Search Privacy Fines
Browse and filter privacy enforcement fines worldwide.
2,028 fines found
Total: $8.1B
| Date | Company | Fine | Regulation | Authority | Country | Type | Summary |
|---|---|---|---|---|---|---|---|
| 2022-07-22 | CINCON, S.C. | €500 | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 13 (2) GDPR |
| 2022-04-12 | Homeowners Association | €500 | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 5 (1) f) GDPR |
| 2021-01-01 | Unknown | €500 | GDPR | Slovak Data Protection Office | Slovakia | Non-cooperation with Data Protection Authority | --Articles: Art. 31 GDPR |
| 2019-02-22 | Unknown company | €500 | GDPR | Bulgarian Commission for Personal Data Protection (KZLD) | Bulgaria | Non-compliance with subjects' rights protection safeguards | An employee requested access to his personal data from his employer. The request...An employee requested access to his personal data from his employer. The request was partially completed and delayed without justification. Articles: Art. 15 GDPR |
| 2022-01-01 | Restaurant | €500 | GDPR | The DPA of Bremen | Germany | Unknown | --Articles: Unknown |
| 2019-01-17 | Bank | €500 | GDPR | Bulgarian Commission for Personal Data Protection (KZLD) | Bulgaria | Non-compliance with lawful basis for data processing | The bank unlawfully came into possession of personal data related to a student.The bank unlawfully came into possession of personal data related to a student. Articles: Art. 6 GDPR, Art. 5 (1) a) GDPR |
| 2019-01-17 | Bank | €500 | GDPR | Bulgarian Commission for Personal Data Protection (KZLD) | Bulgaria | Non-compliance with lawful basis for data processing | --Articles: Art. 6 GDPR, Art. 5 (1) a) GDPR |
| 2022-10-17 | Private Individual | €500 | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 5 (1) GDPR |
| 2022-11-29 | Private individual | €500 | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to implement sufficient measures to ensure information security | --Articles: Art. 5 (1) c) GDPR |
| 2019-11-29 | Homeowners Association | €500 | GDPR | Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP) | Romania | Failure to implement sufficient measures to ensure information security | A homeowners association used video surveillance CCTV without the proper informa...A homeowners association used video surveillance CCTV without the proper information displayed in the affected areas. The Data Protection Authority also determined that inadequate technical measures were in place regarding the access and storage of personal data. Articles: Art. 32 GDPR |
| 2019-02-22 | Unknown company | €500 | GDPR | Bulgarian Commission for Personal Data Protection (KZLD) | Bulgaria | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 15 GDPR |
| 2021-01-01 | Police Officer | €500 | GDPR | Data Protection Authority of Berlin | Germany | Failure to comply with data processing principles | --Articles: Art. 5 GDPR, Art. 6 GDPR |
| 2023-02-03 | MIRACLE IBIZA S.L. | €500 | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 5 (1) c) GDPR |
| 2020-04-30 | Housing Association | €500 | GDPR | Estonian Data Protection Authority | Estonia | Failure to comply with data processing principles | --Articles: Art. 6 GPDR |
| 2023-03-23 | Unknown | €490 | GDPR | Polish National Personal Data Protection Office (UODO) | Poland | Non-cooperation with Data Protection Authority | --Articles: Art. 31 GDPR, Art. 58 (1) e) GDPR |
| 2022-08-25 | SERVICIOS PROFESIONALES LA PARADA S.L. | €480 | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 5 (1) c) GDPR, Art. 13 GDPR |
| 2023-03-15 | Private individual | €480 | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 5 (1) c) GDPR, Art. 13 GDPR |
| 2022-12-09 | Private individual | €480 | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with lawful basis for data processing | --Articles: Art. 6 GDPR, Art. 13 GDPR |
| 2022-09-16 | Private Individual | €480 | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 5 (1) c) GDPR |
| 2023-03-27 | Private individual | €450 | GDPR | Romanian National Supervisory Authority for Personal Data Processing (ANSPDCP) | Romania | Failure to comply with data processing principles | --Articles: Art. 5 (1) a) GDPR, Art. 6 GDPR |
| 2022-12-28 | MAE WEST SYSTEMS, S.L. | €400 | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Non-compliance with subjects' rights protection safeguards | --Articles: Art. 13 GDPR |
| 2021-01-01 | Police Officer | €400 | GDPR | Data Protection Authority of Berlin | Germany | Failure to comply with data processing principles | --Articles: Art. 5 GDPR, Art. 6 GDPR |
| 2022-10-24 | Private Individual | €400 | GDPR | Spanish Data Protection Authority (AEPD) | Spain | Failure to comply with data processing principles | --Articles: Art. 5 (1) c) GDPR |
| 2019-01-10 | Company | €388 | GDPR | Czech Data Protection Authority (UOOU) | Czech Republic | Non-compliance with lawful basis for data processing | The employer complained that the former company where he/she worked for refused ...The employer complained that the former company where he/she worked for refused to delete personal information posted on Facebook. Even after the termination of the employment contract, the company did not delete the personal information of the former employee. Articles: Art. 6 GDPR |
| 2018-10-25 | Not available | €388 | GDPR | Czech Data Protection Auhtority (UOOU) | Czech Republic | Non-compliance with subjects' rights protection safeguards | Not available.Not available. Articles: Art. 15 GDPR |