Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Research into GDPR guidelines #48

Open
rafeeJ opened this issue Jun 23, 2020 · 2 comments
Open

Research into GDPR guidelines #48

rafeeJ opened this issue Jun 23, 2020 · 2 comments

Comments

@rafeeJ
Copy link
Collaborator

rafeeJ commented Jun 23, 2020

In general - does adding a mailing list necessitate some inclusion of a GDPR statement (regarding email storage)? probably worth filing a bug request for it as it'll certainly be useful for moderation/admin page email storage.

Originally posted by @davidswarbrick in #47 (comment)

@behradkoohy
Copy link
Collaborator

https://www.litmus.com/blog/5-things-you-must-know-about-email-consent-under-gdpr/

By the sounds of it, we need to have a way of tracking consent and when it is given and we need to have a way of unsubscribing. The former is something we can track when the server receives the call from the modal that @benlellouch has implemented. The latter is slightly more difficult, I'm thinking we should have a writeforchange.uk/unsubscribe where the user can enter their email address and we remove them from the consent collection?

@tjgurwara99
Copy link

You can implement the unsubscribe option using user tokens. I haven't looked at this repo's code in a while but it should be straight forward using the itsDangerous package - documentation is here. It's worth looking into.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants