Email GDPR Compliance Checker
Assess your email marketing program against GDPR requirements. Check your consent practices, data handling, subscriber rights processes, and overall compliance readiness.
GDPR Compliance Checklist
Check each item that applies to your email marketing program. Be honest — this is for your own assessment.
Consent
Privacy
Rights
Data Management
Security
Ongoing
GDPR and Email Marketing: What You Need to Know
The General Data Protection Regulation (GDPR) applies to any organisation that processes the personal data of individuals in the EU or UK, regardless of where the organisation is based. For email marketers, this means every subscriber on your list must have given clear, informed consent — or you must have a documented legitimate interest basis for contacting them.
Key GDPR requirements for email marketing include: obtaining explicit consent before adding subscribers, keeping records of when and how consent was given, making it as easy to withdraw consent as it was to give it, providing a clear privacy notice in every email footer, and responding to data subject requests within 30 days.
Non-compliance can result in fines of up to 4% of annual global turnover or €20 million, whichever is higher. Regular compliance checks using tools like this checklist help identify gaps before they become regulatory issues.
For more on email compliance, see our guide to email anti-spam laws and GDPR compliance for email marketing.