BULLETIN №082Last updated · 30 Jul 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.7m
- YoY volume
- -21.2%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 29 Apr 2021 | Azienda Ospedaliero Universitaria PisanaAzienda Ospedaliero Universitaria Pisana was fined by the Garante EUR 4,000 for breaches of the principles of lawfulness, fairness, transparency, integrity, and confidentiality in data processing. The case concerned improper handling of personal data under GDPR requirements. | IT | Garante | GDPR | €4,000 | ↗ |
| 23 Jan 2008 | La Dolce Vita s.r.l.La Dolce Vita s.r.l. was fined by the Garante for failing to respond to a request for access to personal data. The authority treated this as a breach of the Italian data protection rules. | IT | Garante | GDPR | €4,000 | ↗ |
| 10 Nov 2016 | Marketing & Comunicazione s.r.l.Marketing & Comunicazione s.r.l. was fined for making an unauthorized advertising phone call. The company also failed to respond to information requests from the Garante. | IT | Garante | GDPR | €4,000 | ↗ |
| 23 Apr 2021 | FRIGORIFICA BOTANA, S.L.FRIGORIFICA BOTANA, S.L. was fined by the AEPD EUR 4,000 for disproportionate audio/video recording in a meeting room without a justified cause or proper notice. The authority found this breached data protection principles. | ES | AEPD | GDPR | €4,000 | ↗ |
| 19 Dec 2024 | Comune di LevantoThe Garante fined Comune di Levanto 4,000 EUR for data protection breaches linked to video surveillance systems. The authority found violations of the principles of lawfulness, fairness, transparency, and data minimization. | IT | Garante | GDPR | €4,000 | ↗ |
| 04 Feb 2016 | A.S.L. Roma 2A.S.L. Roma 2 was fined EUR 4,000 by the Garante for failing to respond to requests for information concerning the processing of personal data relating to a minor's civil disability. The authority found this to be a breach of Article 164 of the Italian Privacy Code. | IT | Garante | GDPR | €4,000 | ↗ |
| 16 Oct 2025 | SOCIETE EXERCANT UNE ACTIVITE D'EDITION DE REVUES ET PERIODIQUES (procédure simplifiée)CNIL imposed an administrative fine of EUR 4,000 on SOCIETE EXERCANT UNE ACTIVITE D'EDITION DE REVUES ET PERIODIQUES and issued an injunction. The case concerns a breach of regulatory obligations in the data protection area. | FR | CNIL | GDPR | €4,000 | ↗ |
| 06 Jul 2016 | Ordine degli Ingegneri della Provincia di CasertaOrdine degli Ingegneri della Provincia di Caserta was fined by the Garante for failing to respond to requests for information about the processing of employees’ sensitive personal data. The authority found this to be a breach of data protection rules. | IT | Garante | GDPR | €4,000 | ↗ |
| 26 May 2022 | Università Agraria di NettunoUniversità Agraria di Nettuno was fined 4,000 EUR by the Garante for breaching data protection principles. The authority found unlawful handling of personal data, including failures in lawfulness, fairness, transparency, and data minimization, involving information publicly accessible online since 2019. | IT | Garante | GDPR | €4,000 | ↗ |
| 10 Sept 2015 | Jackpot srlJackpot srl was fined for failing to respond to a request for information within the required timeframe. This constituted a breach of the Italian Privacy Code. | IT | Garante | GDPR | €4,000 | ↗ |
| 02 Apr 2015 | Comune di AccianoComune di Acciano was fined 4,000 EUR by the Garante for unlawfully processing personal data by keeping a council resolution online beyond the legally permitted period. The case concerned non-compliance with data protection rules on retention and publication limits. | IT | Garante | GDPR | €4,000 | ↗ |
| 24 Oct 2013 | Stadek sncStadek snc was fined EUR 4,000 by the Garante for non-compliant video surveillance signage. The case concerns a breach of data protection requirements related to informing individuals about surveillance. | IT | Garante | GDPR | €4,000 | ↗ |
| 12 Mar 2015 | Azienda Ospedaliera Bolognini di SeriateAzienda Ospedaliera Bolognini di Seriate was fined by the Garante for sending medical reports to an incorrect address without the patient's consent. The case involved a breach of data protection rules and the confidentiality of medical information. | IT | Garante | GDPR | €4,000 | ↗ |
| 28 Feb 2019 | Comune di MisterbiancoComune di Misterbianco was fined by the Garante 4,000 EUR for unlawful processing of personal data. The breach involved publishing personal information on its website beyond the legally permitted period. | IT | Garante | GDPR | €4,000 | ↗ |
| 14 Dec 2017 | Rotondi AndreaAndrea Rotondi was fined for the improper handling of banking documents that were found by a private citizen. Banca Nazionale del Lavoro was held jointly liable for the violation. | IT | Garante | GDPR | €4,000 | ↗ |
| 16 Nov 2017 | Ricciotti CorradoRicciotti Corrado was fined by the Garante 4,000 EUR for violations related to personal data protection. The case involved improper handling of banking documentation. | IT | Garante | GDPR | €4,000 | ↗ |
| 23 Oct 2025 | Azzurra Sport s.r.l.Azzurra Sport s.r.l. was fined EUR 4,000 by the Garante for unlawful processing of personal data through a video surveillance system. The breach concerned the absence of appropriate informational signage for individuals subject to the monitoring. | IT | Garante | GDPR | €4,000 | ↗ |
| 22 Jul 2025 | KVIKU SPAIN, S.L.KVIKU SPAIN, S.L. was fined by the AEPD in the amount of EUR 4,000 for sending unsolicited messages and processing personal data without a legal basis. The authority found a breach of Article 6(1) GDPR. | ES | AEPD | GDPR | €4,000 | ↗ |
| 12 Sept 2023 | LEADDESK, S.L.LEADDESK, S.L. was fined by the AEPD for failing to provide access to information required under Article 58(1) of the GDPR. The conduct was treated as an obstruction of the data protection authority’s investigative functions. | ES | AEPD | GDPR | €4,000 | ↗ |
| 15 Mar 2023 | Partidul Uniunea Salvați RomâniaThe fine was imposed for a data security breach involving the loss of confidentiality and integrity of data stored on a server. The incident resulted from a phishing attack that compromised the system. | RO | ANSPDCP | GDPR | €4,000 | ↗ |