Search Privacy Fines
Browse and filter privacy enforcement fines worldwide.
253 fines found
Total: $230.6M
| Date | Company | Fine | Regulation | Authority | Country | Type | Summary |
|---|---|---|---|---|---|---|---|
| 2022-08-05 | Cosmopol Security S.p.A. | €20K | GDPR | Italian Data Protection Authority (Garante) | Italy | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 12 (3) GDPR, Art. 15 GDPR |
| 2020-11-26 | Concentrix Cvg Italy s.r.l. | €20K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) a), c) GDPR, Art. 6 (1) b), c) GDPR, Art. 9 (1) b) GDPR |
| 2022-05-12 | Bazar di Hu Xiaoyan | €20K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 GDPR, Art. 13 GDPR, Art. 114 Codice della privacy |
| 2021-01-14 | Azienda Usl di Bologna | €18K | GDPR | Italian Data Protection Authority (Garante) | Italy | Non-compliance with lawful basis for data processing | --Articles: Art. 5 (1) f) GDPR, Art. 9 GDPR |
| 2022-05-26 | Region of Tuscany | €16K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) c) GDPR, Art. 6 (1) c) GDPR, Art. 6 (2) GDPR, Art. 6 (3) b) GDPR, Art. 2-ter (1), (3) Codice della privacy |
| 2022-10-06 | Servizio Idrico Integrato S.c.p.a. | €15K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) f) GDPR, Art. 32 GDPR |
| 2022-11-10 | Poliambulatorio Radiologico “il Sorriso” S.r.l. | €15K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art, 5 GDPR, Art. 13 GDPR, Art. 37 GDPR |
| 2022-04-07 | Rebirth s.r.l. | €15K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) a) GDPR, Art. 13 GDPR, Art. 114 Codice della privacy, Art. 157 Codice della privacy |
| 2020-07-02 | Mapei S.p.A. | €15K | GDPR | Italian Data Protection Authority (Garante) | Italy | Non-compliance with lawful basis for data processing | --Articles: Art. 5 GDPR, Art. 12 GDPR, Art. 13 GDPR, Art. 15 GDPR |
| 2020-08-04 | Mapei S.p.A | €15K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 GDPR, Art. 6 GDPR, Art. 12 GDPR, Art. 13 GDPR, Art. 15 GDPR, Art. 17 GDPR |
| 2022-01-13 | Azienda sanitaria unica regionale Marche | €14K | GDPR | Italian Data Protection Authority (Garante) | Italy | Non-compliance with lawful basis for data processing | --Articles: Art. 5 (1) f) GDPR, Art. 32 GDPR, Art. 35 GDPR |
| 2022-05-22 | Comune di Napoli Corpo di Polizia Municipale | €12K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) a) GDPR, Art. 6 GDPR, Art. 88 GDPR, Art. 113 Codice della privacy |
| 2022-10-20 | Comune di Salento | €12K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) a), b), e) GDPR, Art. 6 GDPR, Art. 12 GDPR, Art. 13 GDPR, Art. 15 GDPR, Art. 30 GDPR |
| 2021-09-29 | Territorial Administration of the Government of Genoa | €11K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) a), c) GDPR, Art. 6 (1) c), e) Art. 6 (2) GDPR, Art. 6 (3) b) GDPR GDPR, Art. 2-ter (1), (3) Codice della privacy |
| 2022-06-09 | Cribis Credit Management s.r.l. | €10K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) a), c) GDPR, Art. 6 GDPR |
| 2020-12-17 | Comune di Luino | €10K | GDPR | Italian Data Protection Authority (Garante) | Italy | Multiple | --Articles: Art. 5 (1) a), c) GDPR, Art. 6 (1) c), e) GDPR, Art. 6 (2) GDPR, Art. 6 (3) b) GDPR, Art. 37 (1) a) GDPR, Art. 37 (7) GDPR |
| 2023-03-23 | Informatica Alto Adige Spa | €10K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) f) GDPR, Art. 32 GDPR |
| 2022-02-10 | Region of Tuscany | €10K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 GDPR, Art. 6 GDPR, Art. 2-ter Codice della privacy |
| 2022-10-06 | Poste Italiane S.p.a. | €10K | GDPR | Italian Data Protection Authority (Garante) | Italy | Insufficient fulfilment of data subjects rights | --Articles: Art. 12 (3), (4) GDPR |
| 2021-12-17 | ASL Latina | €10K | GDPR | Italian Data Protection Authority (Garante) | Italy | Non-compliance with lawful basis for data processing | --Articles: Art. 5 (1) f) GDPR, Art. 6 GDPR, Art. 9 GDPR |
| 2022-09-15 | Bper Banca S.p.A. | €10K | GDPR | Italian Data Protection Authority (Garante) | Italy | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 12 GDPR |
| 2022-07-21 | Clio S.r.l. | €10K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) a) GDPR, Art. 6 GDPR, Art. 30 (2) GDPR, Art. 2-ter Codice della Privacy |
| 2022-04-28 | Italian Ministry of Defense | €10K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) a) GDPR, Art. 6 GDPR, Art. 9 GDPR, Art. 10 GDPR, Art. 2-ter Codice della privacy, Art. 2-sexies Codice della privacy, Art. 2-octies Codice della privacy |
| 2022-03-10 | Alfa Shipyard s.r.l. | €10K | GDPR | Italian Data Protection Authority (Garante) | Italy | Non-cooperation with Data Protection Authority | --Articles: Art. 58 (2) GDPR |
| 2021-12-16 | Centro di Medicina preventive s.r.l. | €10K | GDPR | Italian Data Protection Authority (Garante) | Italy | Non-compliance with lawful basis for data processing | --Articles: Art. 5 GDPR, Art. 25 GDPR, Art. 32 GDPR, Art. 37 GDPR |