal data through its website without providing users with the required information notice. The authority found a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000
21 Jan 2010I.S.A. - Istituto Scolastico Ambrosiano s.n.c.I.S.A. - Istituto Scolastico Ambrosiano s.n.c. was fined EUR 6,000 by the Garante. The case concerned the collection of personal data through its website without providing users with adequate information required under Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000
21 Jan 2010Centro Chirurgico s.r.l.Centro Chirurgico s.r.l. was fined by the Italian data protection authority, Garante, in the amount of EUR 6,000. The case concerned the collection of personal data through a website contact form without providing the required information notice to data subjects, in breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000
21 Jan 2010Servizi sanitari s.r.l. – Istituto cardiovascolare CamogliServizi sanitari s.r.l. was fined by the Garante 10,000 EUR for violations related to the processing of personal data without the required notification. The case concerned obligations under the Italian Data Protection Code.ITGaranteGDPR€10,000
21 Jan 2010Casa di cura privata Di Lorenzo s.p.a.The private clinic Casa di cura privata Di Lorenzo s.p.a. was fined by the Garante for breaching data protection rules. The authority found that it failed to comply with notification obligations under the Italian Privacy Code.ITGaranteGDPR€20,000