BULLETIN №082Last updated · 30 Jul 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.7m
- YoY volume
- -21.2%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 11 Dec 2014 | Progetto Acqua Firenze s.r.l.Progetto Acqua Firenze s.r.l. was fined by the Garante for making an unsolicited promotional phone call. The conduct infringed the complainant's right to object as recorded in the public opt-out list. | IT | Garante | GDPR | €4,000 | ↗ |
| 23 Oct 2024 | Profi Rom Food SrlProfi Rom Food Srl was fined EUR 10,000 by ANSPDCP for violating GDPR provisions. The case concerns non-compliance with personal data protection requirements. | RO | ANSPDCP | GDPR | €10,000 | ↗ |
| 08 May 2013 | Profile 2100 srlProfile 2100 srl was fined EUR 10,400 by the Garante for sending unsolicited promotional communications by fax without valid consent. The case concerned a breach of data protection rules and direct marketing requirements. | IT | Garante | GDPR | €10,400 | ↗ |
| 20 Mar 2008 | Professioni didattiche moderne-P.D.M. s.r.l.P.D.M. s.r.l. was fined for failing to comply with a request to communicate the conformity of personal data processing. The authority found a breach of Article 164 of the Italian Data Protection Code. | IT | Garante | GDPR | €4,000 | ↗ |
| 11 Oct 2012 | Professional Pneus sccrlProfessional Pneus sccrl was fined EUR 10,400 by the Garante. The authority found that personal data were processed without giving users the option to refuse consent for marketing purposes, breaching transparency requirements. | IT | Garante | GDPR | €10,400 | ↗ |
| 17 Jan 2008 | Proemotion s.r.l.Proemotion s.r.l. was fined EUR 3,000 by the Italian data protection authority, Garante. The case concerned promotional activities for travel, vacations, weddings, and meetings, where personal data were collected through website forms without adequate prior information. | IT | Garante | GDPR | €3,000 | ↗ |
| 12 Mar 2021 | PRODUCCIONES ROCKNROCK, S.L.PRODUCCIONES ROCKNROCK, S.L. was fined EUR 2,000 by the AEPD for failing to provide information or obtain consent for cookies on its website. The authority found a breach of Article 22.2 of the LSSI. | ES | AEPD | ePrivacy | €2,000 | ↗ |
| 15 Mar 2022 | PRODESSPA DECORATIUS I PINTURES, S.L.PRODESSPA DECORATIUS I PINTURES, S.L. was fined by the AEPD 15,000 EUR for unlawfully processing personal data. The company included a former employee’s data in a credit information system without proper legal justification. | ES | AEPD | GDPR | €15,000 | ↗ |
| 18 Jul 2023 | Prodav s.r.l.Prodav s.r.l. was fined by the Garante 1,000 EUR for operating a surveillance camera without the required informational signage and safeguards. The case concerned non-compliance with data protection rules and the duty to inform individuals under surveillance. | IT | Garante | GDPR | €1,000 | ↗ |
| 16 Mar 2023 | PRODALVIN, S.L.PRODALVIN, S.L. was fined by the AEPD in the amount of 500 EUR for failing to properly inform individuals about the data controller and the address for exercising data subject rights in its video surveillance system. The authority found this to be a breach of Article 13 GDPR. | ES | AEPD | GDPR | €500 | ↗ |
| 01 Jan 2016 | PROCTER & GAMBLE ESPAÑAProcter & Gamble España was fined 20,000 EUR by the AEPD for continuing to send marketing emails to a complainant after unsubscribe requests. The authority found this conduct breached the LSSI rules on electronic communications. | ES | AEPD | ePrivacy | €20,000 | ↗ |
| 24 Jun 2025 | PROCONO SAPROCONO SA was fined EUR 300,000 by the AEPD for a data breach. The incident exposed customer data on the internet, including names, addresses, email addresses, and possibly bank account details. | ES | AEPD | GDPR | €300,000 | ↗ |
| 04 Aug 2020 | PrivatBo A.M.B.A. af 1993PrivatBo was reported to the police, and Datatilsynet recommended a fine of 150,000 DKK for inadequate data security measures. The incident led to the unintended disclosure of tenants' confidential information on USB drives. | DK | Datatilsynet | GDPR | €20,145 | ↗ |
| 01 Mar 2018 | Priolo Servizi S.c.p.A.Priolo Servizi S.c.p.A. was fined EUR 52,000 for the unlawful processing of biometric data of about 6,700 workers. The authority found that the company failed to properly notify the Garante and provided inadequate information to the data subjects. | IT | Garante | GDPR | €52,000 | ↗ |
| 26 Jul 2018 | Primo s.r.l.Primo s.r.l., a dental center, was fined by the Italian Garante in the amount of 10,000 EUR. The authority found inadequate security measures in the processing of patients’ personal data. | IT | Garante | GDPR | €10,000 | ↗ |
| 07 Feb 2013 | Primi sui Motori s.p.a.Primi sui Motori s.p.a. was fined €23,000 by the Garante for sending unsolicited promotional emails. The authority found that the company had not obtained prior, specific, and informed consent from the recipients. | IT | Garante | GDPR | €23,000 | ↗ |
| 16 Oct 2025 | PRIME TRANSACTION SAPRIME TRANSACTION SA was fined EUR 2,000 by ANSPDCP for a data security breach caused by a cyberattack. The incident led to unauthorized access to personal data of many individuals, including identification, contact, financial information, and copies of identity documents. | RO | ANSPDCP | GDPR | €2,000 | ↗ |
| 11 Feb 2025 | Primary Health Care of the Capital AreaThe Icelandic Supervisory Authority imposed an administrative fine on Primary Health Care of the Capital Area for unlawful processing related to the integration of medical record systems. The decision was finalized on 11 February 2025, and the fine amounted to 5,000,000 ISK. | IS | Icelandic Data Protection Authority | GDPR | €34,100 | ↗ |
| 21 Mar 2013 | Prima Armi S.r.l.Prima Armi S.r.l. was fined EUR 2,400 by the Garante for failing to provide adequate information about its video surveillance system. The authority found this to be a breach of data protection rules. | IT | Garante | GDPR | €2,400 | ↗ |
| 06 Jul 2006 | Pricewaterhouse Cooper Executive Search & SelectionPricewaterhouse Cooper Executive Search & Selection was fined 258 EUR by the Italian Garante. The case concerned inadequate information provided to candidates about the processing of their personal data in job advertisements, in breach of Art. 13 of the Codice Privacy. | IT | Garante | GDPR | €258 | ↗ |