Regulatory Watch  /  European Union  /  Fine
High impactFineIn effect

European data protection authorities fined Meta, Spotify, Criteo and others in 2023 for GDPR violations

Sources disagree
noyb gives penalty 1 EUR; event has 1,200,000,000 EUR.

In 2023, the Irish DPC ordered Meta to pay €390 million and later €1.2 billion, the Swedish DPA fined Spotify €58 million SEK, and the French CNIL fined Criteo €40 million for breaches of consent and data‑subject rights under EU law.

Why it matters: These large fines demonstrate heightened enforcement of GDPR obligations across Europe.

Summary generated from the sources below. Check the primary source before relying on it; this is not legal advice.

Sources
Annual Report 2023 out now!
noyb · primary source · Jul 29, 2024
Annual Report 2023 out now!
noyb · Jul 29, 2024
Details
JurisdictionEuropean Union
RegulatorEDPB
LawGeneral Data Protection Regulation
StatusIn effect
PublishedJuly 29, 2024
Effectivenot stated
PenaltyMeta was fined € 1.2 billion
OrganisationsMeta, Spotify, Criteo, Google (Google Analytics)
Topicsconsent, access, profiling, targeted advertising, ai governance
Datapersonal