Compliance Radar
Who was sanctioned, and for what?
Fines, court rulings and incidents from Europe, North America, Latin America, Asia-Pacific, Middle East and Africa: 1,993 cases from 43 jurisdictions, each with an official source and checked against that source before publication. Filter by country, area of law and sector. Click a chart to drill down one level.
Click a bar to drill down one level.
Where?
by authority- Office of the Australian Information Commissioner (OAIC) 2 cases 67 % ·
- Australian Securities and Investments Commission (ASIC) 1 case 33 % · €485,086
What for?
by area of lawAll areas of law
Who?
by companyWhen?
per quarter, by date of decision| Period | Cases | Total |
|---|---|---|
| Q4 2023 | 0 | – |
| Q1 2024 | 0 | – |
| Q2 2024 | 0 | – |
| Q3 2024 | 0 | – |
| Q4 2024 | 0 | – |
| Q1 2025 | 0 | – |
| Q2 2025 | 0 | – |
| Q3 2025 | 0 | – |
| Q4 2025 | 0 | – |
| Q1 2026 | 1 | – |
| Q2 2026 | 2 | €485,086 |
| Q3 2026 | 0 | – |
| Q4 2026 | 0 | – |
3 cases
28 Apr 2026 Canva Pty Ltd; Canva Operations Pty Limited; Canva Trading Pty Ltd; Fusion Books Pty LtdCanva group: AUD 792,000 in penalties for late annual financial reports €485,086
Four Australian companies of the Canva group did not lodge their financial reports for the 2024 financial year with ASIC by the due date of 30 April 2025; the consolidated report followed only on 27 March 2026. ASIC issued an infringement notice of allegedly AUD 198,000 to each company (AUD 792,000 in total); the notices were paid, which is not an admission of guilt.
Even fast-growing technology groups must monitor the reporting deadlines of every single group company.
Lodgement deadlines for the financial reports of all group companies
- Authority / court
- Australian Securities and Investments Commission (ASIC)
- Area of law
- Capital markets and financial supervision · Disclosure and reporting obligations
- Legal basis
- s 319(1) Corporations Act 2001 (Cth); Bußgeldbescheide nach s 1317DAM
- Action
- Fine
- Status of proceedings
- final
- Sector
- Telecoms, IT and software
- Published
- 6 May 2026
Original amount 792,000 AUD, converted at the ECB reference rate of 28 Apr 2026.
- ASIC 26-090MR: Canva Group pays $792,000 in infringement notices for failing to lodge financial reports on time Press release of an authority
- ASIC Infringement Notice B00442525 an Canva Pty Ltd (28 April 2026) Decision of an authority
- ASIC Infringement Notice B00442527 an Fusion Books Pty Ltd (28 April 2026) Decision of an authority
- ASIC Infringement Notices Register Official register or notice
Checked against the official source on 3 Oct 2026 · Direct link
Report an error
1 Apr 2026 IRE Pty Ltd (InspectRealEstate, Plattform 2Apply)2Apply operator IRE: order over excessive and unfair collection of renters’ data Order
The Privacy Commissioner found that the rental application platform 2Apply collected more personal information than necessary from March 2020 to March 2025, such as gender, student status, citizenship, visa expiry and previous living arrangements, and did so unfairly through design techniques such as “confirmshaming”, biased framing and bundled consent. The determination requires IRE to stop this collection within 60 days, engage an independent reviewer and report to the OAIC within twelve months on implementing the recommendations.
Online forms may only request necessary data and must not push users into disclosure through design tricks.
Data minimisation and fair design of online forms (dark patterns)
- Authority / court
- Office of the Australian Information Commissioner (OAIC)
- Area of law
- Data protection · Data subject rights and transparency
- Legal basis
- APP 3.2 und APP 3.5 (Privacy Act 1988 (Cth)); Feststellungen nach s 52(1A)
- Action
- Order
- Status of proceedings
- unknown
- Sector
- Telecoms, IT and software
- Mitigating circumstances
- IRE adapted its collection practices during the investigation without admitting a breach.
- Published
- 22 Apr 2026
- OAIC: RentTech platforms must stop unfair and excessive personal information collection, says Privacy Commissioner (22 April 2026) Press release of an authority
- Commissioner Initiated Investigation into IRE Pty Ltd (Privacy) [2026] AICmr 24 (1 April 2026) Decision of an authority
- OAIC: Privacy determinations Enforcement database of an authority
Checked against the official source on 3 Oct 2026 · Direct link
Report an error
20 Mar 2026 Singtel Optus Pty LtdOptus: unlisted numbers of 41,278 customers published in the phone directory Order
Singtel Optus asked customers who ported their number to Optus whether they wanted to appear in the phone directory, but between October 2015 and September 2019 it did not act on requests for an unlisted number, so that 41,278 affected customers remained published in the White Pages. The Privacy Commissioner found a breach of APP 11.1 because Optus did not remove a risk of errors it had been aware of throughout the period with reasonable steps such as regular system reconciliations, and declared that the company must not repeat this conduct. The regulator intends to decide on compensation separately in a representative complaint concerning the same conduct.
Known sources of error in legacy systems and in disclosures to third parties must be eliminated through regular reconciliations rather than tolerated for years.
Reliably implementing customers' privacy choices across systems and service providers
- Authority / court
- Office of the Australian Information Commissioner (OAIC)
- Area of law
- Data protection · Data breaches and data security
- Legal basis
- Privacy Act 1988 (Cth) s 13(1), APP 11.1; Erklärung nach s 52(1A)(a)
- Action
- Order
- Status of proceedings
- unknown
- Sector
- Telecoms, IT and software
- Published
- 11 Jun 2026
- Commissioner Initiated Investigation into Singtel Optus Pty Ltd (Privacy) [2026] AICmr 22 (20 March 2026) Decision of an authority
- OAIC: Privacy Commissioner finds against Optus in White Pages breach (11.06.2026) Press release of an authority
Checked against the official source on 3 Oct 2026 · Direct link