In this manual...
GDPR is a regulation in the EU that helps consumers better understand where data is being collected about them and helps ensure that data is being protected. The GDPR applies to any company doing business in the EU and not just companies located in the EU. Simplero is committed to helping our customers to conduct business in compliance with these regulations.
You can learn more here.
companies let consumers know when their data is being collected,
companies cannot require a customer to consent to be on their email list or give you their email address in exchange for "free" opt-ins, and
consumers must actively consent to be on your mailing list.
Simplero provides special GDPR consent boxes that can appear on both mailing list opt-in forms and order forms. The GDPR consent terms are the same for your entire Simplero account unless you customize them for a specific product or list. They can also be turned on for specific lists as you choose.
Select Settings from your Simplero Dashboard
Select Account settings
Scroll down to the Privacy section
Require GDPR consent from all contacts - It will show for everyone no matter where the customer is located
Only for contacts from the EU/UK (Based on their IP address) - Simplero will check the IP address and if the IP address is located in the EU we will show the checkbox. Keep in mind if you select this option and the customer normally resides in the EU but is completing the form outside the EU they will not see the box
Never ask for GDPR consent - The consent box will never show
Set your GDPR consent message. In the next two fields, you can edit the terms that will appear next to the checkbox. If you write nothing in these boxes, the light grey text you see is what will appear and it will be auto-translated where Simplero is able.
Note: If you customize the message, it will not translate automatically.
Click the Save changes button at the bottom of the page.
Go to Contacts and choose Lists
Select the list you want to personalize the GDPR compliance settings for
Select the Configure tab and scroll to Advanced Settings
You can turn on the toggles based on whether you want the terms established in your account settings to appear or not. You can also choose to customize the GDPR consent message
This is what the field will look like on your opt-in form (with your customized text if applicable):
Go to Sales and choose Products
Select products you want to activate/deactivate the GDPR compliance settings for
Select the Configure tab and scroll to Advanced Settings
You can turn on the toggles based on if you want the terms established in your account settings to appear or not appear. You can also choose to customize the GDPR consent message
This is what the field will look like on your opt-in form (with your customized text if applicable):
Note that giving GDPR consent is required when processing a purchase.
You can view your customer's GDPR responses on their contact record.
Select Contacts from your Simplero Dashboard
Choose Contacts
Locate and select the contact name
In the Contact information screen, in the right sidebar towards the bottom, you will see notes about whether they have provided consent or not.
If consent is not provided the customer will still be taken to the thank you page and provided with any content associated with your list, as well as receive the Day 0 welcome email(s) but they will receive no other autoresponders or other emails from you. They will not even receive a double opt-in confirmation email.
When you use a raw form opt-in you can still obtain GDPR consent. After the customer completes the form they will be taken to a consent landing page where they will confirm their consent, rather than seeing a GDPR checkbox on the form.
When using a custom thank you page or a program like lead pages where you are using the raw form and then the thank you page is overridden, the contact will show as not having provided GDPR consent as the GDPR consent page will not appear. In these cases, you will want to be sure you are obtaining active consent through another option.
GDPR consent can be revoked both from the admin and customer's side:
The Right to be Forgotten is defined as the complete removal of contact and all the data collected on them. As of this writing (5/23/2018), Simplero is working on the ability for account owners to delete purchases from your system.
These are the options currently available:
Each Controller is required to have a DPA with each of its Data Processors. Simplero provides each of our customers with a pre-signed DPA which can be found in your account.
To reach it...
Select Settings from your Simplero Dashboard
In the Account tab, scroll down to the GDPR Compliance section.
There you will find a link to the DPA. You can print, sign and keep it for your records. You do not need to return it to Simplero.