Poste Italiane S.p.a. – €12,501,000 Fine (Italy, 2026)
Poste Italiane was fined over 12 million euros for improperly accessing and processing users' personal data without proper consent. This case shows that companies must follow strict rules when handling personal data, especially regarding user consent. It serves as a warning to businesses about the serious consequences of violating data protection laws.
What happened
Poste Italiane unlawfully accessed and processed personal data on users' devices for antifraud measures without proper consent.
Who was affected
Users whose personal data was accessed and processed by Poste Italiane.
What the authority found
The authority found that Poste Italiane violated multiple GDPR rules related to data processing and user consent.
Why this matters
This significant fine illustrates the heavy penalties companies can face for failing to comply with data protection regulations. It highlights the need for businesses to ensure they have valid consent before processing personal data.
GDPR Articles Cited
View original scraped data
Original data from scraper before AI verification against source document.
National Law Articles
Entities Involved
The case involves unlawful access and processing of personal data on users' devices for antifraud measures, not directly related to cookie consent or tracking issues.
Violations (2)
Third-party tracking cookies or scripts are loaded without obtaining prior user consent.
Art. 13, 14 GDPR
The cookie banner uses misleading language to trick or pressure users into accepting cookies (dark patterns).
Art. 7 GDPR
Related Enforcement Actions (2)
Other enforcement actions involving Poste Italiane S.p.a. in IT
Fine
€12.5M
Similar Cases
Enforcement actions with similar violations
Details
Fine Date
17 April 2026
Authority
Garante per la protezione dei dati personali
Fine Amount
€12,501,000
GDPRhub ID
gdprhub-9958About this data
Cite as: Cookie Fines. Poste Italiane S.p.a. - Italy (2026). Retrieved from cookiefines.eu
Last updated: