Search Privacy Fines

Browse and filter privacy enforcement fines worldwide.

← Back to Overview

2,028 fines found

Total: $8.1B

DateCompanyFineRegulationAuthorityCountryTypeSummary
2019-04-05Political Party - Undisclosed€34KGDPRHungarian National Authority for Data Protection and the Freedom of Information (NAIH)HungaryInformation obligation non-compliance
--

Articles: Art. 33 (1) GDPR, Art. 33 (5) GDPR, Art. 34 (1) GDPR

2021-06-15Huppuis ehf€34KGDPRIcelandic Data Protection Authority ('Persónuvernd')IcelandNon-compliance with lawful basis for data processing
--

Articles: Art. 5 (1) a), c) GDPR, Art. 6 (1) GDPR, Art. 12 (1) GDPR, Art. 13 (1), (2) GDPR

2022-09-28BAYARD REVISTAS, S.A.€31KGDPRSpanish Data Protection Authority (AEPD)SpainFailure to comply with data processing principles
--

Articles: Art. 5 (1) f) GDPR, Art. 32 GDPR, Art. 33 GDPR

2022-08-02Krokatjønnvegen 15 AS€30KGDPR Norwegian Supervisory Authority (Datatilsynet)NorwayNon-compliance with lawful basis for data processing
--

Articles: Art. 6 GDPR

2021-12-02Ica s.r.l.€30KGDPRItalian Data Protection Authority (Garante)ItalyNon-compliance with lawful basis for data processing
--

Articles: Art. 5 (1) f) GDPR, Art. 32 GDPR

2022-06-23RADIO TELEVISION MADRID, S.A. €30KGDPRSpanish Data Protection Authority (AEPD)SpainFailure to comply with data processing principles
--

Articles: Art. 5 (1) c) GDPR

2022-06-23CORPORACION DE RADIO Y TELEVISION ESPANOLA, S.A.€30KGDPRSpanish Data Protection Authority (AEPD)SpainFailure to comply with data processing principles
--

Articles: Art. 5 (1) c) GDPR

2022-08-03Private Polyclinic and Diagnostic Centre of Pyle Axiou€30KGDPRHellenic Data Protection Authority (HDPA)GreeceFailure to comply with data processing principles
--

Articles: Art. 5 (1) f) GDPR

2019-11-14Telefónica SA€30KGDPRSpanish Data Protection Authority (AEPD)SpainNon-compliance with lawful basis for data processing
A person was charged by the phone operator Telefónica for a telephone service th...

A person was charged by the phone operator Telefónica for a telephone service that they never requested and owned. This happened because the bank account of the affected person was linked to the Telefónica profile of another person and as such the fees for the service were deduced from the affected person’s account. The AEDP ruled that this was against the principles described by article 5 of GDPR.

Articles: Art. 5 GDPR

2023-03-23Bolzano Municipality€30KGDPRItalian Data Protection Authority (Garante)ItalyFailure to comply with data processing principles
--

Articles: Art. 5 (1) f) GDPR, Art. 25 GDPR, Art. 32 GDPR, Art. 33 GDPR

2021-01-14Azienda sanitaria provinciale di Enna€30KGDPRItalian Data Protection Authority (Garante)ItalyNon-compliance with lawful basis for data processing
--

Articles: Art. 5 (1) a) GDPR, Art. 6 GDPR, Art. 9 GDPR

2019-10-01Vueling Airlines€30KGDPRSpanish Data Protection Authority (AEPD)SpainNon-compliance with lawful basis for data processing
--

Articles: Art. 5 GDPR, Art. 6 GDPR

2021-12-31INFO COMMUNICATION SERVICES€30KGDPRHellenic Data Protection Authority (HDPA)GreeceInformation obligation non-compliance
--

Articles: Art. 13 GDPR, Art. 14 GDPR, Art. 11 Law 3471/2006

2023-02-02Piraeus Bank€30KGDPRHellenic Data Protection Authority (HDPA)GreeceFailure to comply with data processing principles
--

Articles: Art. 5 (1) a), f) GDPR, Art. 33 GDPR, Art. 34 GDPR

2020-02-14Xfera Moviles S.A.€30KGDPRSpanish Data Protection Authority (AEPD)SpainFailure to implement sufficient measures to ensure information security
The Spanish Data Protection Authority determined that a customer of the company ...

The Spanish Data Protection Authority determined that a customer of the company had access to the personal data of other customers.

Articles: Art. 32 GDPR

2022-12-15ORANGE ESPAGNE, S.A.U.€30KGDPRSpanish Data Protection Authority (AEPD)SpainFailure to comply with data processing principles
--

Articles: Art. 5 (1) GDPR

2019-01-01Vodafone Espana, S.A.U.€30KGDPRSpanish Data Protection Authority (AEPD)SpainFailure to implement sufficient measures to ensure information security
--

Articles: Art. 5 (1) f) GDPR, Art. 32 GDPR

2020-11-17Provincial Health Authority of Cosenza€30KGDPRItalian Data Protection Authority (Garante)ItalyFailure to comply with data processing principles
--

Articles: Art. 9 GDPR

2019-06-24Vodafone Espana€30KGDPRSpanish Data Protection Authority (AEPD)SpainFailure to implement sufficient measures to ensure information security
The personal data of a customer was disclosed to a different customer through SM...

The personal data of a customer was disclosed to a different customer through SMS. The original fine of €50,000 was reduced to €20,000.

Articles: Art. 5 (1) f) GDPR, Art. 32 GDPR

2020-01-23Azienda Ospedaliero Universitaria Integrata di Verona (Hospital)€30KGDPRItalian Data Protection Authority (Garante)ItalyFailure to implement sufficient measures to ensure information security
--

Articles: Art. 5 (1) f) GDPR, Art. 32 GDPR

2022-07-19DO VALUE GREECE LOANS & CREDITS CLAIM MANAGEMENT S.A.€30KGDPRHellenic Data Protection Authority (HDPA)GreeceFailure to comply with data processing principles
--

Articles: Art. 5 (1) a) GDPR, Art. 5 (2) GDPR, Art. 6 GDPR, Art. 12 (2) GDPR

2020-03-18Telefonica€30KGDPRSpanish Data Protection Authority (AEPD)SpainNon-cooperation with Data Protection Authority
--

Articles: Art. 58 GDPR

2020-11-03Vodafone España, SAU€30KGDPRSpanish Data Protection Authority (AEPD)SpainFailure to comply with data processing principles
--

Articles: Art. 5 GDPR, Art. 6 GDPR

2022-02-15ΛΙΜΕΝΟΣ ΗΡΑΚΛΕΙΟΥ Α.Ε.€30KGDPRHellenic Data Protection Authority (HDPA)Greece Non-compliance with subjects' rights protection safeguards
--

Articles: Art. 12 (1), (2) GDPR, Art. 15 (1) GDPR

2019-06-24Vodafone Espana€30KGDPRSpanish Data Protection Authority (AEPD)SpainFailure to implement sufficient measures to ensure information security
--

Articles: Art. 5 (1) f) GDPR, Art. 32 GDPR

PreviousPage 26 of 82Next