Skip to content
Italian Postal Service Fined $15 Million for Data Privacy Violations

Italian Postal Service Fined $15 Million for Data Privacy Violations

First seen 20 Apr 2026, 22:14 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •April 21, 2026 at 21:44 UTC
  • •Poste Italiane and Postepay fined a total of €12.5 million for data privacy violations.
  • •Investigation revealed invasive data processing practices not necessary for fraud prevention.
  • •Complaints leading to the investigation began in April 2024.

The Italian Data Protection Authority has fined Poste Italiane S.p.A. €6,624,000 ($7.8 million) and Postepay S.p.A. €5,877,000 ($7 million) for unlawfully processing personal data of millions of users. The investigation, initiated in April 2024, revealed that the BancoPosta and Postepay apps engaged in excessively invasive practices that interfered with user privacy, which were not essential for fraud prevention. The fines were imposed due to numerous complaints regarding these practices. The total fine amounts to approximately €12.5 million ($15 million). The ruling highlights ongoing concerns about data privacy compliance among financial service providers in Italy. Current status indicates that both companies are reviewing the ruling and may consider an appeal.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 172d ago How this analysis works

Timeline

2024-04-01
Investigation initiated following user complaints
2026-04-20
Fines imposed by the Italian Data Protection Authority

More articles in this cluster (5)

Following this threat?

Track BancoPosta in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed