Compliance & Legal

Privacy Policy

A privacy policy is a legal document that explains how an organisation collects, uses, stores, and protects personal data, including email addresses and subscriber information.

What Is Privacy Policy?

For newsletter creators, a privacy policy should cover: what data you collect (email addresses, names, signup dates, engagement data), why you collect it (to deliver the newsletter), how you use it (sending emails, analytics, personalisation), who you share it with (email service provider, analytics tools), how you protect it (encryption, access controls), subscriber rights (access, correction, deletion), cookie usage (if you have a website), and how to contact you with privacy concerns. GDPR and many other regulations require a privacy policy. Even without legal requirements, a clear privacy policy builds trust with subscribers and demonstrates professionalism.

Why It Matters for Newsletters

A privacy policy is legally required in many jurisdictions and practically expected by subscribers. It demonstrates that you take data protection seriously and provides transparency about how subscriber information is handled. Lack of a privacy policy can also trigger email client warnings.

Best Practices

  1. Write in clear, plain language — avoid legal jargon where possible
  2. Be specific about what data you collect and why
  3. List all third-party services that have access to subscriber data
  4. Include information about subscriber rights (access, deletion, correction)
  5. Review and update your privacy policy whenever you add new tools or change data practices

How Aldus Handles This

Aldus publishes a comprehensive privacy policy covering data collection, usage, and subscriber rights. The platform handles data storage securely and supports subscriber data requests for GDPR compliance.

Try Aldus free

AI writes your newsletter. You just approve and send.

Get started →