Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21.1%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
13 Jul 2006Comune di NapoliThe Municipality of Naples was fined by the Garante in the amount of 2,582 EUR. The sanction resulted from failing to provide requested information and documents, which constituted a breach of data protection rules.ITGaranteGDPR€2,582
05 May 2016S.I.S Società Italiana Scommesse s.r.lS.I.S Società Italiana Scommesse s.r.l was fined EUR 2,400 by the Garante. The authority found that the company failed to provide adequate simplified information about its video surveillance system, in breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400
18 Dec 2025Provvedimento del 18 dicembre 2025 [10210431]A professional sent a communication containing personal data to an institutional email address, which breached data protection rules. The Garante imposed a fine of EUR 1,000.ITGaranteGDPR€1,000
31 Jan 2019Istituto di Istruzione Superiore C.Istituto di Istruzione Superiore C. was fined EUR 4,000 by the Garante for publishing sensitive personal data, including health information, on its website. The conduct breached data protection requirements.ITGaranteGDPR€4,000
21 Jun 2018Azienda Semplice s.r.l.Azienda Semplice s.r.l. was fined by the Garante 16,000 EUR for unlawful processing of personal data used to place promotional calls to a private residential phone number without consent. The case concerns a lack of a lawful basis for marketing contact and a breach of data protection rules.ITGaranteGDPR€16,000
05 Jul 2017Klik s.r.l.Klik s.r.l. was fined EUR 30,000 by the Garante for retaining telephone traffic data for more than 24 months. The authority found this to be a breach of data protection rules.ITGaranteGDPR€30,000
12 Feb 2015Comune di JesiComune di Jesi was fined for unlawfully publishing personal data related to a public competition on its website without a legislative or regulatory basis. The authority found that this breached data protection rules.ITGaranteGDPR€4,000
14 Sept 2006De.Mo. s.r.l.De.Mo. s.r.l. was fined 3,000 EUR by the Garante for failing to provide the required information to data subjects under Article 13 of the Italian Data Protection Code. The breach occurred in connection with the company’s marketing activities.ITGaranteGDPR€3,000
28 Sept 2023Asl Napoli 3 SudThe Garante fined Asl Napoli 3 Sud EUR 30,000 for inadequate security measures that led to a data breach. The incident caused limited service disruption.ITGaranteGDPR€30,000
08 Jul 2015Perez s.r.l.Perez s.r.l. was fined by the Garante for failing to provide the required privacy notice to users whose personal data were collected through its website. This constituted a breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400
05 May 2011Idrablu SpaIdrablu Spa was fined by the Garante in the amount of EUR 20,000 for failing to respond to requests for information about the transfer of personal data to another company. The authority treated this as a breach of data protection rules.ITGaranteGDPR€20,000
01 Jun 2016Azienda per i servizi sanitari n. 2 IsontinaAzienda per i servizi sanitari n. 2 Isontina was fined for unlawfully publishing personal data, including negative performance evaluations, of an individual on its institutional website. The conduct breached data protection rules.ITGaranteGDPR€4,000
20 Nov 2014Aimon s.r.l.Aimon s.r.l. was fined EUR 32,000 by the Garante for sharing customers’ personal data with various companies without proper notice and consent. The authority found that the conduct breached privacy rules.ITGaranteGDPR€32,000
11 Apr 2013Travel Factory srl in liquidazioneTravel Factory srl in liquidazione was fined EUR 22,000 by the Garante. The authority found that the company sent promotional faxes and collected data through web forms without providing the required privacy information notice.ITGaranteGDPR€22,000
30 Oct 2014sig.ra Wu LiliThe Garante imposed a EUR 2,400 fine on sig.ra Wu Lili for failing to provide adequate information to data subjects about video surveillance at a gaming venue. The authority found a breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400
13 Mar 2025Interflora Italia S.p.A.Interflora Italia S.p.A. was fined EUR 40,000 by the Garante for sending promotional SMS messages without providing an opt-out option. The case indicates a breach of GDPR requirements for marketing communications and data subject rights.ITGaranteGDPR€40,000
22 Feb 2018Technical Hunter s.r.l.Technical Hunter s.r.l. was fined by the Garante 20,000 EUR for processing job applicants’ personal data without proper compliance with data protection rules. The data was collected and used through the company website, job portals, and social networks.ITGaranteGDPR€20,000
23 Oct 2014S.A.B. Alberghi di Baveno s.p.a.S.A.B. Alberghi di Baveno s.p.a. was fined by the Garante in the amount of €2,400 for processing personal data connected with job applications without providing the required information notice. The case concerned the information duty under Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400
27 Apr 2023Checcoro di Nigro FrancescoThe company was fined EUR 2,000 by the Italian data protection authority, Garante. The sanction concerned the use of surveillance cameras without appropriate informational signage, in breach of GDPR requirements.ITGaranteGDPR€2,000
07 Jul 2011F.B. Aurum di Ferrero Wilma e Barathier Sergio s.n.c.F.B. Aurum di Ferrero Wilma e Barathier Sergio s.n.c. was fined by the Garante 10,000 EUR for operating a video surveillance system without providing the required notice to data subjects. This constituted a breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€10,000