BULLETIN №082Last updated · 31 Jul 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.7m
- YoY volume
- -21.4%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 13 Feb 2014 | 2MTech di Renzo De Luca2MTech di Renzo De Luca was fined 2,400 EUR by the Garante. The authority found that the company sent unsolicited promotional emails and provided inadequate information notices on its websites. | IT | Garante | GDPR | €2,400 | ↗ |
| 09 Jul 2020 | Comune di BaronissiComune di Baronissi was fined by the Garante for publishing personal data online without a proper legal basis. The authority found a breach of the data minimization principle. | IT | Garante | GDPR | €2,000 | ↗ |
| 29 Apr 2025 | Cooperativa Sociale QuadrifoglioThe Garante imposed a fine of EUR 20,000 on Cooperativa Sociale Quadrifoglio for violations related to data processing. The case concerned non-compliance with personal data protection requirements. | IT | Garante | GDPR | €20,000 | ↗ |
| 19 Feb 2015 | Comune di CampotostoComune di Campotosto was fined by the Garante for unlawfully publishing personal data revealing health information on its website. The case concerned a breach of privacy and personal data protection rules. | IT | Garante | GDPR | €10,000 | ↗ |
| 05 Mar 2015 | Istituto Professionale di Stato per i Servizi Commerciali Turistici Alberghieri "Cesare Musatti"The Istituto Professionale di Stato per i Servizi Commerciali Turistici Alberghieri “Cesare Musatti” was fined by the Italian data protection authority, Garante, in the amount of €10,000. The violation involved unlawfully publishing personal data on its website that revealed students’ health status. | IT | Garante | GDPR | €10,000 | ↗ |
| 12 Feb 2026 | Ristorante pizzeria CN 45The Garante fined Ristorante pizzeria CN 45 2,000 EUR for operating a video surveillance system without proper compliance. The case concerns GDPR breaches related to the lawful operation and implementation of CCTV monitoring. | IT | Garante | GDPR | €2,000 | ↗ |
| 22 Apr 2010 | Cassine di Pietra s.r.l.Cassine di Pietra s.r.l. was fined EUR 10,400 by the Garante for making unsolicited promotional calls using automated systems. The authority found that proper information was not provided and consent had not been obtained. | IT | Garante | GDPR | €10,400 | ↗ |
| 02 Mar 2011 | Santa Caterina Impianti S.p.A.Santa Caterina Impianti S.p.A. was fined 12,000 EUR by the Garante. The authority found a breach for failing to provide the required data protection information under the Italian Data Protection Code. | IT | Garante | GDPR | €12,000 | ↗ |
| 27 Nov 2024 | Istituto Comprensivo Statale "Corso Matteotti" di AlfonsineIstituto Comprensivo Statale “Corso Matteotti” di Alfonsine was fined by the Garante EUR 1,000 for violations related to the processing of personal data. The authority cited non-compliance with the principles of lawfulness, fairness, and transparency. | IT | Garante | GDPR | €1,000 | ↗ |
| 12 Feb 2026 | Klab s.r.l.Klab s.r.l. was fined by the Garante in the amount of 1,000 EUR for failing to obtain valid consent for marketing purposes. The authority also found that the company did not provide adequate information about the legal basis for data processing, in breach of GDPR requirements. | IT | Garante | GDPR | €1,000 | ↗ |
| 31 Jan 2013 | Smart s.n.c.Smart s.n.c. was fined by the Garante in the amount of 8,000 EUR. The case concerned the sending of unsolicited promotional faxes without obtaining explicit consent, which breached data protection rules. | IT | Garante | GDPR | €8,000 | ↗ |
| 14 Mar 2013 | Università Telematica San Raffaele RomaUniversità Telematica San Raffaele Roma was fined by the Garante EUR 6,000 for providing inadequate data protection information through its enrollment and information request forms on its website. The case concerned a breach of Article 13 of the Italian Privacy Code. | IT | Garante | GDPR | €6,000 | ↗ |
| 31 May 2018 | IDEASORRISO S.R.L.IDEASORRISO S.R.L. was fined by the Garante EUR 86,000 for making unsolicited promotional calls without the recipients’ consent. The case concerned data protection rules applicable to telemarketing activities. | IT | Garante | GDPR | €86,000 | ↗ |
| 23 Feb 2023 | Ediscom S.p.A.Ediscom S.p.A. was fined by the Garante 300,000 EUR for lacking clarity and transparency when obtaining user consent for marketing purposes. The authority also found that data was processed despite objections from data subjects. | IT | Garante | GDPR | €300,000 | ↗ |
| 16 Jan 2026 | Born S.r.l.Born S.r.l. was fined by the Garante 15,000 EUR for making unsolicited promotional calls to numbers listed in the Public Register of Oppositions. The conduct breached data protection rules governing telephone marketing and the right to object. | IT | Garante | GDPR | €15,000 | ↗ |
| 21 Mar 2013 | Compu & Games srlCompu & Games srl was fined EUR 54,000 by the Garante. The company registered numerous phone cards to unaware third parties without providing the required data protection information. | IT | Garante | GDPR | €54,000 | ↗ |
| 22 May 2018 | Pettirossi AngeloDr Pettirossi Angelo was fined by the Garante for failing to implement minimum security measures for personal data protection. The breach allowed unauthorized access to the healthcare system. | IT | Garante | GDPR | €10,000 | ↗ |
| 22 Feb 2018 | FAMAS S.R.L.FAMAS S.R.L. was fined by the Garante for using a biometric system based on fingerprint recognition to record employee attendance without a proper legal basis. The case concerned the processing of biometric data in an employment context, where specific lawful grounds are required. | IT | Garante | GDPR | €30,000 | ↗ |
| 15 Oct 2015 | Ordinanza ingiunzione - 15 ottobre 2015 [4703503]A fine was imposed for activating 85 SIM cards in the names of 31 people without their knowledge. The conduct breached data protection rules. | IT | Garante | GDPR | €93,000 | ↗ |
| 10 Nov 2022 | Comune di Villafranca di VeronaThe Comune di Villafranca di Verona was fined 4,000 EUR by the Garante for breaching data protection principles. The authority found that personal data linked to a sensitive private matter was improperly disclosed online. | IT | Garante | GDPR | €4,000 | ↗ |