Security · 13 June 2022

Ubivox is 100% GDPR-compliant

All your data stays within the borders of the EU, so you do not have to worry about the GDPR and your newsletters. We also look at the new data agreement with the USA and why it is being met with great scepticism.

Ubivox is 100% GDPR-compliant

Yes, you read that correctly: Ubivox is 100% GDPR-compliant, and all your data stays within the borders of the EU. So you have nothing to worry about when it comes to the GDPR and your newsletters when you use Ubivox.

In fact, since day one of the company’s history we have had a strong focus on our customers being able to prove consent, as well as storing and handling data responsibly. Some of our current and former customers may remember us as being slightly awkward back then, because we did not want customers using single opt-in in their sign-up forms. We wanted them to use double opt-in instead.

Double opt-in happens when recipients confirm their sign-up via a confirmation email they receive after signing up. That way you make sure the sign-ups are genuine and that you can prove consent, because all sign-up data as well as the IP address the sign-up and confirmation came from is stored on each individual recipient in Ubivox.

Many companies and public authorities were busy collecting this data when the GDPR came into force, but here our customers had an advantage.

But hasn’t a new data agreement been made?

Not so long ago, Ursula von der Leyen, President of the European Commission, announced that a new agreement had been reached with the USA to replace the defunct Privacy Shield agreement. The agreement is meant to ensure a better flow of data between European and American companies, so that companies in the EU can once again choose American cloud and online solutions for their customer data. You can read more here in Danish.

The problem, however, is that American law by default gives intelligence services the right to receive and review companies’ data, regardless of whether it is the data of American citizens. You may have heard of Schrems I & II, and Mr Schrems and his team are already preparing to have the new agreement tested in court. They are optimistic about getting the agreement declared invalid once again, and they believe that American law has to change before a safe data partnership can be established. Read more here in Danish.

In fact, Alisa Vekeman, Policy Officer at the European Commission, who helped negotiate the agreement, is already in doubt as to whether it can survive a court review. Read more here in Danish.

Is there the right focus on the GDPR in your organisation?

We often see customers getting in touch – particularly from public authorities – who use American systems such as MailChimp for their newsletters and therefore want to switch.

We have plenty of experience helping with the move from other systems to Ubivox. If anyone in your organisation still uses American solutions for their emails and newsletters, we are happy to assist with a switch so that they can become GDPR-compliant too. We are also happy to enter into specific data processing agreements, as many of our customers already know.

And if there isn’t anyone, you can take comfort in having the GDPR under control and not having to worry about new Privacy Shield agreements or the like in order to be compliant.

If you, or your colleagues, would like to hear more about how we can help you, do get in touch at sales@ubivox.com – or via the button below.

Contact us