🇮🇹 Italy compliance

Software whistleblowing per Italia

In Italia, il Decreto Legislativo 24/2023 recepisce la Direttiva UE 2019/1937 e obbliga le aziende con 50+ dipendenti (dal 17 dicembre 2023) a istituire un canale interno di segnalazione riservato. Le segnalazioni devono essere riscontrate entro 7 giorni e gestite con feedback sostanziale entro 3 mesi. Le sanzioni amministrative per inadempienza arrivano a €50,000.

Confidly is a GDPR-compliant whistleblowing channel built for companies in Italy (Italia) operating under Decreto Legislativo 24/2023 (Dlgs 24/2023). The intake form is auto-configured with the categories and disclosures Dlgs 24/2023 requires. Reporters can attach audio or video oral statements to a web submission; a native phone-hotline or voicemail channel is on roadmap. The mandatory 7-day acknowledgement and 3-month feedback updates are automated. Set up in 15 minutes. Hosted in the EU. Used by compliance teams from 50 to 5,000 employees.

Law Decreto Legislativo 24/2023
In force since 15 July 2023
Who must comply 50+ employees (since 17 Dec 2023)
Enforcement Autorità Nazionale Anticorruzione (ANAC)
Max fine €50,000
Companies affected ~40,000 companies with 50+ employees

What Dlgs 24/2023 requires you to do

Decreto Legislativo 24/2023 transposes the EU Whistleblower Directive 2019/1937 into Italy national law. The core obligations for companies above the threshold (50+ employees (since 17 Dec 2023)):

In Italy, enforcement sits with Autorità Nazionale Anticorruzione (ANAC). Maximum fines for non-compliance reach €50,000.

Estimate your exposure under Dlgs 24/2023 with the fines calculator.

How Confidly covers Dlgs 24/2023

What does Confidly cost in Italy?

Three plans, EUR-priced (VAT reverse-charged for EU B2B). Pick a tier by company size; everything else is included.

Frequently asked questions: Dlgs 24/2023

Is a whistleblowing channel mandatory in Italy?
Yes. Decreto Legislativo 24/2023 (Dlgs 24/2023), the Italy transposition of EU Directive 2019/1937, requires companies with 50+ employees (since 17 Dec 2023) to operate a confidential internal whistleblowing channel. The law has been in force since 15 July 2023.
What are the fines for non-compliance with Dlgs 24/2023?
Maximum administrative fines under Dlgs 24/2023 reach €50,000. Enforcement is carried out by Autorità Nazionale Anticorruzione (ANAC). Fines apply both for failing to establish a channel and for retaliation against reporters.
Does Dlgs 24/2023 require anonymous reporting?
Dlgs 24/2023 permits anonymous reporting where Italy national law allows. Confidly's reporter UI issues a server-side case code and reporter-only secret (no email, IP address, or browser identifier is stored), so reporters can submit and follow up entirely anonymously.
What are the timelines under Dlgs 24/2023?
Companies must acknowledge a report within 7 days of receipt and provide substantive feedback to the reporter within 3 months. Confidly's dashboard tracks both SLAs with automatic reminders.
Is GDPR satisfied by Dlgs 24/2023 compliance?
Dlgs 24/2023 compliance and GDPR are complementary, not equivalent. Confidly is hosted entirely in the EU, signs a GDPR-compliant Data Processing Agreement, and runs an append-only audit log that satisfies both Autorità Nazionale Anticorruzione (ANAC) inspections and Article 30 GDPR records.
How long does it take to deploy a whistleblowing channel for Italy?
15 minutes for the channel itself. Branding, IT, EN translations, and policy import take an additional 1-2 hours. Most Italy customers go live the same day they sign up.

Starter

Legally compliant on day one. For up to 100 employees.

39 /mo
Billed annually (€468/yr)
  • 1 channel, up to 100 employees
  • Country-specific intake (HinSchG, Loi Sapin II, D.lgs 24, Ley 2, Wbk)
  • Audio and video attachments (oral statements upload alongside documents)
  • Auto reporter status updates at 7 days and 3 months (Directive Art. 9)
  • AI summary + severity hint, anonymous two-way chat
  • EU data hosting, GDPR DPA, metadata-stripped uploads
Start free trial
Most popular

Pro

Investigations, not just intake. For 100 to 500 employees.

124 /mo
Billed annually (€1488/yr)
  • Everything in Starter
  • Up to 500 employees, AI in 25+ languages, SSO (SAML / Google / M365)
  • AI case clustering: surfaces when multiple anonymous reports describe the same pattern
  • Custom investigation playbooks + auto-escalation rules + conflict-of-interest detector
  • Native HRIS sync (Personio, BambooHR) + Slack and Teams alerts
  • WhatsApp + SMS intake, auto-generated annual compliance report (country-tailored PDF)
Start free trial

Enterprise

Group structures, sovereign data, your brand.

332 /mo
Billed annually (€3984/yr)
  • Everything in Pro
  • Up to 5 channels, 2,000 employees, per-channel EU residency (DE→DE, FR→FR) + custom retention
  • White-label intake on your domain (speakup.acme.com) with custom DPA and branding
  • Multi-entity console for holdings: isolated audit trails per subsidiary
  • External ombudsperson seats: time-boxed lawyer or auditor access per case
  • SCIM, REST API, webhooks, BYOK encryption, dedicated CS, 99.9% SLA
Start free trial

Other EU countries

Compliance guides for the other 26 EU + EEA member states:

Get Dlgs 24/2023-compliant in 15 minutes

14-day free trial. EU-hosted. No credit card. Cancel anytime.

Multi-entity? Talk to us →