Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
11 Jul 2013Naturmedia s.r.l.Naturmedia s.r.l. was fined EUR 2,400 by the Italian Garante. The case concerned the collection of personal data without providing the required information notice, in breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€2,400
19 Jul 2018Idroservice Italia s.r.l.Idroservice Italia s.r.l. was fined by the Garante for failing to respond to a request for information. The authority treated this as a breach of data protection rules.ITGaranteGDPR€20,000
21 Apr 2011Azienda Trasporti per l'Area Metropolitana S.p.A.Azienda Trasporti per l'Area Metropolitana S.p.A. was fined by the Garante €10,000 for failing to provide adequate data protection information on its website. The conduct breached Article 13 of the Italian Data Protection Code.ITGaranteGDPR€10,000
08 Jun 2023RCS Mediagroup S.p.a.RCS Mediagroup S.p.a. was fined EUR 40,660 by the Italian Garante. The case concerned the publication of unauthorized photographs of a private individual taken inside her home, which infringed her privacy rights.ITGaranteGDPR€40,660
04 Jul 2024Provvedimento del 4 luglio 2024 [10068075]The Garante imposed a EUR 400 fine on an individual for improperly installing a surveillance system. The cameras captured public street areas, which breached privacy rules.ITGaranteGDPR€400
30 Jan 2025Guru Nanak s.r.l.s.Guru Nanak s.r.l.s. was fined by the Garante EUR 1,000 for the non-compliant installation of a video surveillance system. The cameras captured areas beyond the company’s premises, creating a privacy and data protection breach.ITGaranteGDPR€1,000
26 Jul 2018Mercati s.p.aMercati s.p.a was fined 18,000 EUR by the Garante for failing to provide adequate information to users about data collection through a reservation form. The authority also found that the company used a video surveillance system without proper notice, in breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€18,000
04 Jun 2015Comune di Vico EquenseThe Municipality of Comune di Vico Equense was fined 20,000 EUR by the Garante. The authority found that the security program document was not updated and data processing officers were not appointed, which allowed unauthorized access to sensitive data.ITGaranteGDPR€20,000
06 Jul 2016Ordine degli Ingegneri della Provincia di CasertaOrdine degli Ingegneri della Provincia di Caserta was fined by the Garante for failing to respond to requests for information about the processing of employees’ sensitive personal data. The authority found this to be a breach of data protection rules.ITGaranteGDPR€4,000
27 Mar 2025Azienda sanitaria territoriale di MacerataAzienda sanitaria territoriale di Macerata was fined 5,000 EUR by the Garante for failing to comply with data access requests and for breaches of data protection rules. The case concerned the processing of health data and inadequate security measures.ITGaranteGDPR€5,000
26 May 2022Università Agraria di NettunoUniversità Agraria di Nettuno was fined 4,000 EUR by the Garante for breaching data protection principles. The authority found unlawful handling of personal data, including failures in lawfulness, fairness, transparency, and data minimization, involving information publicly accessible online since 2019.ITGaranteGDPR€4,000
13 Jun 2013Mafeco S.r.l.Mafeco S.r.l. was fined by the Garante in the amount of EUR 6,000 for failing to provide the required privacy notice when collecting personal data through website forms. The authority found this to be a breach of the Italian Data Protection Code.ITGaranteGDPR€6,000
12 Mar 2015Comune di BasicòComune di Basicò was fined for unlawfully publishing personal data revealing health information on its website. The case concerned a breach of data protection rules and the confidentiality of sensitive data.ITGaranteGDPR€10,000
25 Feb 2016Decatel s.r.l.Decatel s.r.l. was fined €10,000 by the Italian Garante. The case concerned the processing and retention of telephone traffic data without the required safeguards, including biometric recognition and strong authentication.ITGaranteGDPR€10,000
15 Jan 2015Comune di SidernoComune di Siderno was fined by the Garante for unlawfully publishing personal data revealing health conditions on its website. The conduct breached privacy and data protection rules.ITGaranteGDPR€10,000
10 Sept 2015Jackpot srlJackpot srl was fined for failing to respond to a request for information within the required timeframe. This constituted a breach of the Italian Privacy Code.ITGaranteGDPR€4,000
17 Oct 2013ICA Foods S.p.a.ICA Foods S.p.a. was fined by the Garante for installing a video surveillance system without providing employees with adequate information. The conduct breached privacy rules and the information obligations applicable to monitored persons.ITGaranteGDPR€2,400
09 May 2018Telefonika s.r.l.sTelefonika s.r.l.s was fined by the Italian data protection authority, Garante, in the amount of EUR 42,000. The sanction concerned numerous unsolicited promotional phone calls made without proper consent.ITGaranteGDPR€42,000
22 Dec 2016Comune di VergatoComune di Vergato was fined by the Garante for retaining surveillance footage beyond the permitted period. The case concerned non-compliance with data protection rules on storage limitation and video retention.ITGaranteGDPR€12,000
02 Apr 2015Comune di AccianoComune di Acciano was fined 4,000 EUR by the Garante for unlawfully processing personal data by keeping a council resolution online beyond the legally permitted period. The case concerned non-compliance with data protection rules on retention and publication limits.ITGaranteGDPR€4,000