Limit Call S.r.l.s. – €60,000 Fine (Italy, 2023)
General GDPR enforcement action
This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.
Limit Call S.r.l.s. was fined for making unsolicited phone calls without proper consent from users. The Italian data protection authority found that the company failed to follow rules about obtaining user consent for marketing calls. This ruling serves as a reminder for businesses to ensure they have valid consent before contacting potential customers.
What happened
Limit Call S.r.l.s. was fined for making unsolicited telephone calls without the necessary consent.
Who was affected
Individuals who received unsolicited phone calls from the company.
What the authority found
The authority found that the company violated multiple GDPR rules regarding consent and transparency in marketing.
Why this matters
This case underscores the importance of obtaining clear consent for marketing communications. Companies should review their practices to comply with data protection laws.
GDPR Articles Cited
View original scraped data
Original data from scraper before AI verification against source document.
National Law Articles
Limit Call S.r.l.s. (the controller) came under the scrutiny of the Italian DPA following a complaint alleging the reception of unsolicited telephone calls without the necessary consent of a complainant. In a previous decision, the DPA had already imposed an administrative fine of €10,000 on the controller for a breach of [https://www.garanteprivacy.it/codice Article 157 of the Italian privacy code], as the controller failed to cooperate with the DPA in the context of the same facts. To investigate further, the DPA conducted an on-site inspection at the controller's registered office on 23 and 24 May 2023. The primary objectives were to determine the origin of the complainants' personal data and evaluate the legal basis for the contested telephone calls. The controller, operating as a call center in the teleselling sector for electricity contracts, asserted that it obtained the complainants' contacts from a list provider in Moldova, from which it obtained a total of 100,000 contacts. Notably, no specific contract was signed with this list provider, prompting questions about the legitimacy of data acquisition. Following the investigation, the Italian DPA found the controller liable for multiple GDPR violations. Firstly, the call script used by the controller during promotional contacts lacked all the essential information required by Article 13 GDPR and Article 14 GDPR, violating data subjects’ rights. The DPA further found that the controller conducted these promotional contacts without the informed consent of the data subjects. Indeed, the controller failed to provide suitable documentation demonstrating the lawfulness of the acquisition of registry lists from the third party. Therefore, the controller breached Article 5(1)(a) GDPR, Article 6(1)(a) GDPR, Article 7 GDPR, and [https://www.garanteprivacy.it/codice Article 130 of the Italian privacy code], since the controller neglected to exercise proper control over the acquired lists, and failed to ensure complia
Violations (1)
Third-party tracking cookies or scripts are loaded without obtaining prior user consent.
Art. 13, 14 GDPR
Related Enforcement Actions (0)
No other enforcement actions found for Limit Call S.r.l.s. in IT
This is the only recorded action for this entity in this jurisdiction.
Similar Cases
Enforcement actions with similar violations
Details
Fine Date
30 November 2023
Authority
Garante per la protezione dei dati personali
Fine Amount
€60,000
GDPRhub ID
gdprhub-7563About this data
Cite as: Cookie Fines. Limit Call S.r.l.s. - Italy (2023). Retrieved from cookiefines.eu
Last updated: