Privacy statement
Last updated: 5 October 2026
This statement describes how ListMailing processes personal data. For newsletter subscriber data, ListMailing acts as a processor; the customer sending the newsletters is the controller. For customer account data, ListMailing is itself the controller.
What data we process
- Account data: name, email address, hashed password, two-factor settings.
- Subscribers/contacts: email address, first and last name, subscription status and date, unsubscribe reason.
- Sending data: delivery status, bounces, complaints and (if enabled) open and click events per newsletter, with their browser information and the network part of the IP address, to recognise automatic opens and clicks by security software. This per-recipient data is deleted after 180 days.
- Security logs: IP address, browser information and request data for blocked bot/spam attempts, account registrations, and sign-ins and sign-in attempts.
- Payment data: payment references and amounts (handled by Mollie).
Legal basis and purpose
- Performance of the contract (providing the service, sending newsletters).
- Consent (double opt-in) for receiving newsletters.
- Open and click measurement is off per newsletter unless the sender enables it. As the controller, the sender is responsible for its legal basis and for telling their subscribers.
- Legitimate interest (security, abuse prevention, billing).
Sub-processors
We use the following parties. Account, contact and sending data is stored within the EEA. Sentry receives technical error reports and, for blocked bot attempts, the network part of the IP address and the request data; never email addresses in readable form.
| Party | Purpose | Location |
|---|---|---|
| Amazon Web Services (SES/S3/CloudFront) | Email delivery and image storage | EU (Frankfurt) |
| Hetzner | Server hosting | Germany (EEA) |
| Mollie | Payment processing | Netherlands |
| Sentry | Error tracking | US (with EU SCCs/DPF) |
| Matomo (self-hosted, amphora.nl) | Website analytics (anonymised) | EEA |
Retention periods
- Security logs (bot blocks): 90 days.
- Registration logs (account creation): 180 days.
- Sign-in logs (sign-ins and sign-in attempts): 90 days.
- Accounts whose email address was never confirmed: 14 days.
- Per-recipient sending logs: 180 days.
- Deleted pages, including their contacts, lists, newsletters and sending logs: erased for good 30 days after deletion.
- Account and contact data: for as long as the account/subscription exists, then deleted on request.
Your rights
You have the right to access, rectify and erase your data. Subscribers can unsubscribe from every newsletter. Requests can be directed to the sender of the newsletter; for account data, contact us via the details on our website. You may also lodge a complaint with the Dutch Data Protection Authority.