BULLETIN №082Last updated · 31 Jul 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.7m
- YoY volume
- -21.4%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 11 May 2017 | Bianalisi s.p.a.Bianalisi s.p.a. was fined by the Italian data protection authority, Garante, for failing to update its notification concerning the processing of genetic data. The obligation arose under the Italian Privacy Code and was intended to ensure proper disclosure of sensitive data processing. | IT | Garante | GDPR | €20,000 | ↗ |
| 11 May 2017 | Laboratorio Villafranca sncLaboratorio Villafranca snc was fined EUR 20,000 by the Italian data protection authority, Garante. The case concerned a failure to properly notify data processing activities under the Italian data protection code. | IT | Garante | GDPR | €20,000 | ↗ |
| 12 May 2017 | Strategy MentorThe fine was imposed for sending unsolicited marketing emails to a large number of recipients without prior consent. This conduct breached ePrivacy rules governing electronic marketing communications. | GR | HDPA | ePrivacy | €75,000 | ↗ |
| 12 May 2017 | RED UNIVERSAL DE MARKETING Y BOOKINGS ONLINE S.A.The entity sent unsolicited commercial emails. It continued sending them despite requests to delete the data, which breached electronic communications rules. | ES | AEPD | ePrivacy | €4,500 | ↗ |
| 18 May 2017 | Brennercom s.p.a.Brennercom s.p.a. was fined 10,000 EUR by the Garante for inadequate password security measures. The authority found that the company's practices breached data protection rules. | IT | Garante | GDPR | €10,000 | ↗ |
| 18 May 2017 | Terrecablate reti e servizi s.r.l.Terrecablate reti e servizi s.r.l. was fined by the Garante €10,000 for inadequate security measures. The violation concerned weak password authentication on servers storing telephone traffic data. | IT | Garante | GDPR | €10,000 | ↗ |
| 24 May 2017 | Call Solution s.r.l.Call Solution s.r.l. was fined EUR 40,000 by the Garante for making unsolicited promotional calls to numbers listed in the public opt-out registry. The conduct breached data protection rules and the requirements governing telephone marketing. | IT | Garante | GDPR | €40,000 | ↗ |
| 24 May 2017 | LAM Centro Biomedico s.r.l.LAM Centro Biomedico s.r.l. was fined by the Garante for failing to notify the corporate name change following a merger. The case involved processing sensitive personal data, which required informing the supervisory authority. | IT | Garante | GDPR | €8,000 | ↗ |
| 31 May 2017 | Unit Contact s.r.l.Unit Contact s.r.l. was fined €32,000 by the Italian authority Garante. The case concerned unsolicited promotional calls made without the required information notice and without obtaining consent, in breach of data protection rules. | IT | Garante | GDPR | €32,000 | ↗ |
| 31 May 2017 | LEAD CONVERSIÓN, S.L.LEAD CONVERSIÓN, S.L. was fined by the AEPD €2,000 for sending unsolicited commercial emails. The conduct breached rules on electronic communications and recipient consent. | ES | AEPD | ePrivacy | €2,000 | ↗ |
| 31 May 2017 | Unit Contact s.r.l.Unit Contact s.r.l. was fined by the Garante EUR 10,000 for making unsolicited promotional calls to a number listed in the public opt-out register. The conduct breached data protection rules and telephone marketing requirements. | IT | Garante | GDPR | €10,000 | ↗ |
| 06 Jun 2017 | ORANGE ESPAGNE, S.A.U.ORANGE ESPAGNE, S.A.U. was fined by the AEPD in the amount of 5,000 EUR for sending unsolicited advertising SMS messages to a complainant. The messages continued despite requests to stop such communications. | ES | AEPD | ePrivacy | €5,000 | ↗ |
| 08 Jun 2017 | THE PHONE HOUSE SPAIN, S.L.U.THE PHONE HOUSE SPAIN, S.L.U. was fined by the AEPD 2,500 EUR for sending commercial text messages without providing recipients with a simple and free way to object to the processing of their data for promotional purposes. The case concerned non-compliance with the LSSI rules on marketing communications. | ES | AEPD | ePrivacy | €2,500 | ↗ |
| 12 Jun 2017 | VODAFONE ESPAÑA, S.A.U.VODAFONE ESPAÑA, S.A.U. was fined by the AEPD 3,300 EUR for sending commercial communications to a former customer after a request for data cancellation. The authority also noted an allegation of sharing personal data with third parties without consent. | ES | AEPD | ePrivacy | €3,300 | ↗ |
| 14 Jun 2017 | DALMORRIS, S.L.DALMORRIS, S.L. was fined by the AEPD in the amount of 600 EUR for sending an unsolicited commercial email. The conduct breached Article 21.1 of the LSSI, which prohibits unwanted marketing communications. | ES | AEPD | ePrivacy | €600 | ↗ |
| 15 Jun 2017 | F2F Communications s.r.l.F2F Communications s.r.l. was fined by the Garante 16,000 EUR for making unsolicited promotional calls. The authority found that the required privacy notice was not provided and consent was not obtained, in breach of data protection rules. | IT | Garante | GDPR | €16,000 | ↗ |
| 15 Jun 2017 | Azienda Policlinico Umberto IAzienda Policlinico Umberto I was fined 10,000 EUR by the Garante. The authority found that the organization failed to designate data processing officers and provide them with the necessary instructions, breaching minimum security measures under the Italian Data Protection Code. | IT | Garante | GDPR | €10,000 | ↗ |
| 15 Jun 2017 | F2F Communications s.r.l.F2F Communications s.r.l. was fined by the Garante in the amount of 10,000 EUR for making unsolicited promotional calls to a number listed in the public opposition registry. The conduct breached data protection rules and the right to object to direct marketing. | IT | Garante | GDPR | €10,000 | ↗ |
| 22 Jun 2017 | Bolos & SynergatesThe law firm Bolos & Synergates was fined EUR 1,000 by the HDPA for unlawfully collecting and using personal data for direct marketing. The violation involved unsolicited electronic communications sent without prior consent from the data subjects. | GR | HDPA | ePrivacy | €1,000 | ↗ |
| 22 Jun 2017 | Adsalsa Italia Publicidad SucursalAdsalsa Italia Publicidad Sucursal was fined EUR 20,000 by the Garante. The authority found that personal data were processed without obtaining separate consent for each purpose, in breach of data protection rules. | IT | Garante | GDPR | €20,000 | ↗ |