Linkedin Ireland Unlimited Company – Court Ruling (Ireland, 2026)

Court Ruling
DPA DPA20 April 2026Ireland
final
Court Ruling

General GDPR enforcement action

This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.

LinkedIn appealed a decision from the Irish Data Protection Commission, which found it had mishandled user data. This case is significant because it shows that even large companies can face serious scrutiny over their data practices.

What happened

LinkedIn was found to have infringed multiple GDPR articles related to user data processing.

Who was affected

8,540 LinkedIn users in France who filed a complaint regarding their data processing.

What the authority found

The DPA issued a reprimand and ordered LinkedIn to comply with data protection rules.

Why this matters

This case highlights the ongoing accountability of companies in handling personal data and the potential for significant penalties if they fail to comply with regulations.

National Law Articles

AI-identified

Section 142 DPA 2018
Section 150 DPA 2018
Decision AuthorityHigh Court
Reviewed AuthorityDPA
Source verified 23 May 2026
articles corrected
national law identified
amount discrepancy
authority corrected
Full Legal Summary
Detailed

The case arose from LinkedIn’s appeal against a decision of the Irish Data Protection Commission, the DPA, dated 22 October 2024. In that decision, the DPA found that LinkedIn had infringed GDPR Articles 5(1)(a), 6(1), 13(1)(c) and 14(1)(c). The DPA imposed a reprimand, an order requiring LinkedIn to bring processing into compliance, and three administrative fines totalling €310 million. The underlying DPA inquiry followed a complaint lodged by La Quadrature du Net with the French supervisory authority, CNIL, on behalf of 8,540 LinkedIn users in France. The complaint concerned LinkedIn’s processing of personal data for behavioural analysis and targeted advertising. CNIL referred the matter to the DPA because LinkedIn Ireland was subject to the Irish supervisory authority in the context of cross-border processing. The DPA investigation lasted more than six years. The DPA first notified LinkedIn of the inquiry on 20 August 2018. After several requests for information, submissions, a preliminary draft decision, a draft decision under Article 60 GDPR and comments from concerned supervisory authorities, the DPA adopted its final decision on 22 October 2024. LinkedIn then brought a statutory appeal under [https://www.irishstatutebook.ie/eli/2018/act/7/enacted/en/print sections 142 and 150 of the Data Protection Act 2018]. It also issued judicial review proceedings challenging aspects of the statutory scheme under the Constitution, the Charter and the ECHR. The High Court judgment did not decide the merits of the DPA’s GDPR findings. Instead, it dealt with four preliminary issues about the structure and standard of appeal. The key dispute was whether LinkedIn could challenge the entire DPA decision under section 142, because that decision included a fine, or whether section 142 was limited to the fine only. LinkedIn argued for a broader, unitary appeal. The DPA and the State argued that section 142 applied only to the administrative fine, while infringement findings and no

Outcome

Court Ruling

A ruling by a national court on a data-protection matter.

Related Cases (0)

No other cases found for Linkedin Ireland Unlimited Company in IE

This is the only recorded case for this entity in this jurisdiction.

Details

Ruling Date

20 April 2026

Authority

DPA DPA

About this data

Data: GDPRhub (noyb.eu)
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. Linkedin Ireland Unlimited Company - Ireland (2026). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: