Search Privacy Fines
Browse and filter privacy enforcement fines worldwide.
663 fines found
Total: $51.8M
| Date | Company | Fine | Regulation | Authority | Country | Type | Summary |
|---|---|---|---|---|---|---|---|
| 2021-06-07 | Radiotelevision del principado de Asturias | €20K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | --Articles: Art. 5 (1) c) GDPR, Art. 12 GDPR |
| 2022-05-17 | Ramona Films, SL | €18K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-cooperation with Data Protection Authority | --Articles: Art. 58 (1) GDPR |
| 2023-04-04 | ENFOKA SISTEMAS GLOBALES, S.L. | €18K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | --Articles: Art. 6 (1) GDPR |
| 2021-09-20 | CEDICO | €18K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 5 (1) f) GDPR |
| -- | Mercadona S.A. | €17K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | --Articles: Art. 6 GDPR, Art. 12 GDPR, Art. 15 GDPR |
| 2021-10-26 | Servicios Logisticos Martorell Siglo XXL, S.L. | €16K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 35 GDPR |
| 2022-04-29 | LABORATORIOS GONAZALEZ, S.L. | €16K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 5 (1) f) GDPR |
| 2022-12-15 | HOSPITAL RECOLETAS PONFERRADA , S.L. | €16K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | --Articles: Art. 6 (1) GDPR, Art. 15 GDPR |
| 2022-07-26 | TELEFONICA MOVILES ESPANA, S.A.U. | €15K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | --Articles: Art. 6 (1) GDPR |
| 2020-03-09 | Gesthotel Activos Balagares | €15K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | --Articles: Art. 5 (1) f) GDPR |
| 2022-04-28 | MEDEROS MOVITEN, S.L. | €15K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | --Articles: Art. 6 (1) GDPR |
| 2023-02-28 | GRUP NORCONSULTING, S.L. | €15K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 15 GDPR, Art. 17 GDPR |
| 2020-03-09 | Gesthotel Activos Balagares | €15K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | The complainant explained that they had sent a letter to the management of the h...The complainant explained that they had sent a letter to the management of the hotel and union delegates that contained information related to an episode of alleged harassment in relation to a medical condition. The hotel management then read the contents of the letter in a meeting with other employees. This constituted a violation of the principle of integrity and confidentiality. Articles: Art. 5 (1) f) GDPR |
| 2022-01-18 | Garlex Solutions, S.L. | €15K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 6 GDPR |
| 2020-10-23 | Recambios Villalegre S.L. | €12K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 6 GDPR, Art. 13 GDPR |
| 2020-07-10 | Vodafone Espana, SAU | €12K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 5 GDPR |
| 2022-10-14 | SEAN SERIOS S.L. | €12K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | --Articles: Art. 6 (1) GDPR |
| 2019-01-21 | Madrileña Red de Gas | €12K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to implement sufficient measures to ensure information security | --Articles: Art. 32 GDPR |
| -- | Restaurant | €12K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | --Articles: Art. 5 (1) a) GDPR, Art. 6 GDPR |
| 1970-01-01 | Restaurant | €12K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | The restaurant wanted to sanction an employee using images taken by another empl...The restaurant wanted to sanction an employee using images taken by another employee in the restaurant, to be used as evidence. Articles: Art. 5 (1) a) GDPR, Art. 6 GDPR |
| 2019-01-21 | Madrileña Red de Gas | €12K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to implement sufficient measures to ensure information security | The gas company did not have the necessary technical measures in place to verify...The gas company did not have the necessary technical measures in place to verify the identity of the subjects’ data. It was alleged by a third party that the company emailed their information to a third party in regards to a request. Articles: Art. 32 GDPR |
| -- | ALBERTO FORTE COMPSITE, S.L. | €12K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to implement sufficient measures to ensure information security | --Articles: Art. 35 GDPR |
| 2019-12-02 | Ikea Ibérica | €10K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | Ikea Ibérica was found to have installed cookies on a customer’s device wi...Ikea Ibérica was found to have installed cookies on a customer’s device without asking for permission. Articles: Art. 6 GDPR |
| 2020-09-16 | Property owners community | €10K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 5 GDPR |
| 2021-10-11 | Maf.com Esqui Club | €10K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 7 GDPR |