GDPR Compliance

Smailer is designed to help you comply with the General Data Protection Regulation.

Data Processing Agreement

We provide a DPA that covers our role as a data processor for your subscriber data.

Data Encryption

All data is encrypted at rest (AES-256) and in transit (TLS 1.3).

Data Access Controls

Role-based access controls ensure only authorized team members can access data.

Data Deletion

Delete subscriber data on request. We honor unsubscribe and deletion within 24 hours.

Data Portability

Export your data anytime in standard formats. No lock-in, no barriers.

Consent Management

Built-in consent tracking and opt-in records for every subscriber.

Your Responsibilities

As a data controller, you are responsible for obtaining proper consent from your subscribers and maintaining records of that consent. Smailer provides the tools you need to meet these obligations.

  • Obtain explicit consent before adding subscribers to your lists
  • Provide a clear privacy notice explaining how you use subscriber data
  • Honor unsubscribe requests promptly
  • Respond to data subject access requests within 30 days
  • Report data breaches to supervisory authorities within 72 hours

Data Processing Agreement

We offer a standard Data Processing Agreement (DPA) that covers our obligations as a data processor under GDPR. To request a signed copy, contact us at dpo@smailer.com.

Contact Our DPO

If you have questions about how Smailer handles personal data, contact our Data Protection Officer at dpo@smailer.com.