Search Privacy Fines

Browse and filter privacy enforcement fines worldwide.

← Back to Overview

253 fines found

Total: $230.6M

DateCompanyFineRegulationAuthorityCountryTypeSummary
2021-02-11Roma Servizi per La Mobilita S.r.L.€60KGDPRItalian Data Protection Authority (Garante)ItalyFailure to implement sufficient measures to ensure information security
--

Articles: Art. 32 GDPR

2020-09-30Scanshare s.r.l.€60KGDPRItalian Data Protection Authority (Garante)ItalyNon-compliance with lawful basis for data processing
--

Articles: Art. 5 (1) a) GDPR, Art. 6 GDPR, Art. 9 GDPR, Art. 32 GDPR

2022-12-15Azienda Universataria Friuli Occidentale€55KGDPRItalian Data Protection Authority (Garante)ItalyFailure to comply with data processing principles
--

Articles: Art. 5 (1) a) GDPR, Art. 9 GDPR, Art. 14 GDPR, Art. 35 GDPR, Art. 2-sexies Codice della privacy

2022-12-15Azienda Universitaria Friuli Centrale€55KGDPRItalian Data Protection Authority (Garante)ItalyFailure to comply with data processing principles
--

Articles: Art. 5 (1) a) GDPR, Art. 9 GDPR, Art. 14 GDPR, Art. 35 GDPR, Art. 2-sexies Codice della privacy

2022-12-15Azienda Universitaria Giuliano Isontina€55KGDPRItalian Data Protection Authority (Garante)ItalyFailure to comply with data processing principles
--

Articles: Art. 5 (1) a) GDPR, Art. 9 GDPR, Art. 14 GDPR, Art. 35 GDPR, Art. 2-sexies Codice della privacy

2021-01-27Azienda Ospedaliero Universitaria di Senese€50KGDPRItalian Data Protection Authority (Garante)ItalyNon-compliance with lawful basis for data processing
--

Articles: Art. 5 (1) f) GDPR, Art. 9 GDPR

2019-04-24Movimento 5 Stelle Party€50KGDPRItalian Data Protection Authority (Garante)ItalyFailure to implement sufficient measures to ensure information security
--

Articles: Art. 32 GDPR

2022-05-26Azienda sanitaria uniersitaria Friuli Occidentale€50KGDPRItalian Data Protection Authority (Garante)ItalyUnknown
--

Articles: Unknown

2021-01-27Azienda Ospedaliero Universitaria di Parma€50KGDPRItalian Data Protection Authority (Garante)ItalyNon-compliance with lawful basis for data processing
--

Articles: Art. 5 (1) f) GPDR, Art. 9 GDPR

2021-01-27Azienda USL della Romagna€50KGDPRItalian Data Protection Authority (Garante)ItalyFailure to implement sufficient measures to ensure information security
--

Articles: Art. 5 (1) a), d), f) GDPR, Art. 9 GDPR, Art. 32 (1) b) GDPR

2019-04-24Movimento 5 Stelle Party€50KGDPRItalian Data Protection Authority (Garante)ItalyFailure to implement sufficient measures to ensure information security
Website affiliated with the Movimento 5 Stelle, an Italian political party, had ...

Website affiliated with the Movimento 5 Stelle, an Italian political party, had a data breach in 2017. Rousseau, the data processor running these websites, had insufficient security measures in place. Garante, the Italian Data Protection Authority, issued a request to update these measures and the privacy information notice, for more transparency on the processing of data. The information issue was completed on time. However, Rousseau failed to adopt new security measures, and it was fined by Garante.

