Hotel – €16,000 Fine (Germany, 2024)

€16,000Bundesbeauftragter für den Datenschutz1 January 2024Germany
final
Fine

General GDPR enforcement action

This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.

A hotel in Hamburg was fined EUR 16,000 for processing guest ID card data without a legal basis. This is significant because it emphasizes that businesses must have a valid reason to collect and use personal information. The hotel was penalized for not following data protection rules.

What happened

The DPA imposed a fine of EUR 16,000 on a hotel for processing ID card data without a legal basis.

Who was affected

Guests whose ID card information was processed by the hotel were affected by this violation.

What the authority found

The authority found that the hotel lacked a valid legal basis for processing the personal data of its guests.

Why this matters

This ruling underscores the necessity for businesses to have clear legal grounds for collecting personal data. Hotels and similar businesses should review their data handling practices to ensure compliance.

Source verified 13 March 2026
authority corrected
verified correct
Full Legal Summary
Detailed

The DPA of Hamburg has imposed a fine of EUR 16,000 on a hotel for processing ID card data without a legal basis.

Related Enforcement Actions (0)

No other enforcement actions found for Hotel in DE

This is the only recorded action for this entity in this jurisdiction.

Details

Fine Date

1 January 2024

Authority

Bundesbeauftragter für den Datenschutz

Fine Amount

€16,000

Enforcement Tracker ID

ETid-2435

About this data

Data: CMS GDPR Enforcement Tracker
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. Hotel - Germany (2024). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: