Vodafone Romania S.A. – €4,000 Fine (Romania, 2025)

€4,000Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal23 June 2025Romania
final
Fine

General GDPR enforcement action

This case relates to broader data protection obligations, not specifically to cookie or consent banner compliance. It is not included in cookie statistics or the Risk Calculator.

Vodafone Romania S.A. was fined for not having enough security measures to protect personal data, which led to a data breach. This is crucial because it highlights the need for companies to keep customer data safe.

What happened

Vodafone Romania failed to implement adequate security measures, resulting in a data breach.

Who was affected

Customers of Vodafone Romania whose personal data was compromised in the breach.

What the authority found

The Romanian Data Protection Authority ruled that Vodafone did not meet GDPR requirements for data security.

Why this matters

This case serves as a warning for all businesses about the importance of data security. Companies must invest in proper security measures to protect customer information and avoid fines.

GDPR Articles Cited

AI-verified

Art. 25(1) GDPR
View original scraped data
Art. 25(1) GDPR
(2) GDPR

Original data from scraper before AI verification against source document.

Source verified 15 March 2026
articles corrected
Full Legal Summary
Detailed

The Romanian DPA has imposed a fine of EUR 4,000 on Vodafone Romania S.A. The controller failed to implement sufficient technical and organisational measures to ensure data security, resulting in a data breach.

Details

Fine Date

23 June 2025

Authority

Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal

Fine Amount

€4,000

About this data

Data: CMS GDPR Enforcement Tracker
Licensed under CC BY-NC-SA 4.0
AI-verified and classified

Cite as: Cookie Fines. Vodafone Romania S.A. - Romania (2025). Retrieved from cookiefines.eu

Report Inaccuracy

Last updated: