Rendered at 10:41:24 GMT+0000 (Coordinated Universal Time) with Cloudflare Workers.
john_strinlai 12 hours ago [-]
for perspective, €403M = ~30 hours of net income, or ~10 hours of revenue (based on 2025 numbers, current exchange rates).
jiggawatts 11 hours ago [-]
There was a lot of noise a few years back about Meta getting billion-euro fines over GDPR violations.
I looked it up: they paid almost none of the fines.
If you get a ticket from a speed camera, the government will garnish your wages if you don’t pay the fine. For trillion dollar organisations payment is apparently optional.
American companies fines tend to be highest since they are biggest and revenue affects the fine amount.
xethos 5 hours ago [-]
A European-only, or even one that only primarily serves Europeans, likely won't make it to the front page as easily on the moderately American-centric HN - which further makes it seem like the only companies getting sued in the EU are American
coldtea 11 hours ago [-]
Depends. Do you go and read European news about such cases, or just check HN when they post about a FAANG EU fine?
noworld 10 hours ago [-]
Pretty much the latter.
tremon 11 hours ago [-]
No, they also fine American companies in China and in Australia.
t0mpr1c3 10 hours ago [-]
Plus Canada and Japan.
10 hours ago [-]
profsummergig 10 hours ago [-]
Someone recently fined Facebook $17 Billion. It was on the front page of NYT for 6 days (like as if it was a huge "get").
About 1% of FB's market cap. And their sins get washed away.
Everybody wins.
At this rate, fining tech-cos will be a major source of revenue for governments. Everybody wins.
agos 5 hours ago [-]
Fines like these are not an absolution though
10 hours ago [-]
kingcauchy 10 hours ago [-]
It's like taxes with extra steps, except you get taxed for someone polluting you!
jacquesm 10 hours ago [-]
Except for the consumers of course, but who cares about them.
bobmarleybiceps 10 hours ago [-]
it's depressing how small google's / meta's fines are. should be a % of revenue or total stock valuation or something.
autoexec 10 hours ago [-]
That % should increase substantially with each violation too. It's hard to make fines hurt when the corporation you want to punish has more money than most countries.
fintechjock 11 hours ago [-]
The EU seems to live in a world all on its own. They can’t fine enough to actually change the behavior of big companies, but they can fine enough to kill their own startup culture.
I don’t feel bad for them anymore. Their voters seem to be fine with this status quo. And I get why other countries see these fines as trying to raise taxes by other means because it hasn’t and won’t change anything.
autoexec 11 hours ago [-]
> They can’t fine enough to actually change the behavior of big companies
Of course they can fine enough. They just don't, which is why you see companies get fined again and again profiting from each violation.
The real issue is that fines are hard to set against companies with more money than they could ever need. What we need is for more CEOs to go to prison, but that's hard to do when the company's CEO is a citizen of another country.
bertmuir 10 hours ago [-]
Can you think of even 10 notable cases of startups being killed by fines? Let alone the 1,000+ you would need to identify to justify the claim.
I can't think of a single one. It barely registers as a risk.
Although I can think of several US startups that bankrupted themselves with fines for fraud etc....
fintechjock 9 hours ago [-]
The startup culture is what is killed by fines. It’s not possible to count how many companies are not started because of over regulation
xethos 5 hours ago [-]
The very same startup culture of "Screw the law, we could make a lot of money" hasn't exactly endeared me to it
chrisjj 10 hours ago [-]
> they can fine enough to kill their own startup culture
But they don't.
sam345 11 hours ago [-]
Exactly
tempodox 12 hours ago [-]
They need to multiply by 100 to move that fine out of “cost of doing business” range.
autoexec 11 hours ago [-]
They should multiply by 100 and then by another 100 with each violation. That'd help prevent companies from racking up fine after fine after fine. The real solution is to lock executives behind bars, but if the CEO is a citizen of another country you're kind of stuck with fines and bans
ocdtrekkie 11 hours ago [-]
They just need to ban these companies from operating in their countries. They are fundamentally burdens on society run by bad people.
Your best case scenario with fines is getting them into the narrow definition of compliance just until a new "innovation" gives them a different way to conduct the same abuse while evading the letter of previous judgments.
autoexec 10 hours ago [-]
This works best when you've got the ability to opt out of using those companies. If there's no meaningful replacement for a company's services or the entire internet is infested by it to the point where it's unavoidable a ban isn't going to do much good.
What would a ban on Google look like if people still want to email others using gmail accounts, watch youtube, or use android devices? What would a ban on cloudflare look like when all of your nation's traffic passes through them? One way or another these companies will end up with vast amounts of your people's data and the EU should be able to hold them accountable somehow for holding, selling, or using it in ways that violate their laws. Fines are pretty much the only lever they have to pull.
flir 10 hours ago [-]
Result would be Balkanizing the internet. The cure might be worse than the disease.
mistrial9 12 hours ago [-]
there might be an oversight component of the settlement that is not prominent in the press releases
tremon 11 hours ago [-]
This is a judgement from the DPC in Ireland, which has a history of reluctance [0] when it comes to enforcing the GDPR on US corporations, e.g. in [1] they even had to be ordered by a court to start investigating. I don't see the Irish DPC voluntarily choosing to take on more oversight here.
I looked it up: they paid almost none of the fines.
If you get a ticket from a speed camera, the government will garnish your wages if you don’t pay the fine. For trillion dollar organisations payment is apparently optional.
Source?
So far they’ve paid something like €20 million out of €4.0 billion in GDPR fines.
The justice system is slow, that's why the fines are slow to be collected, that's all.
https://www.enforcementtracker.com/ETid-3171 Yangoo. UAE.
https://www.enforcementtracker.com/ETid-1912 Criteo. French.
https://www.enforcementtracker.com/ETid-3162 Intesa Sanpaolo. Italian.
https://www.enforcementtracker.com/ETid-2864 Shein. Chinese.
https://www.enforcementtracker.com/ETid-2306 Enel Energia. Italian.
American companies fines tend to be highest since they are biggest and revenue affects the fine amount.
About 1% of FB's market cap. And their sins get washed away.
Everybody wins.
At this rate, fining tech-cos will be a major source of revenue for governments. Everybody wins.
I don’t feel bad for them anymore. Their voters seem to be fine with this status quo. And I get why other countries see these fines as trying to raise taxes by other means because it hasn’t and won’t change anything.
Of course they can fine enough. They just don't, which is why you see companies get fined again and again profiting from each violation.
The real issue is that fines are hard to set against companies with more money than they could ever need. What we need is for more CEOs to go to prison, but that's hard to do when the company's CEO is a citizen of another country.
I can't think of a single one. It barely registers as a risk.
Although I can think of several US startups that bankrupted themselves with fines for fraud etc....
But they don't.
Your best case scenario with fines is getting them into the narrow definition of compliance just until a new "innovation" gives them a different way to conduct the same abuse while evading the letter of previous judgments.
What would a ban on Google look like if people still want to email others using gmail accounts, watch youtube, or use android devices? What would a ban on cloudflare look like when all of your nation's traffic passes through them? One way or another these companies will end up with vast amounts of your people's data and the EU should be able to hold them accountable somehow for holding, selling, or using it in ways that violate their laws. Fines are pretty much the only lever they have to pull.
[0] https://arstechnica.com/tech-policy/2021/09/ireland-fails-to...
[1] https://cooltechzone.com/news/court-irish-dpa-must-investiga...