Ama S.p.a. – €239,000 Fine (Italy, 2023)

€239,000Garante per la protezione dei dati personali27 April 2023Italy
final
ePrivacy
Fine

Ama S.p.a. was fined for improperly processing health data related to abortion. This ruling stresses the need for strict compliance with data protection laws, especially regarding sensitive information.

What happened

Ama S.p.a. processed health data without proper authorization.

Who was affected

Individuals whose health data related to abortion was processed without consent.

What the authority found

The Garante determined that Ama S.p.a. violated GDPR by not following proper data processing rules.

Why this matters

This case highlights the serious consequences of mishandling sensitive data. Companies must ensure they have the right permissions in place when dealing with health-related information.

GDPR Articles Cited

AI-verified

Art. 28(GDPR)
Art. 29(GDPR)
Art. 32(GDPR)
View original scraped data
Art. 28(GDPR)
Art. 29(GDPR)
Art. 32(GDPR)

Original data from scraper before AI verification against source document.

Source verified 2 April 2026
verified correct
Full Legal Summary
Detailed

The case involved unauthorized processing of health data related to abortion, with no mention of cookies or consent mechanisms.

Violations (1)

Cookies Placed Before Consent
critical

Non-essential cookies (tracking, advertising) are placed on the user's device before obtaining valid consent.

Art. 6(1) GDPR

Related Enforcement Actions (0)

No other enforcement actions found for Ama S.p.a. in IT

This is the only recorded action for this entity in this jurisdiction.

Details

Fine Date

27 April 2023

Authority

Garante per la protezione dei dati personali

Fine Amount

€239,000

GDPRhub ID

gdprhub-6059

About this data

Data: GDPRhub (noyb.eu)
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. Ama S.p.a. - Italy (2023). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: