Search Privacy Fines

Browse and filter privacy enforcement fines worldwide.

← Back to Overview

2,028 fines found

Total: $8.1B

DateCompanyFineRegulationAuthorityCountryTypeSummary
2022-05-18SCF ZHY, SL€600GDPRSpanish Data Protection Authority (AEPD)SpainInformation obligation non-compliance
--

Articles: Art. 13 GDPR

2022-07-05Private Individual €600GDPRSpanish Data Protection Authority (AEPD)SpainFailure to comply with data processing principles
--

Articles: Art. 5 (1) c) GDPR, Art. 13 GDPR

1970-01-01Alza.cz a.s.€588GDPRCzech Data Protection Authority (UOOU)Czech RepublicNon-compliance with lawful basis for data processing
The company acquired a photocopy of a person’s ID card with the person&#82...

The company acquired a photocopy of a person’s ID card with the person’s consent but continued to use and process the personal data even after the affected person had withdrawn their consent.

Articles: Art. 6 GDPR, Art. 7 GDPR

--Alza.cz a.s.€588GDPRCzech Data Protection Authority (UOOU)Czech RepublicNon-compliance with lawful basis for data processing
--

Articles: Art. 6 GDPR, Art. 7 GDPR

2019-02-28Not available€582GDPRCzech Data Protection Authority (UOOU)Czech RepublicFailure to implement sufficient measures to ensure information security
--

Articles: Art. 32 GDPR

2019-02-28Not available€582GDPRCzech Data Protection Authority (UOOU)Czech RepublicFailure to implement sufficient measures to ensure information security
The data processing was conducted in a way that didn’t ensure the appropri...

The data processing was conducted in a way that didn’t ensure the appropriate security of the data itself. Meaning that anyone could access or alter it in an irreversible way (deletion, destruction).

Articles: Art. 32 GDPR

2020-07-23Forbes Hungary€560GDPRHungarian National Authority for Data Protection and the Freedom of Information (NAIH)HungaryFailure to comply with data processing principles
--

Articles: Art. 5 GDPR, Art. 6 GDPR

2020-06-09Chenming Ye (Bazar Real)€540GDPRSpanish Data Protection Authority (AEPD)SpainInformation obligation non-compliance
--

Articles: Art. 13 GDPR, Art. 14 GDPR

2022-09-07Sulkowice Cultural Center€530GDPRPolish National Personal Data Protection Office (UODO)PolandNon-compliance with subjects' rights protection safeguards
--

Articles: Art. 28 (1), (3), (9) GDPR

2019-10-07BD€511GDPRData Protection Commission of Bulgaria (KZLD)BulgariaLack of cooperation with Data Protection Authority
--

Articles: Art. 31 GDPR

2019-10-28Employer€511GDPRData Protection Commission of Bulgaria (KZLD)BulgariaNon-compliance with subjects' rights protection safeguards
--

Articles: Art. 12 (3) GDPR, Art. 15 (1) GDPR

2019-10-28Employer€511GDPRData Protection Commission of Bulgaria (KZLD)BulgariaNon-compliance with subjects' rights protection safeguards
A company was fined with €511 because it refused to give access to the personal ...

A company was fined with €511 because it refused to give access to the personal data of an employee who submitted an application to receive access to their personal data.

Articles: Art. 12 (3) GDPR, Art. 15 (1) GDPR

2019-10-07BD€511GDPRData Protection Commission of Bulgaria (KZLD)BulgariaLack of cooperation with Data Protection Authority
BD was fined with €511 because it failed to provide access to information which ...

BD was fined with €511 because it failed to provide access to information which the national DPA requested in order to resolve a complaint.

Articles: Art. 31 GDPR

2019-04-08Medical service providers€510GDPRData Protection Commission of Bulgaria (KZLD)BulgariaNon-compliance with lawful basis for data processing
--

Articles: Art. 5 (1) a) GDPR, Art. 9 (1) GDPR, Art. 9 (2) GDPR, Art. 6 (1) GDPR

2019-04-08Medical service providers€510GDPRData Protection Commission of Bulgaria (KZLD)BulgariaNon-compliance with lawful basis for data processing
The medical centers unlawfully processed personal data of the subject G.B. Softw...

The medical centers unlawfully processed personal data of the subject G.B. Software was used to generate the registration form for changing the GP, and it went ahead to the Regional Health Insurance Fund. After it arrived at another medical center, it was concluded that all parts had taken part in the unlawful processing of data.

Articles: Art. 5 (1) a) GDPR, Art. 9 (1) GDPR, Art. 9 (2) GDPR, Art. 6 (1) GDPR

1970-01-01Unknown€500GDPRData Protection Authority of HamburgGermanyNon-compliance with lawful basis for data processing
Not available.

Not available.

Articles: Art. 6 GDPR

2018-05-12Bank€500GDPRBulgarian Commission for Personal Data Protection (KZLD)BulgariaNon-compliance with lawful basis for data processing
The bank was fined 500 EUR for calling a client about the unresolved bills of hi...

The bank was fined 500 EUR for calling a client about the unresolved bills of his neighbor. The client then invoked his right to be forgotten, which the bank ignored at first. Another motion was started, and the client complained to the KZLD. Apparently, the bank hadn’t requested consent from the subject when processing his data.

Articles: Art. 5 (1) b) GDPR, Art. 6 GDPR

2020-07-21Apartment building owners association€500GDPRRomanian National Supervisory Authority for Personal Data Processing (ANSPDCP)RomaniaFailure to comply with data processing principles
--

Articles: Art. 5 GDPR, Art. 6 GDPR, Art. 12 GDPR, Art. 13 GDPR, Art. 25 GDPR, Art. 32 GDPR

2022-05-12Private Individual €500GDPRSpanish Data Protection Authority (AEPD)SpainFailure to comply with data processing principles
--

Articles: Art. 5 (1) c) GDPR

2022-04-07Property owner’s association€500GDPRRomanian National Supervisory Authority for Personal Data Processing (ANSPDCP)RomaniaNon-cooperation with Data Protection Authority
--

Articles: Art. 58 (1), a), e) GDPR

2019-11-29Homeowners Association€500GDPRRomanian National Supervisory Authority for Personal Data Processing (ANSPDCP)RomaniaFailure to implement sufficient measures to ensure information security
--

Articles: Art. 32 GDPR

2021-07-27Website operator€500GDPRSpanish Data Protection Authority (AEPD)SpainNon-compliance with subjects' rights protection safeguards
--

Articles: Art. 13 GDPR

2018-05-12Bank€500GDPRBulgarian Commission for Personal Data Protection (KZLD)BulgariaNon-compliance with lawful basis for data processing
--

Articles: Art. 5 (1) b) GDPR, Art. 6 GDPR

2022-01-01Homeowners Association€500GDPRRomanian National Supervisory Authority for Personal Data Processing (ANSPDCP)RomaniaFailure to comply with data processing principles
--

Articles: Art. 5 (1) e) GDPR

--Unknown€500GDPRData Protection Authority of HamburgGermanyNon-compliance with lawful basis for data processing
--

Articles: Art. 6 GDPR

PreviousPage 73 of 82Next