Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
17 Jul 2024Selectra S.p.A.Selectra S.p.A. was fined EUR 80,000 by the Garante for unlawfully accessing and retaining a former employee's email account after the end of the collaboration. The authority found that the company's conduct breached data protection rules.ITGaranteGDPR€80,000
08 Apr 2022SECURITAS DIRECT ESPAÑA, S.A.SECURITAS DIRECT ESPAÑA, S.A. was fined by the AEPD 50,000 EUR for disclosing a customer's personal information to another client via email. The authority found a breach of confidentiality and insufficient security measures under the GDPR.ESAEPDGDPR€50,000
30 Dec 2022SECURITAS DIREC ESPAÑA, S.A.SECURITAS DIREC ESPAÑA, S.A. was fined by the AEPD 50,000 EUR for failing to provide complete access to personal data logs linked to an alarm system. The case concerned an inadequate response to a data subject access request.ESAEPDGDPR€50,000
31 Jan 2024Sectorul 1 al Municipiului BucureștiThe National Supervisory Authority for Personal Data Processing fined Sectorul 1 of Bucharest Municipality for GDPR violations. The entity failed to demonstrate compliance with a remediation measure, which formed the basis for the sanction.ROANSPDCPGDPR€2,010
06 Mar 2024Sectorul 1 al Municipiului BucureștiSectorul 1 of Bucharest was fined 159,000 RON by ANSPDCP for failing to comply with a remediation measure. The authority had required the requested information to be provided within 10 days, but the obligation was not met.ROANSPDCPGDPR€31,988
06 Jun 2018SECCHI Elettroservice S.r.l.SECCHI Elettroservice S.r.l. was fined by the Garante 8,000 EUR for failing to properly notify employees about the use of a geolocation system on company vehicles. The authority found a breach of data protection rules.ITGaranteGDPR€8,000
08 Oct 2024SEAT, S.A.SEAT, S.A. was fined by the AEPD €20,000 for using cookies on its website without obtaining user consent. The authority found this conduct to be in breach of the LSSI.ESAEPDePrivacy€20,000
02 Dec 2015Sea srlSea srl was fined EUR 2,400 by the Italian Garante. The case concerned the installation of a video surveillance system without providing the required privacy notice, in breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400
01 Jan 2013SEARCHTASK S.L.U.SEARCHTASK S.L.U. was fined EUR 30,001 by the AEPD for sending unsolicited commercial emails. The conduct breached Article 21 of the LSSI, which governs marketing communications without prior consent.ESAEPDePrivacy€30,001
01 Jan 2013SEARCH TASK, S.L.U.SEARCH TASK, S.L.U. was fined by the AEPD EUR 30,001 for sending commercial emails without prior consent from recipients. The conduct breached Article 21 of the LSSI on electronic marketing communications.ESAEPDePrivacy€30,001
01 Jan 2013SEARCH TASK S.L.U.SEARCH TASK S.L.U. was fined EUR 40,000 by the AEPD for sending commercial communications without the required consent. The case concerned a breach of Article 21 of the LSSI and unlawful use of personal data for marketing purposes.ESAEPDePrivacy€40,000
28 Jan 2022SEAN SERIOS S.L.SEAN SERIOS S.L. was fined by the AEPD 12,000 EUR for publishing personal data of candidates from a selection process on its website without a legal basis. The authority found a breach of GDPR Article 6(1).ESAEPDGDPR€12,000
03 Aug 2023Sdam s.r.l.Sdam s.r.l. was fined by the Italian data protection authority, Garante, in the amount of 5,000 EUR. The case concerned the sending of promotional emails without proper consent, which constitutes a GDPR violation.ITGaranteGDPR€5,000
09 Aug 2022SC Wabag Water Services SRLIn June 2022, ANSPDCP completed an investigation at SC Wabag Water Services SRL and found a breach of GDPR provisions. As a result, a fine of EUR 1,000 was imposed.ROANSPDCPGDPR€1,000
15 Dec 2022Scuola Statale Secondaria di I^ grado “Bianco-Pascoli”, di Fasano (BR)The school was fined by the Garante 3,000 EUR for violations in the processing of personal data, including minors' health information. The authority found that the processing lacked a proper legal basis and sufficient transparency.ITGaranteGDPR€3,000
20 Mar 2008Scuola College di Cagno Abbrescia s.r.l.Scuola College di Cagno Abbrescia s.r.l. was fined EUR 3,000 by the Garante. The case concerned the failure to provide access to personal data requested by the parents of a minor, in breach of the Italian data protection code.ITGaranteGDPR€3,000
09 Jul 2025SC Tremend Software Consulting SRLSC Tremend Software Consulting SRL was fined by ANSPDCP for GDPR violations. The penalty amounted to EUR 3,000.ROANSPDCPGDPR€3,000
25 Apr 2025SC Travel Planner SRLSC Travel Planner SRL was fined EUR 5,000 by ANSPDCP for breaching Article 15 of the GDPR. The case concerned the improper handling of a data subject access request.ROANSPDCPGDPR€5,000
25 Apr 2025SC Travel Planner SRLSC Travel Planner SRL was fined EUR 1,000 by ANSPDCP for breaching Article 33 of the GDPR. The case concerned failure to notify a personal data breach to the supervisory authority.ROANSPDCPGDPR€1,000
31 Jan 2026SC Tensa Art Design SAThe Romanian data protection authority fined SC Tensa Art Design SA, operator of the Lensa brand, EUR 20,000 under the GDPR. The sanction followed the company’s failure to respond to the authority’s investigative request concerning cookie tracking and behavioral advertising on its website.ROAutoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter PersonalGDPR€20,000