Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21.4%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
15 Dec 2022Azienda Sanitaria provinciale di CataniaAzienda Sanitaria provinciale di Catania was fined 5,000 EUR by the Garante for unlawfully publishing personal data on its website concerning an employee's disciplinary and criminal proceedings. The authority found breaches of lawfulness, fairness, transparency, and data minimization principles.ITGaranteGDPR€5,000
05 Mar 2015Comune di AvolaComune di Avola was fined 10,000 EUR by the Garante for unlawfully publishing sensitive personal data revealing health conditions on its website. The case involved a breach of privacy rules and the unlawful processing of special-category data.ITGaranteGDPR€10,000
24 Sept 2015Layla SerenelliLayla Serenelli was fined 2,400 EUR by the Italian data protection authority, Garante. The case concerned inadequate simplified information about video surveillance, which breached data protection rules.ITGaranteGDPR€2,400
21 Dec 2011Edreams s.r.l.Edreams s.r.l. was fined €160,000 by the Garante for sending unsolicited commercial emails without obtaining the required consent. The case concerned breaches of data protection rules and direct marketing requirements.ITGaranteGDPR€160,000
10 Apr 2025Undici S.r.l.s.Undici S.r.l.s. was fined 8,000 EUR by the Garante for making unsolicited telemarketing calls. The authority found that the company did not verify the lawfulness of the data used for contact, breaching GDPR requirements on consent and data processing.ITGaranteGDPR€8,000
17 Apr 2026Io e te s.r.l.s.Io e te s.r.l.s. was fined EUR 2,000 by the Italian Garante. The case concerned improper use of a surveillance camera that enabled remote viewing through a mobile application without proper authorization.ITGaranteGDPR€2,000
22 Nov 2012La Villa s.p.a.La Villa s.p.a. was fined EUR 16,000 by the Garante. The company failed to update its notification of data processing activities after changing its registered office address, which breached privacy rules.ITGaranteGDPR€16,000
13 May 2021Brico Rida s.r.l.Brico Rida s.r.l. was fined by the Garante in the amount of 2,000 EUR for operating a video surveillance system without the required information notice to data subjects. The authority found a breach of Article 13 GDPR.ITGaranteGDPR€2,000
23 Mar 2023Paolo MeloniThe condominium administrator, Paolo Meloni, was fined for disclosing to all residents that a family had tested positive for COVID-19. The authority found this to be a breach of data protection rules.ITGaranteGDPR€2,000
04 Mar 2010Fastweb s.p.a.Fastweb s.p.a. was fined by the Garante for failing to provide adequate information to data subjects about the processing of their personal data. The case concerned a breach of the Italian Data Protection Code.ITGaranteGDPR€15,000
20 Oct 2022Occhiali24.it S.r.l.Occhiali24.it S.r.l. was fined by the Garante 20,000 EUR for sending unsolicited marketing communications without prior consent. The authority also found that the company failed to respond to data subject rights requests, indicating non-compliance with data protection obligations.ITGaranteGDPR€20,000
19 Jul 2012Biodiversity S.p.A.Biodiversity S.p.A. was fined by the Garante for failing to timely notify personal data processing activities related to molecular diagnostics. The obligation arose under the Italian Privacy Code.ITGaranteGDPR€10,000
27 Nov 2024E.ON Energia S.p.A.E.ON Energia S.p.A. was fined EUR 892,738 by the Garante for telemarketing-related violations. The authority cited repeated contact attempts and numerous communications sent without proper consent.ITGaranteGDPR€892,000
24 May 2017Call Solution s.r.l.Call Solution s.r.l. was fined EUR 40,000 by the Garante for making unsolicited promotional calls to numbers listed in the public opt-out registry. The conduct breached data protection rules and the requirements governing telephone marketing.ITGaranteGDPR€40,000
27 Apr 2023Roma CapitaleRoma Capitale was fined EUR 176,000 by the Garante for the unlawful processing and dissemination of personal health data relating to women who had terminated pregnancies. The sensitive information was displayed on crosses at a cemetery, creating a serious data protection breach.ITGaranteGDPR€176,000
10 Apr 2014Vienne s.r.l.Vienne s.r.l. was fined EUR 4,800 by the Italian data protection authority, Garante. The case concerned inadequate data protection notices for its video surveillance systems, in breach of the Italian Data Protection Code.ITGaranteGDPR€4,800
19 Mar 2019Enel Energia s.p.a.Enel Energia s.p.a. was fined by the Garante EUR 80,000 for failing to implement adequate security measures. This allowed unauthorized access and massive data downloads by a third-party company using credentials of former employees.ITGaranteGDPR€80,000
30 Oct 2014Giacomo Michele Maria GrassoGiacomo Michele Maria Grasso was fined for failing to provide data subjects with the required information about video surveillance at his establishment. The conduct breached Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400
22 Jan 2015Comune di TroinaComune di Troina was fined 4,000 EUR by the Garante for unlawfully disclosing personal data to the complainant’s sister without a legal basis. The authority found a breach of data protection rules.ITGaranteGDPR€4,000
11 Sept 2014Liliana ImbrogianoLiliana Imbrogiano was fined by the Italian Garante for failing to provide adequate simplified information about the use of a video surveillance system. The authority found a breach of privacy regulations.ITGaranteGDPR€2,400