Rotten Company

Coolblue B.V.

Approved Evidence

Added to Rotten Company: 8/21/2026
Conduct/Event period: April 2020–June 2020
Ongoing: No
Resolution status: Resolved
Resolution date: December 24, 2024
misconduct

Coolblue Fined €40,000 for Using Tracking Cookies Without Valid Consent

Summary

In December 2024, the Dutch Data Protection Authority announced a €40,000 fine against Coolblue for unlawfully processing personal data through cookies in 2020. The authority found that Coolblue collected webshop visitors' personal data without explicit consent. Its cookie statement assumed visitors agreed and consent boxes were pre-ticked. The authority said this violated the GDPR. Coolblue had changed its practices by June 2020. Source: Dutch Data Protection Authority https://autoriteitpersoonsgegevens.nl/search?keys=cookies&topic%5B0%5D=5000&topic%5B1%5D=4094&topic%5B2%5D=5146&topic%5B3%5D=5002&type%5B0%5D=information_page&type%5B1%5D=Nieuwsbericht

Evidence Weight
100.00
Severity: high
Recency Weight: 99.99928507308155
File Weight: 1