BULLETIN №082Last updated · 30 Jul 2026
Fine Tracker.
A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.
5,273 entries
- Total fines
- €8.6bn
- Decisions
- 5,273
- Jurisdictions
- 33
- Regulators
- 74
- Avg monthly
- €162.7m
- YoY volume
- -21.2%
| Imposed | Company | Country | Authority | Type | Amount | ↗ |
|---|---|---|---|---|---|---|
| 27 Oct 2022 | COPY COFFEE, S.L.COPY COFFEE, S.L. was fined EUR 5,000 by the AEPD for sending unsolicited commercial emails despite the recipient's prior objection. The authority found a breach of Article 21 of the LSSI governing electronic marketing communications. | ES | AEPD | ePrivacy | €5,000 | ↗ |
| 12 Mar 2026 | Bakeca s.r.l.Bakeca s.r.l. was fined €5,000 by the Italian data protection authority, Garante. The case concerned the publication of online ads without the required consent, which breached data protection rules. | IT | Garante | GDPR | €5,000 | ↗ |
| 25 Jun 2024 | LOS NIÑOS DE MONTESSORI, S.L.The entity was fined for failing to provide information or obtain consent for the use of cookies on its website. This conduct breached the LSSI. | ES | AEPD | ePrivacy | €5,000 | ↗ |
| 04 May 2021 | CLUB GIMNASIA RÍTMICA SAN ANTONIOThe club was fined by the AEPD for publishing images of minors on social media without proper consent. The authority found a breach of GDPR Article 6 on lawful processing. | ES | AEPD | GDPR | €5,000 | ↗ |
| 21 May 2025 | Data Diggers Market Research SRLThe company was fined EUR 5,000 by ANSPDCP for failing to provide complete information to complainants exercising their right of access to personal data. The case concerns the obligation to respond fully to access requests. | RO | ANSPDCP | GDPR | €5,000 | ↗ |
| 22 Feb 2024 | Ossitocina24 di Patrono AntonellaOssitocina24 di Patrono Antonella was fined 5,000 EUR by the Italian Garante. The case concerned the failure to delete personal data from its website after a contract termination request, which breached GDPR data processing requirements. | IT | Garante | GDPR | €5,000 | ↗ |
| 30 May 2025 | AG-BROKER ASIGURARE S.R.L.AG-BROKER ASIGURARE S.R.L. was fined 5,000 EUR by ANSPDCP. The sanction concerned the failure to notify a personal data security breach. | RO | ANSPDCP | GDPR | €5,000 | ↗ |
| 11 Dec 2019 | VODAFONE ONO, S.A.U.VODAFONE ONO, S.A.U. was fined EUR 5,000 by the Spanish Data Protection Agency (AEPD). The sanction concerned the failure to provide requested information, which breached GDPR requirements. | ES | AEPD | GDPR | €5,000 | ↗ |
| 03 Aug 2023 | Sdam s.r.l.Sdam s.r.l. was fined by the Italian data protection authority, Garante, in the amount of 5,000 EUR. The case concerned the sending of promotional emails without proper consent, which constitutes a GDPR violation. | IT | Garante | GDPR | €5,000 | ↗ |
| 12 May 2021 | A. EPILOGI IDIOTIKI KEFALAIOUCHIKI ETAIREIAThe company was fined by the HDPA 5,000 EUR for sending unsolicited promotional emails without consent. The authority also found that it failed to respond to data subject access requests and did not provide a valid opt-out address for communications. | GR | HDPA | GDPR | €5,000 | ↗ |
| 25 Apr 2025 | SC Travel Planner SRLSC Travel Planner SRL was fined EUR 5,000 by ANSPDCP for breaching Article 15 of the GDPR. The case concerned the improper handling of a data subject access request. | RO | ANSPDCP | GDPR | €5,000 | ↗ |
| 04 Jun 2025 | Comune di PompeiThe Garante fined Comune di Pompei EUR 5,000 for failing to provide the Authority with the contact details of its Data Protection Officer. The breach concerned the notification duty under Article 37 GDPR. | IT | Garante | GDPR | €5,000 | ↗ |
| 02 Dec 2019 | CONSULTING DE SEGURIDAD E INVESTIGACION MIRA DP MADRID, S.L.The company was fined by the AEPD for collecting and processing personal data without the data subjects’ consent. The conduct also included sending unsolicited advertising, which breached Article 6 of the GDPR. | ES | AEPD | GDPR | €5,000 | ↗ |
| 01 Jan 2015 | BANCO SANTANDER, S.A.Banco Santander was fined EUR 5,000 by the AEPD for sending unsolicited commercial emails. The authority found this breached Article 21.1 of the LSSI on marketing communications without prior consent. | ES | AEPD | ePrivacy | €5,000 | ↗ |
| 09 Jul 2025 | DISTRIBUTED ENERGY ASSETS, S.L.DISTRIBUTED ENERGY ASSETS, S.L. was fined by the AEPD 5,000 EUR for obstructing the exercise of data subject rights. The breach concerned in particular the right to erasure under Article 17 of the GDPR. | ES | AEPD | GDPR | €5,000 | ↗ |
| 20 Apr 2021 | RIUSA II, S.ARIUSA II, S.A was fined by the AEPD 5,000 EUR for not providing users with the option to reject or configure cookies on its website. The authority treated this as a breach of data protection rules. | ES | AEPD | ePrivacy | €5,000 | ↗ |
| 01 Jul 2020 | XFERA MÓVILES, S.A.XFERA MÓVILES, S.A. was fined by the Spanish Data Protection Agency (AEPD) for failing to provide requested information. The breach concerned cooperation obligations under data protection rules. | ES | AEPD | GDPR | €5,000 | ↗ |
| 02 Nov 2023 | ASYMECO, S.A.ASYMECO, S.A. was fined EUR 5,000 by the AEPD for sending clients’ personal data to an employee’s private WhatsApp without proper authorization. The authority found this breached GDPR Articles 6(1) and 32. | ES | AEPD | GDPR | €5,000 | ↗ |
| 22 Nov 2023 | ORTHOPHONISTE (procédure simplifiée)CNIL imposed a EUR 5,000 fine on ORTHOPHONISTE under a simplified procedure and issued an injunction. The case concerns a breach of the data protection authority’s requirements. | FR | CNIL | GDPR | €5,000 | ↗ |
| 04 Dec 2025 | DIARIO DE PRENSA DIGITAL, S.L.DIARIO DE PRENSA DIGITAL, S.L. was fined by the AEPD 5,000 EUR for placing tracking and advertising cookies on its website without prior user consent. The authority found this to be a breach of Article 22.2 of the LSSI. | ES | AEPD | ePrivacy | €5,000 | ↗ |