Restaurant – €50,100 Fine (Germany, 2020)

€50,100Bundesbeauftragter für den Datenschutz1 January 2020Germany
final
Fine

General GDPR enforcement action

This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.

A restaurant in Germany was fined for not having enough security measures to protect customer information. This matters because it shows that businesses must take data security seriously to avoid penalties. The fine was EUR 50,100, highlighting the financial risks of poor data protection.

What happened

The restaurant failed to implement sufficient technical and organizational measures to ensure information security.

Who was affected

Customers whose personal information was at risk due to the restaurant's inadequate security practices were affected.

What the authority found

The authority found that the restaurant did not meet the requirements for information security under GDPR Article 32.

Why this matters

This case emphasizes the importance of strong data security measures for all businesses. Companies should regularly review their security protocols to protect customer data and avoid hefty fines.

GDPR Articles Cited

AI-verified

Art. 32(GDPR)
View original scraped data
Art. 32(GDPR)

Original data from scraper before AI verification against source document.

Source verified 19 August 2026
authority corrected
Full Legal Summary
Detailed

Insufficient technical and organisational measures to ensure information security

Details

Fine Date

1 January 2020

Authority

Bundesbeauftragter für den Datenschutz

Fine Amount

€50,100

Enforcement Tracker ID

1049

About this data

Data: CMS GDPR Enforcement Tracker
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. Restaurant - Germany (2020). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: