Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21.1%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
02 Mar 2017MM Group s.r.l.MM Group s.r.l. was fined EUR 16,000 by the Italian Garante. The case concerned promotional calls made without providing the required data protection information and without obtaining consent, in breach of Articles 13 and 23 of the Italian Data Protection Code.ITGaranteGDPR€16,000
16 Mar 2017Welcome s.a.s. di Somma MicheleWelcome s.a.s. di Somma Michele was fined EUR 16,000 by the Garante for making unsolicited promotional calls. The authority found that the required privacy notice was not provided and consent was not obtained.ITGaranteGDPR€16,000
03 Apr 2014Travelplan Italia s.r.l.Travelplan Italia s.r.l. was fined EUR 16,000 by the Garante for sending unsolicited promotional faxes. The authority found that the company failed to provide the required information notice and did not obtain consent, in breach of the Italian Data Protection Code.ITGaranteGDPR€16,000
15 Jun 2017F2F Communications s.r.l.F2F Communications s.r.l. was fined by the Garante 16,000 EUR for making unsolicited promotional calls. The authority found that the required privacy notice was not provided and consent was not obtained, in breach of data protection rules.ITGaranteGDPR€16,000
21 Feb 2013Stefano Giovanni MaulluStefano Giovanni Maullu was fined by the Garante in the amount of 16,000 EUR for sending unsolicited political SMS messages. The authority also found that the required data protection information was not provided.ITGaranteGDPR€16,000
16 Mar 2017Obiettivo Ferrari s.r.l.Obiettivo Ferrari s.r.l. was fined by the Garante €16,000 for making an unsolicited promotional call. The company did not provide the required data protection information or obtain consent from the recipient.ITGaranteGDPR€16,000
12 Nov 2014Areacom s.r.l.Areacom s.r.l. was fined by the Garante 16,000 EUR for collecting personal data through its website without providing the required privacy notice. The breach concerned Article 13 of the Italian Data Protection Code.ITGaranteGDPR€16,000
17 Apr 2014Gambero Rosso Holding s.p.a.Gambero Rosso Holding s.p.a. was fined by the Italian data protection authority, Garante, for sending promotional emails without prior explicit consent from recipients. The authority also found that the required privacy notice was not provided, in breach of the Italian Data Protection Code.ITGaranteGDPR€16,000
22 May 2013Romulus PopescuRomulus Popescu was fined EUR 16,000 by the Garante. The sanction concerned sending unsolicited promotional communications to a minor without proper consent.ITGaranteGDPR€16,000
25 Apr 2024ASSOCIATION PARTICIPANT AUX ACTIVITES DES ORGANISATIONS POLITIQUES (procédure simplifiée)The CNIL imposed an administrative fine of EUR 16,000 on ASSOCIATION PARTICIPANT AUX ACTIVITES DES ORGANISATIONS POLITIQUES. The authority also issued an injunction requiring corrective action.FRCNILGDPR€16,000
22 Nov 2012La Villa s.p.a.La Villa s.p.a. was fined EUR 16,000 by the Garante. The company failed to update its notification of data processing activities after changing its registered office address, which breached privacy rules.ITGaranteGDPR€16,000
09 Oct 2025Ordine delle Professioni Infermieristiche di PisaOrdine delle Professioni Infermieristiche di Pisa was fined by the Garante 16,000 EUR for breaches of data protection principles. The authority cited non-compliance with lawfulness, fairness, transparency, and data minimization requirements.ITGaranteGDPR€16,000
31 Jan 2013Edizioni associative srlEdizioni associative srl was fined EUR 16,000 by the Garante. The authority found that the company sent unsolicited promotional emails without proper consent, breaching data protection rules.ITGaranteGDPR€16,000
21 Jun 2018Azienda Semplice s.r.l.Azienda Semplice s.r.l. was fined by the Garante 16,000 EUR for unlawful processing of personal data used to place promotional calls to a private residential phone number without consent. The case concerns a lack of a lawful basis for marketing contact and a breach of data protection rules.ITGaranteGDPR€16,000
19 Jul 2018BUTALI S.P.A.BUTALI S.P.A. was fined €16,000 by the Garante for activating a SIM card without providing the required privacy information and obtaining the customer’s specific consent. The authority found this to be a breach of data protection rules.ITGaranteGDPR€16,000
03 Jun 2025B*** Parkraumbewirtschaftung Ges.m.b.H.The company was fined by the Austrian Data Protection Authority (DSB) for failing to cooperate during the investigation. It did not respond to multiple requests for statements or to a summons for an oral hearing, which constitutes a breach of Article 31 GDPR.ATDSBGDPR€16,000
16 Jan 2014Bios Marx s.r.l.Bios Marx s.r.l. was fined by the Italian Garante in the amount of EUR 16,000 for providing an inadequate privacy notice during a medical initiative. The authority also found that personal data were shared with third parties without obtaining specific consent.ITGaranteGDPR€16,000
14 Jun 2018Azienda Ospedaliera Pugliese CiaccioAzienda Ospedaliera Pugliese Ciaccio was fined EUR 16,000 by the Garante. The authority found that patients were not informed about data processing and that consent was not obtained for processing sensitive data, in breach of the Italian Data Protection Code.ITGaranteGDPR€16,000
01 Mar 2018Ministero dell’Istruzione, dell’Università e della RicercaThe Ministry of Education, University and Research was fined €16,000 by the Garante for violations related to the handling of personal data in the implementation of the “Carta docente” application. The case concerned deficiencies in the way user data was processed within the service.ITGaranteGDPR€16,000
09 Oct 2014CISPEL Lombardia Services s.r.l.CISPEL Lombardia Services s.r.l. was fined by the Garante for failing to provide the required data protection information to job applicants. The authority also found that personal data was shared with third parties without the data subjects' consent.ITGaranteGDPR€16,000