Italian Data Protection Authority (Garante) · 17 April 2026
Postepay S.p.a.
Non-compliance with general data processing principles
Fine€5,877,000Fine issued
- Regulator
- Italian Data Protection Authority (Garante)
- Decided
- 17 April 2026
- Country
- Italy
- Sector
- Finance, Insurance and Consulting
- Regulator’s reference
- Not recorded
- Fino case number
- 2026/IT/055
What happened
Nobody has summarised this decision yet. The regulator’s own decision is linked below.
Rules involved
- Art. 5Principles relating to processing of personal dataRead →
- Art. 6Lawfulness of processingRead →
- Art. 13Information to be provided where personal data are collected from the data subjectRead →
- Art. 25Data protection by design and by defaultRead →
- Art. 28ProcessorRead →
- Art. 32Security of processingRead →
- Art. 35Data protection impact assessmentRead →
- Accountability
- DPIA
- Data principles
- Data security
- Processor obligations
- Transparency
- Unlawful processing
Sources
The facts on this page come from the sources above, as they recorded them. Nothing has been estimated or filled in. Not legal advice.
Spotted a mistake? Write to angelillolorenzo@gmail.com and quote 2026/IT/055.