Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
02 Jul 2020Comune di ManduriaComune di Manduria was fined by the Garante in the amount of 2,000 EUR for breaching data protection principles, including lawfulness, fairness, and transparency. The authority found that personal data had been improperly disseminated through journalistic outlets.ITGaranteGDPR€2,000
16 Jun 2022Federazione Italiana NuotoFederazione Italiana Nuoto was fined EUR 2,000 by the Italian supervisory authority, Garante. The case concerned a failure to respond to a data access request under Article 15 of the GDPR.ITGaranteGDPR€2,000
16 Nov 2023BEGIN RESTAURANTES, S.L.BEGIN RESTAURANTES, S.L. was fined by the AEPD EUR 2,000 for deficiencies in its cookie policy. The authority found the use of non-essential third-party cookies without proper consent and insufficient information in the main page banner.ESAEPDePrivacy€2,000
15 Mar 2022JUNTA ADMINISTRADORA A.A.A.The entity was fined for displaying complainants’ personal data on a public notice board. This breached data protection rules and created a risk of unauthorized disclosure of personal information.ESAEPDGDPR€2,000
22 Apr 2024S.C. Tensa Art Design S.A.In April 2024, ANSPDCP completed an investigation into S.C. Tensa Art Design S.A., the operator of www.lensa.ro. The authority found GDPR violations and imposed a fine of EUR 2,000.ROANSPDCPGDPR€2,000
19 Sept 2022Vodafone România SAVodafone România SA was fined by ANSPDCP in the amount of EUR 2,000 for violating GDPR provisions. The case concerns non-compliance with personal data protection requirements.ROANSPDCPGDPR€2,000
06 Feb 2023ROMBOC COMUNICACIONESROMBOC COMUNICACIONES was fined by the AEPD in the amount of 2,000 EUR for making misleading advertising calls without explicit consent from recipients. The case indicates a breach of data protection and direct marketing rules.ESAEPDGDPR€2,000
25 Sept 2020THE WASHPOINT S.L.THE WASHPOINT S.L. was fined by the AEPD 2,000 EUR for lacking a privacy policy and for having an improper cookie policy on its website. The breach concerned Article 13 of the GDPR and Article 22.2 of the LSSI.ESAEPDePrivacy€2,000
28 Jun 2022YEGUADA SENILLOSA, S.L.Yeguada Senillosa, S.L. was fined by the AEPD 2,000 EUR for failing to comply with cookie requirements on its website. The authority found the use of non-essential third-party cookies without proper consent and adequate information to users.ESAEPDePrivacy€2,000
04 May 2023RENEDO JOHNSEY, S.L.RENEDO JOHNSEY, S.L. was fined by the AEPD €2,000 for not having a privacy policy on its website. The authority treated this as a breach of Article 13 of the GDPR.ESAEPDGDPR€2,000
26 May 2022Kalemci MusaThe sole proprietorship “Turkish City” was fined 2,000 EUR by the Garante. The authority found that its video surveillance system did not meet the information requirements under GDPR Article 13.ITGaranteGDPR€2,000
13 May 2024INDEPENDENTS DE VALLROMANESThe political party Independents de Vallromanes was fined by the AEPD €2,000. The case concerned posting images of a court judgment on social media that included the complainant’s first and last name.ESAEPDGDPR€2,000
10 Mar 2022Briza Land S.R.L.The National Supervisory Authority completed an investigation on 24.02.2022 at Briza Land S.R.L. and found a violation of GDPR provisions. As a result, a fine of EUR 2,000 was imposed.ROANSPDCPGDPR€2,000
01 Jun 2021RADIO POPULAR S.A.RADIO POPULAR S.A. was fined EUR 2,000 by the AEPD for not providing users with the option to reject cookies on its website. The authority found this practice non-compliant with data protection rules and consent requirements.ESAEPDePrivacy€2,000
13 Feb 2023FUNDACIÓN PRIVADA UNIVERSITARIA EADAThe entity used a participant’s image in a promotional activity without obtaining consent. This constituted a breach of data protection rules and resulted in a fine imposed by the AEPD.ESAEPDGDPR€2,000
26 Feb 2026Istituto Tecnico Statale L. 80014050357Istituto Tecnico Statale was fined by the Garante for breaches of data protection principles, including lawfulness, fairness, transparency, and data minimization. The school improperly published personal data on its website.ITGaranteGDPR€2,000
30 Jun 2022Continental Automotive Romania SRLThe company was fined for failing to implement adequate technical and organizational measures and for not periodically assessing those measures in relation to employee video processing. The breach concerned the security of video processing and the prevention of unauthorized processing.ROANSPDCPGDPR€2,000
01 Jan 2017A DOS RUEDAS EN LA RED, SLA DOS RUEDAS EN LA RED, SL was fined EUR 2,200 by the AEPD for sending unsolicited commercial emails. The conduct breached Article 21 of the LSSI, which restricts marketing communications without prior consent.ESAEPDePrivacy€2,200
21 Jun 2024ADMINISTRACIONES BENIPON, S.L.ADMINISTRACIONES BENIPON, S.L. was fined 2,200 EUR by the AEPD for failing to provide access to information as required under Article 58(1) GDPR. The case concerns non-compliance with the supervisory authority’s information access requirements.ESAEPDGDPR€2,200
01 Jan 2015ARGATEL SOLUTIONS S.L.ARGATEL SOLUTIONS S.L. was fined by the AEPD €2,200 for sending unsolicited SMS messages. The authority found that the company had not obtained prior consent and did not provide an unsubscribe option.ESAEPDePrivacy€2,200