Search Privacy Fines
Browse and filter privacy enforcement fines worldwide.
2,028 fines found
Total: $8.1B
| Date | Company | Fine | Regulation | Authority | Country | Type | Summary |
|---|---|---|---|---|---|---|---|
| 2021-09-13 | Hairdressing salon | €1K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Information obligation non-compliance | --Articles: Art. 13 GDPR |
| 2021-07-27 | APARTAMENTOS PLAYA DE COVACHOS, S.L. | €1K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 13 GDPR |
| 2020-10-19 | Grant Ideas Ltd | €1K | GDPR | Cypriot Data Protection Commissioner | Cyprus | Non-compliance with lawful basis for data processing | --Articles: Art. 5 GDPR, Art. 6 GDPR |
| 2020-12-29 | Qualitance QBS SA | €1K | GDPR | Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP) | Romania | Failure to implement sufficient measures to ensure information security | --Articles: Art. 32 GDPR |
| 2022-07-01 | Private individual | €1K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 5 (1) c) GDPR |
| 2022-01-01 | Physician | €1K | GDPR | Data Protection Authority of Hamburg | Germany | Failure to implement sufficient measures to ensure information security | --Articles: Art. 32 (1) GDPR |
| 2021-12-03 | Store Owner | €1K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Information obligation non-compliance | --Articles: Art. 13 GDPR |
| 2022-06-03 | Store owner | €1K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 13 GDPR |
| 2022-08-09 | Wabag Water Services SRL | €1K | GDPR | Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP) | Romania | Failure to comply with data processing principles | --Articles: Art. 5 (1) a) GDPR, Art. 5 (2) GDPR, Art. 6 GDPR |
| 2023-03-02 | Razmataz Live s.r.l. | €1K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) a) GDPR, Art. 6 (1) GDPR, Art. 28 GDP |
| 2021-08-09 | BAZTANDIS, S.L. | €1K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 13 GDPR |
| 2021-08-13 | Employer | €1K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 13 GDPR |
| 2022-06-30 | Company | €1K | GDPR | National Commission for Data Protection (CNPD) | Luxembourg | Failure to comply with data processing principles | --Articles: Art. 5 (1) a) GDPR, Art. 12 (1), (7) GDPR, Art. 13 GDPR |
| 2020-07-10 | Centro Internacional De Crecimiento Laboral Y Profesional S.L. | €1K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 5 GDPR, Art. 6 GDPR |
| 2022-04-28 | Educationest s.r.l. | €1K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) a), e) GDPR, Art. 6 (1) b), c) GDPR |
| 2022-06-28 | Company | €1K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 13 GDPR |
| 2022-11-24 | Medicover S.R.L. | €1K | GDPR | Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP) | Romania | Failure to implement sufficient measures to ensure information security | --Articles: Art. 32 (1) b) GDPR, Art. 32 (2) GDPR, Art. 32 (4) GDPR |
| 2022-04-26 | ASST di Lodi | €1K | GDPR | Italian Data Protection Authority (Garante) | Italy | Failure to comply with data processing principles | --Articles: Art. 5 (1) f) GDPR, Art. 9 GDPR, Art. 32 GDPR |
| -- | Ikea Romania SA | €1K | GDPR | Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP) | Romania | Failure to implement sufficient measures to ensure information security | --Articles: Art. 32 (1) b), (2) GDPR |
| 2022-02-22 | MALAGATROM, S.L.U. | €1K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-cooperation with Data Protection Authority | --Articles: Art. 58 (2) GDPR |
| 2022-08-05 | Colosseo S.r.l. | €1K | GDPR | Italian Data Protection Authority (Garante) | Italy | Several | --Articles: Art. 5 (2) GDPR, Art. 6 (1) a) GDPR, Art. 12 (3) GDPR, Art. 15 GDPR, Art. 17 GDPR, Art. 21 GDPR, Art. 24 GDPR |
| 2023-04-26 | Website operator | €1K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Insufficient fulfilment of data subjects rights | --Articles: Art. 13 GDPR |
| 2021-08-26 | Owners Association | €1K | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with processing principles | --Articles: Art. 5 (1) c) GDPR |
| 2022-07-13 | Manx Care Ltd | €1K | GDPR | Information Commissioner of Isle of Man | Isle of Man | Failure to comply with data processing principles | --Articles: Art. 5 (1) c), f) GDPR, Art. 5 (2) GDPR, Art. 24 GDPR, Art. 25 GDPR, Art. 32 GDPR, Art. 34 GDPR, Art. 58 GDPR |
| 2022-05-12 | LORIS FUEL SHOP SRL | €1K | GDPR | Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP) | Romania | Failure to implement sufficient measures to ensure information security | --Articles: Art. 29 GDPR, Art. 32 (4) GDPR |