Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21.4%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
05 May 2011Idrablu SpaIdrablu Spa was fined by the Garante in the amount of EUR 20,000 for failing to respond to requests for information about the transfer of personal data to another company. The authority treated this as a breach of data protection rules.ITGaranteGDPR€20,000
01 Jun 2016Azienda per i servizi sanitari n. 2 IsontinaAzienda per i servizi sanitari n. 2 Isontina was fined for unlawfully publishing personal data, including negative performance evaluations, of an individual on its institutional website. The conduct breached data protection rules.ITGaranteGDPR€4,000
20 Nov 2014Aimon s.r.l.Aimon s.r.l. was fined EUR 32,000 by the Garante for sharing customers’ personal data with various companies without proper notice and consent. The authority found that the conduct breached privacy rules.ITGaranteGDPR€32,000
11 Apr 2013Travel Factory srl in liquidazioneTravel Factory srl in liquidazione was fined EUR 22,000 by the Garante. The authority found that the company sent promotional faxes and collected data through web forms without providing the required privacy information notice.ITGaranteGDPR€22,000
30 Oct 2014sig.ra Wu LiliThe Garante imposed a EUR 2,400 fine on sig.ra Wu Lili for failing to provide adequate information to data subjects about video surveillance at a gaming venue. The authority found a breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400
13 Mar 2025Interflora Italia S.p.A.Interflora Italia S.p.A. was fined EUR 40,000 by the Garante for sending promotional SMS messages without providing an opt-out option. The case indicates a breach of GDPR requirements for marketing communications and data subject rights.ITGaranteGDPR€40,000
22 Feb 2018Technical Hunter s.r.l.Technical Hunter s.r.l. was fined by the Garante 20,000 EUR for processing job applicants’ personal data without proper compliance with data protection rules. The data was collected and used through the company website, job portals, and social networks.ITGaranteGDPR€20,000
23 Oct 2014S.A.B. Alberghi di Baveno s.p.a.S.A.B. Alberghi di Baveno s.p.a. was fined by the Garante in the amount of €2,400 for processing personal data connected with job applications without providing the required information notice. The case concerned the information duty under Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400
27 Apr 2023Checcoro di Nigro FrancescoThe company was fined EUR 2,000 by the Italian data protection authority, Garante. The sanction concerned the use of surveillance cameras without appropriate informational signage, in breach of GDPR requirements.ITGaranteGDPR€2,000
07 Jul 2011F.B. Aurum di Ferrero Wilma e Barathier Sergio s.n.c.F.B. Aurum di Ferrero Wilma e Barathier Sergio s.n.c. was fined by the Garante 10,000 EUR for operating a video surveillance system without providing the required notice to data subjects. This constituted a breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€10,000
05 Oct 2017Comune di CivitavecchiaComune di Civitavecchia was fined by the Garante for unlawfully transmitting sensitive data revealing the health status of disabled students to service providers without a proper legal basis. The authority found that the processing breached data protection and confidentiality requirements.ITGaranteGDPR€30,000
11 Apr 2013Casa di cura La Quiete srlCasa di cura La Quiete srl was fined by the Garante for failing to notify data processing activities related to patients’ laboratory tests. The data could reveal infectious diseases, which required notification under the Italian data protection code.ITGaranteGDPR€40,000
13 Apr 2023GMC s.a.p.a.GMC s.a.p.a. was fined EUR 15,000 by the Italian supervisory authority, Garante. The case concerned the publication of detailed health data of an individual without consent, in breach of GDPR Article 9 on special categories of personal data.ITGaranteGDPR€15,000
11 Apr 2024Olimpia S.r.l.Olimpia S.r.l. was fined for making unsolicited promotional calls without prior consent and for using numbers listed in the Public Opposition Register. The conduct breached GDPR requirements on data protection and security measures.ITGaranteGDPR€100,000
12 Oct 2017Hu GuangyuHu Guangyu was fined EUR 14,400 by the Garante. The authority found inadequate simplified information on video surveillance and retention of recorded images beyond the permitted period.ITGaranteGDPR€14,400
18 Jan 2018Italia Consulenza e Formazione s.r.l.Italia Consulenza e Formazione s.r.l. was fined EUR 32,000 by the Garante for sending promotional emails without proper consent. The case concerns a breach of data protection rules governing direct marketing.ITGaranteGDPR€32,000
17 Jul 2024Provvedimento del 17 luglio 2024 [10070330]The Garante imposed a fine of EUR 4,000 for violations related to the processing of health data. The case highlights the need to comply with data protection principles when handling special category data.ITGaranteGDPR€4,000
26 Apr 2018Raffaele FrancescoRaffaele Francesco was fined by the Garante for processing the personal data of five patients without the required consent during dental services. The conduct breached the Italian Privacy Code.ITGaranteGDPR€20,000
30 Oct 2014Wangjun JiWangjun Ji was fined EUR 2,400 by the Italian supervisory authority, Garante. The case concerned a failure to provide the required information to data subjects about the processing of personal data through a video surveillance system at a massage and beauty center.ITGaranteGDPR€2,400
04 Feb 2016Istituto Tecnico Industriale Ettore MajoranaIstituto Tecnico Industriale Ettore Majorana was fined for processing biometric data for attendance tracking without the required notification to the Garante. This breached the Italian Privacy Code.ITGaranteGDPR€8,000