Fine Tracker.

A public register of regulatory fines issued under EU compliance directives. Updated as decisions are published by national supervisory authorities.

5,273 entries

Total fines
€8.6bn
Decisions
5,273
Jurisdictions
33
Regulators
74
Avg monthly
€162.7m
YoY volume
-21.1%
Country
Type
Date range
ImposedCompanyCountryAuthorityTypeAmount
06 Feb 2014Genesis Consulting s.r.l.Genesis Consulting s.r.l. was fined EUR 4,000 by the Garante. The authority found that personal data collected through a website form were used for marketing purposes without adequate notice and without specific consent.ITGaranteGDPR€4,000
10 Jul 2014Onbrand Call s.r.lOnbrand Call s.r.l was fined by the Garante for processing personal data through a web form without providing the required information notice. The authority found a breach of Article 13 of the Italian Data Protection Code.ITGaranteGDPR€6,000
18 Sept 2008Universitalia s.r.l.Universitalia s.r.l. was fined €6,000 by the Italian data protection authority, Garante. The authority found that the company failed to provide adequate privacy information to data subjects as required by the Italian Data Protection Code.ITGaranteGDPR€6,000
29 Apr 2021Azienda socio sanitaria territoriale Melegnano e della MartesanaAzienda socio sanitaria territoriale Melegnano e della Martesana was fined by the Garante €6,000 for a data breach involving the loss of health data. The case concerned special-category personal data and indicates insufficient organizational or technical safeguards.ITGaranteGDPR€6,000
03 Feb 2011Able Tech s.r.l.Able Tech s.r.l. was fined EUR 9,000 by the Garante for failing to provide timely information to the data subject. The breach concerned the obligation under Article 13 of the Italian Data Protection Code.ITGaranteGDPR€9,000
24 Oct 2013ASL n.1 – Avezzano/Sulmona/L'AquilaASL n.1 – Avezzano/Sulmona/L'Aquila was fined EUR 8,000 by the Garante. The authority found a breach consisting of failure to make the notification required under the Italian Data Protection Code.ITGaranteGDPR€8,000
24 May 2017LAM Centro Biomedico s.r.l.LAM Centro Biomedico s.r.l. was fined by the Garante for failing to notify the corporate name change following a merger. The case involved processing sensitive personal data, which required informing the supervisory authority.ITGaranteGDPR€8,000
13 Feb 2025Claudio BattagliaDr. Claudio Battaglia, an oncologist, was fined for using patient data for electoral propaganda without consent. The case indicates a breach of GDPR principles on lawfulness and purpose limitation.ITGaranteGDPR€10,000
17 Jul 2025Comune di Tocco da CasauriaComune di Tocco da Casauria was fined EUR 2,000 by the Garante for publishing personal data on its institutional website. The authority found that the processing did not comply with the principles of lawfulness, fairness, transparency, and data minimization.ITGaranteGDPR€2,000
02 Mar 2023Flowers R di Malalan MitjaMalalan Mitja was fined by the Garante in the amount of 5,000 EUR for sending unsolicited promotional emails. The messages were sent to randomly generated email addresses, which constituted a breach of GDPR requirements.ITGaranteGDPR€5,000
01 Aug 2012S.I.G.A.T. s.r.l.S.I.G.A.T. s.r.l. was fined by the Italian data protection authority, Garante, in the amount of EUR 13,400. The case concerned the sending of unsolicited promotional faxes without prior consent from recipients.ITGaranteGDPR€13,400
17 May 2023La Gazzetta di Parma S.r.l.La Gazzetta di Parma S.r.l. was fined by the Garante EUR 10,000 for publishing an image of a presumed murderer in breach of privacy rules. The person was shown in a state of physical restraint without proper anonymization.ITGaranteGDPR€10,000
06 Feb 2014Anthea Preziosi s.a.s.Anthea Preziosi s.a.s. was fined EUR 2,400 by the Italian data protection authority, Garante. The case concerned the collection of personal data through a website form without providing the required information notice, in breach of Article 13 of the Italian Privacy Code.ITGaranteGDPR€2,400
16 Sept 2021Azienda sanitaria provinciale di CosenzaAzienda sanitaria provinciale di Cosenza was fined by the Garante for unlawfully publishing health data on its institutional website. The case involved breaches of data protection principles and required security measures for sensitive data.ITGaranteGDPR€18,000
27 Mar 2025Corriere del Giorno 1947 Media Group Soc. Coop. ArlThe Garante imposed a fine of 6,000 EUR on Corriere del Giorno 1947 Media Group Soc. Coop. Arl for violations related to the right to be forgotten. The authority found that certain articles were no longer relevant and were not in the public interest.ITGaranteGDPR€6,000
30 Jul 2015Comune di MontallegroComune di Montallegro was fined for publishing documents on its website that contained sensitive personal data revealing individuals' health conditions. This constituted a breach of data protection law.ITGaranteGDPR€10,000
12 Mar 2015Giuseppe PernaGiuseppe Perna was fined 64,000 EUR by the Garante for collecting and selling users’ email and IP addresses without proper consent and notice. The authority found this conduct to be in breach of data protection rules.ITGaranteGDPR€64,000
24 Nov 2022dott.ssa Emilia ColosimoThe Garante imposed a EUR 1,000 fine on dott.ssa Emilia Colosimo for breaches of the principles of lawful, fair and transparent processing of personal data, data minimization, and data security. The authority also cited insufficient safeguards against unauthorized or unlawful processing.ITGaranteGDPR€1,000
05 Jul 2017Compagnia Generale Trattori S.p.A.Compagnia Generale Trattori S.p.A. was fined by the Garante EUR 20,000 for using a GPS/GPRS system to monitor employee activities without proper notification. The authority found this to be a breach of data protection rules.ITGaranteGDPR€20,000
23 Oct 2014sig.ra Pan MiaomiaoThe individual was fined for failing to provide adequate information about the use of a video surveillance system. The authority found this to be a breach of privacy and data protection rules.ITGaranteGDPR€2,400