Changeflow GovPing Data Privacy & Cybersecurity Italian DPA Press Releases 2008–2026: Fines, Ba...
Routine Notice Added Final

Italian DPA Press Releases 2008–2026: Fines, Bans, AI Actions

Favicon for www.garanteprivacy.it Italy Garante Privacy
Detected
Email

Summary

The Italian Data Protection Authority (Garante) publishes an index of press releases from 2008–2026 documenting enforcement actions, investigations, and guidance on data protection and AI. Notable actions include Amazon worker data record-keeping order (2026), Clearview AI €20M fine and biometric ban (2022), Enel Energia €26.5M telemarketing fine (2022), Glovo €2.6M algorithmic discrimination fine (2021), Google Analytics ban (2022), DeepSeek block (2025), and ChatGPT restrictions (2023). The index captures nearly two decades of Italian DPA enforcement activity spanning tech platforms, energy companies, and AI systems.

Published by Italian DPA on garanteprivacy.it . Detected, standardized, and enriched by GovPing. Review our methodology and editorial standards .

What changed

The Garante Privacy press room index catalogs press releases issued between 2008 and 2026, summarizing enforcement actions, investigations, and guidance. Key enforcement actions documented include: Clearview AI fined €20 million with biometric data ban (2022); Enel Energia fined €26.5 million for telemarketing violations (2022); Glovo fined €2.6 million for discriminatory algorithms (2021); and Amazon ordered to stop worker data record-keeping (2026). AI-specific actions include DeepSeek blocked January 2025, ChatGPT temporarily suspended March 2023 with later reinstatement, and Clothoff app ordered to stop undressing feature (October 2025). Google Analytics use banned June 2022 for inadequate US data transfer safeguards.

Affected entities include technology companies, AI developers, telemarketing firms, delivery platforms, and employers. Compliance teams monitoring Italian and EU data protection obligations should review this index to understand the Garante's enforcement patterns, particularly regarding AI systems, worker surveillance, telemarketing consent, and international data transfers. The authority has demonstrated active enforcement against both large US tech platforms and domestic companies.

Archived snapshot

Apr 18, 2026

GovPing captured this document from the original source. If the source has since changed or been removed, this is the text as it existed at that time.

Press room



Press room


Print

PDF

Sharing

A selection of the main press releases and interviews issued by the Italian DPA over the years, in English

PRESS RELEASES

Italy’s Data Protection Authority orders Amazon to stop record-keeping of workers’ personal data
- 24 february 2026

Private videos - The Italian Data Protection Authority warns CamHub: no to the Disclosure of images stolen from italians' homes
- 6 october 2025

Deepfake: Italian Data Protection Authority orders immediate stop to Clothoff, the app that undresses people
- 3 october 2025

- Artificial Intelligence — The Italian Data protection authority warns: Meta to start using personal data to train its systems starting late may unless users object
- 29 april 2025

- The Italian Personal Data Protection Authority Launches Investigation into Lusha
- 8 april 2025

- Artificial Intelligence: The Italian Data Protection Authority blocks DeepSeek
- 30 january 2025

- AI: The Italian Data Protection Authority requests information from Deepseek. Possible risk for millions of people’s data in Italy
- 28 january 2025

- Chatgpt, The Italian Data Protection Authority closes the preliminary investigation
- 20 december 2024

- Artificial Intelligence: the Italian Data Protection Authority Issues Guidance to Protect Personal Data from Web Scraping
- 30 may ** 2024

- Artificial intelligence: the Italian Data Protection Authority writes to Parliament and Government
- 24 march ** 2024

- Artificial intelligence: the Italian Data Protection Authority opens an investigation into OpenAI’s ‘Sora’
- 8 march ** 2024

- Telemarketing: Italian Data Protection Authority sanctions Enel Energia
- 29 February 2024

- ChatGPT: Italian DPA notifies breaches of privacy law to OpenAI
- 29 January 2024

- Artificial Intelligence: The Next G7 DPA Conference in Rome
- 30 november 2023

- Pornhub under the lens of the Garante
- 11 july 2023

- ChatGPT: OpenAI reinstates service in Italy with enhanced transparency and rights for european users and non-users
- 28 april 2023

- ChatGPT: Italian SA to lift temporary limitation if OpenAI implements measures
- 12 april 2023

- ChatGPT: Meeting Tomorrow Between OpenAI and Italian SA
- 4 april 2023

- Artificial intelligence: stop to ChatGPT by the Italian SA. Personal data is collected unlawfully, no age verification system is in place for children
- 31 March 2023

