Skip to content
Briefings are running a touch slower this week while we rebuild the foundations.See roadmap
European Tech Sovereignty
17MAY

Brussels fines Apple, Meta, and X €820m

3 min read
14:28UTC

The European Commission imposed its largest batch of platform fines under the DMA and DSA, totalling €820m across three US tech companies.

TechnologyDeveloping
Key takeaway

The EU's first major DMA and DSA fines total €820m and confirm Brussels will use financial enforcement.

The European Commission fined Apple €500m for preventing developers from communicating freely with consumers, and Meta €200m for its pay-or-consent advertising model, under the Digital Markets Act 1. Separately, X (formerly Twitter) received a €120m fine under the Digital Services Act for deceptive verification practices, opaque advertising, and blocking researcher data access 2. The cumulative total: €820m.

The Apple fine targeted the company's App Store anti-steering rules, which prevented app developers from telling users about cheaper purchasing options outside the App Store. Meta's fine addressed a consent mechanism that forced European users to either pay for an ad-free experience or accept personalised tracking. Both cases concerned practices the companies had argued were compliant with the DMA's requirements.

The fines are large but survivable for companies of this scale. Apple's annual revenue exceeds $380bn. The enforcement significance is procedural: these are the first substantial DMA penalties, and they confirm that the Commission will use financial sanctions rather than relying on compliance deadlines and dialogue. The potential fine exposure across all designated gatekeepers exceeds €100bn if the Commission calculates penalties at the maximum 10% of global turnover. That ceiling gives Brussels considerable leverage in ongoing and future investigations.

Deep Analysis

In plain English

The European Union has two major laws that regulate large technology companies: the Digital Markets Act (DMA) targets the biggest digital platforms; the tech 'gatekeepers'; and requires them to give users and businesses more choice and fairness. The Digital Services Act (DSA) targets harmful or deceptive content and practices on platforms. In early 2026, the European Commission fined Apple €500 million under the DMA for preventing app developers from telling their customers about better deals available outside Apple's own App Store. Apple controls the iPhone's entire app distribution system, and the EC found that Apple was using that control to charge developers up to 30% commission while blocking them from directing customers elsewhere. Meta received a €200 million fine for its 'pay or consent' advertising model; which forced users to either pay a subscription fee or agree to targeted advertising. X (formerly Twitter) was fined €120 million for its blue checkmark verification system, which critics said misled users about who was trustworthy, and for blocking researchers from accessing public data.

Deep Analysis
Root Causes

The DMA's gatekeeper designation framework creates a structural asymmetry: the six designated gatekeepers (Alphabet, Amazon, Apple, ByteDance, Meta, Microsoft) are all US or Chinese companies. No European company meets the thresholds ($75bn market capitalisation, 10,000 active business users, 45m active end users in the EU).

This is not a design flaw; it reflects the actual distribution of digital market power; but it means DMA enforcement will exclusively target non-European entities indefinitely, creating the trade friction the US Section 301 investigation is designed to address.

X's €120m DSA fine is structurally different: it targets deceptive practices (the blue checkmark verification system that previously distinguished public figures from ordinary accounts) and researcher data access. The DSA applies a broader set of platforms, including Twitter/X, YouTube, and other large online platforms with more than 45m EU users. The €120m figure reflects DSA's lower fine ceiling relative to DMA.

What could happen next?
  • Consequence

    The Apple fine scale signals DMA enforcement has crossed the threshold where gatekeeper compliance is more economically rational than continued litigation, likely accelerating Apple's implementation of DMA interoperability requirements.

    Short term · 0.75
  • Risk

    The US Section 301 investigation framing DMA enforcement as 'economic warfare' raises the risk of tariff or trade retaliation that pressures the Commission to moderate enforcement intensity.

    Medium term · 0.6
  • Opportunity

    DMA cloud interoperability mandates, if upheld after gatekeeper legal challenges, create structural switching cost reductions that benefit European cloud providers disproportionately.

    Long term · 0.65
First Reported In

Update #1 · Europe's chip ambitions meet reality

CNBC· 13 Apr 2026
Read original
Different Perspectives
OpenForum Europe / open-source community
OpenForum Europe / open-source community
The EUR 350m Sovereign Tech Fund has no Commission host, no budget line, and no commissioner's name attached six weeks after the April conference, while Germany is already paying maintainers to staff international standards bodies. The CRA open-source guidance resolves contributor liability but leaves the financial-donations grey area open with the 11 September reporting clock running.
ASML / Christophe Fouquet
ASML / Christophe Fouquet
ASML's Q2 guidance miss of roughly EUR 300m below consensus reflects DUV revenue compression set by US export controls, not European policy. Fouquet said 2026 guidance accommodates potential outcomes of ongoing US-China trade discussions; a bipartisan US bill to tighten DUV sales further would accelerate the cross-subsidy thinning Chips Act II's equity authority is designed to address.
Anne Le Henanff / French G7 Presidency
Anne Le Henanff / French G7 Presidency
Le Henanff chairs the 29 May Bercy ministerial two days after Brussels adopts the Tech Sovereignty Package, making the G7 communique the first international read of the Omnibus enforcement split and CAIDA's scope. France's Cloud au Centre doctrine is already operational via the Scaleway Health Data Hub contract.
German federal government
German federal government
Berlin operationalises sovereignty through procurement mandates (the ODF requirement and the Sovereign Tech Standards programme) rather than waiting for Commission legislation. The Bundeskartellamt has still not received the Cohere-Aleph Alpha merger filing, leaving Germany's flagship AI champion in structural limbo six weeks after the deal resolved.
US Trade Representative
US Trade Representative
The USTR Section 301 investigation into EU digital rules closes with a 24 July 2026 final determination. CAIDA's public-sector cloud restriction sits within the criteria that triggered the 2020 Section 301 action against France's digital services tax, and the US has not signalled whether the Thales-Google S3NS arrangement resolves CLOUD Act jurisdiction concerns.
CISPE / Valentina Mingorance
CISPE / Valentina Mingorance
CISPE shipped its own pass-fail sovereignty badge in April to establish an industry-auditable floor the Commission could adopt. Whether CAIDA inherits the CISPE binary or the multi-tier SEAL approach will determine whether certification is enforceable by public contracting authorities or requires Commission discretion.