Skip to main content
EUR 30,500,000GDPREU

Netherlands DPA v. Clearview AI: €30.5M Fine for Illegal Biometric Database

Entity
Clearview AI
Penalty
EUR 30,500,000
Status
enforced
Date
May 16, 2024

Summary

The Dutch Data Protection Authority found Clearview AI built an illegal database of more than 30 billion facial images scraped from the internet, converting each into a unique biometric code, and processed Dutch residents' biometric data without any legal basis under the GDPR.

Details

  • Violation: Illegal biometric data collection and processing
  • Penalty: €30.5 million fine + additional penalty payments up to €5.1M for non-compliance
  • Framework: GDPR (Articles 5, 6, 9 — special category data)
  • Status: Fine issued May 2024; Clearview did not contest

Key Takeaways

  1. Scraping facial images from the internet for AI training is illegal under GDPR
  2. Biometric data is special category data requiring explicit consent
  3. Non-compliance penalties escalate with additional penalty payments
  4. Clearview AI has been fined across multiple EU countries and globally

Related Enforcement

UK ICO fined Clearview £7.5M. French CNIL fined Clearview €20M. Italy, Australia, Canada, and Greece also took enforcement action. Clearview was effectively banned from operating in Europe.

Related Enforcement Actions