- Artificial intelligence: italian SA clamps down on ‘Replika’ chatbot
- 3 february 2023

- Privacy: Memorandum of Cooperation between the Italian SA and the Georgian DP Service
- 7 october 2022

- Italian SA Requests Clarification from Facebook on Steps Taken Regarding Italian National Elections
- 22 september 2022

- Italian SA bans use of Google Analytics. No adequate safeguards for data transfers to the USA
- 23 june 2022

- Ukraine: Italian SA probing Kaspersky antivirus. Processing of data on Italian users to be verified
- 18 march 2022

- Facial recognition: Italian SA fines Clearview AI eur 20 million. Bans use of biometric data and monitoring of Italian data subjects
- 9 march 2022

- Aggressive telemarketing: Italian SA fines Enel Energia EUR 26.5 million Consumers’ data were used without their consent and the accountability principle was not complied with
-19 january 2022

- ‘Transparent information’: winners of the contest launched by Italian SA announced
-15 december 2021

- Smart glasses: Italian SA met Facebook and Luxottica Both companies say they are ready to start awareness-raising and information campaigns in collaboration with the Italian SA to foster responsible use
-17 september 2021

- Facial recognition: the SARI Real Time system is not compliant with privacy laws
-16 april 2021

- Cambridge Analytica: Fact-finding over,Italian SA ready to impose sanctions - 7 february 2019

- Cambridge Analytica – The Italian Dpa met Facebook and asked for clarifications on any breaches committed in Italy **** - 24 april 2018

- Cambridge Analytica - "Sorry is not enough": WP29 establishes a Social Media Working Group - 11 april 2018

- Letter to Ms. Andrea Jelinek Chair, Article 29 Working Party - 21 march 2018

- Uber: Statement by Antonello Soro, President of the Italian Data Protection Authority, on the Hacking Attack - 22 november 2017

- Schools: Full Marks in Privacy
New Guidance by the Italian DPA on How to ‘Teach and Respect Privacy in Schools´
- 7 november 2016

- European Data Protection Day – "Connected Planet: The New Dimension of Privacy" - 28 january 2015

- Medical Apps: More Transparency Is Needed on Data Use - 10 september 2014

- More Safeguards for Google Users in Italy: The Italian Garante Draws the Line - 21 july 2014

- Social Privacy: How to Protect Yourselves in the Age of Social Networks - 23 may 2014

- Interception of Communications by Judicial Authorities: Enhanced Security Measures To Be Implemented - 24 july 2013

- NO to Spam, YES to Consumer-"Friendly" Marketing - 23 july 2013

- "GET SMART!" : A video tutorial from the Italian DPA to protect privacy on smartphones and tablets - 16 april 2013

- Google: The Italian Dpa Initiates a Proceeding to Establish Compliance with Italian Legislation - 02 april 2013

INTERVIEWS

- Excerpts from an interview to the President of the Italian SA, Antonello Soro, with the Italian daily "Corriere della Sera", on data protection issues and COVID-19 measures - 18 march 2020



Personal Data Protection Code

Containing provisions to adapt the national legislation to Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016

view document


Regulation (EU) 2016/679

Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation) Corrigendum to Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation)

Get daily alerts for Italy Garante Privacy

Daily digest delivered to your inbox.

Free. Unsubscribe anytime.

About this page

What is GovPing?

Every important government, regulator, and court update from around the world. One place. Real-time. Free. Our mission

What's from the agency?

Source document text, dates, docket IDs, and authority are extracted directly from Italian DPA.

What's AI-generated?

The summary, classification, recommended actions, deadlines, and penalty information are AI-generated from the original text and may contain errors. Always verify against the source document.

Last updated

Classification

Agency
Italian DPA
Instrument
Notice
Legal weight
Non-binding
Stage
Final
Change scope
Minor

Who this affects

Applies to
Technology companies Employers Healthcare providers
Industry sector
5112 Software & Technology
Activity scope
Data protection enforcement AI system regulation Worker data monitoring
Geographic scope
IT IT

Taxonomy

Primary area
Data Privacy
Operational domain
Compliance
Compliance frameworks
GDPR
Topics
Artificial Intelligence Consumer Protection Employment & Labor

Get alerts for this source

We'll email you when Italy Garante Privacy publishes new changes.

Free. Unsubscribe anytime.

You're subscribed!