Articles: Art. 32 GDPR

2022-04-28Istituto Nazionale Assicurazione Infortuni sul Lavoro€50KGDPRItalian Data Protection Authority (Garante)ItalyFailure to comply with data processing principles
--

Articles: Art. 5 (1) a), f) GDPR, Art. 6 (1) e) GDPR, Art. 9 (2) g) GDPR, Art. 32 GDPR, Art. 2-ter Codice della privacy, Art. 2-sexies Codice della privacy

2022-04-07Palumbo Superyacht Ancona s.r.l.€50KGDPRItalian Data Protection Authority (Garante)ItalyFailure to comply with data processing principles
--

Articles: Art. 5 (1) a), e) GDPR, Art. 13 GDPR, Art. 12 (3) GDPR, Art. 15 GDPR, Art. 157 Codice della privacy, Art. 166 (2) Codice della privacy

2022-05-26Azienda Sanitaria Locale Roma€46KGDPRItalian Data Protection Authority (Garante)ItalyFailure to comply with data processing principles
--

Articles: Art. 5 (1) c) GDPR, Art. 6 (1) c), d) GDPR, Art. 6 (2), (3) GDPR, Art. 9 (1), (2), (4) GDPR, Art. 2-ter (1), (2) Codice della privacy, Art. 2-septies (8) Codice della privacy

2021-02-11Istituti ospedalieri bergamaschi€45KGDPRItalian Data Protection Authority (Garante)ItalyFailure to implement sufficient measures to ensure information security
--

Articles: Art. 5 (1) a), f) GDPR, Art. 9 GDPR, Art. 32 GDPR

2022-07-07Senseonics Inc.€45KGDPRItalian Data Protection Authority (Garante)ItalyFailure to comply with data processing principles
--

Articles: Art. 5 (1) a), b), f) GDPR, Art. 6 GDPR, Art. 7 GDPR, Art. 9 GDPR, Art. 12 GDPR, Art. 13 GDPR, Art. 27 GDPR

2022-11-10Usl Valle d’Aosta€40KGDPRItalian Data Protection Authority (Garante)ItalyFailure to comply with data processing principles
--

Articles: Art. 5 (1) a), f) GDPR, Art. 9 GDPR, Art. 25 GDPR, Art. 32 GDPR

2022-04-07ISWEB S.p.A.€40KGDPRItalian Data Protection Authority (Garante)ItalyNon-compliance with subjects' rights protection safeguards
--

Articles: Art. 28 GDPR

2022-04-28Il Sole 24 Ore S.p.a.€40KGDPRItalian Data Protection Authority (Garante)ItalyFailure to comply with data processing principles
--

Articles: Art. 5 GDPR, Art. 9 GDPR, Art. 12 GDPR

2022-01-27T.S.M. s.r.l.€40KGDPRItalian Data Protection Authority (Garante)ItalyNon-compliance with subjects' rights protection safeguards
--

Articles: Art. 13 GDPR, Art. 15 GDPR, Art. 21 GDPR, Art. 157 Codice della privacy, Art. 166 (2) Codice della privacy

2021-06-10Aeroporto Guglielmo Marconi di Bologna S.p.a.€40KGDPRItalian Data Protection Authority (Garante)ItalyFailure to implement sufficient measures to ensure information security
--

Articles: Art. 5 (1) f) GDPR, Art. 25 GDPR, Art. 32 GDPR

2022-09-16FCA Italy S.p.A.€40KGDPRItalian Data Protection Authority (Garante)ItalyNon-compliance with subjects' rights protection safeguards
--

Articles: Art. 12 (1), (2), (3), (4) GDPR, Art. 15 GDPR

2022-04-07Azienda ospedaliera di Perugia€40KGDPRItalian Data Protection Authority (Garante)ItalyFailure to implement sufficient measures to ensure information security
--

Articles: Art. 5 (1) a), f) GDPR, Art. 13 GDPR, Art. 14 GDPR, Art. 25 GDPR, Art. 30 GDPR, Art. 32 GDPR, Art. 35 GDPR

2021-06-10Aeroporto Guglielmo Marconi di Bologna S.p.a.€40KGDPRItalian Data Protection Authority (Garante)ItalyFailure to implement sufficient measures to ensure information security
--

Articles: Art. 28 GDPR, Art. 32 GDPR

2020-12-17Miropass S.r.l.€40KGDPRItalian Data Protection Authority (Garante)ItalyFailure to comply with data processing principles
--

Articles: Art. 5 (1) a), e) GDPR, Art. 6 GDPR, Art. 9 GDPR, Art. 28 GDPR

PreviousPage 3 of 11Next