Double Opt-In Done Right: Securing Your Newsletter Consent the GDPR Way
If you're careful about what lands in your inbox, you're not alone. Double Opt-In adds a vital confirmation step so only people who truly want our updates receive them. We use a GDPR-compliant Double Opt-In system under Art. 6(1)(b), verifying every subscription, documenting consent, and letting you unsubscribe at any time.
In this guide, you'll learn what Double Opt-In is, why it matters for GDPR, exactly what data we record, and how we keep your consent transparent and in your control.
What is Double Opt-In?
Double Opt-In (DOI) is a two-step signup process that confirms you genuinely want to receive a newsletter.
- You submit the signup form (e.g., name and email).
- We send a confirmation email with a secure link.
- You click the link to activate your subscription.
- We log your subscription and confirmation to document consent.
This straightforward flow ensures the email address is valid and that the owner explicitly agrees to receive messages.
Quick definition (snippet-ready)
Double Opt-In is a two-step email signup where you confirm your address via a link before any newsletter is sent, providing clear, documented consent.
Why Double Opt-In matters under GDPR
We implement Double Opt-In in line with GDPR Art. 6(1)(b), which provides the legal basis for processing data necessary to deliver the newsletter you request. Here's how DOI strengthens your rights and our accountability:
- Clear affirmative action: Clicking the confirmation link shows you actively agreed to receive emails.
- Consent records: We store your subscription and confirmation details to evidence valid consent.
- Purpose limitation: The personal data you provide is used to personalize and address the newsletter.
- Easy withdrawal: You can cancel your subscription at any time directly within the newsletter itself.
- Accountability: We work with a dedicated email service provider under a data processing agreement to safeguard confidentiality.
What we send—and how often
Our newsletter focuses on content you can use:
- News about our company and services
- Offers and updates (including travel suggestions and complementary offers)
- Vouchers and competitions
- Information on how to participate in our blog/community
The frequency of the newsletter depends on the topics covered. Some communications may also be sent by our commercial partners.
What data we collect for the newsletter
We capture only what’s needed to deliver the service and document your consent. Specifically, we process and may transmit to our email service provider the following:
- Name — for personalization and proper addressing
- Email address — to deliver the newsletter
- IP address — for consent logging
- Date of registration — to record when you signed up
- Language — to send content in your preferred language
- Subscription and confirmation timestamps — to document Double Opt-In
Data is retained for the duration of your active subscription. If you unsubscribe, delivery stops and your data is no longer used for this purpose.
Our email service provider (processor)
We send newsletters via:
- WeKloud s.r.l.
- Palazzo Mercurio, Via Aldo Moro, 13, 25124 Brescia, Italy
- VAT code 03592290989
This collaboration is governed by a data processing agreement that protects the confidentiality of your personal data. Further information is available in WeKloud’s privacy policy.
How Double Opt-In works here (step-by-step)
- Sign up on our website’s newsletter form.
- Receive a confirmation email at the address you provided.
- Confirm your subscription by clicking the verification link.
- Start receiving updates tailored to your language and interests.
At each stage, we apply the GDPR principles of lawfulness, fairness, and transparency.
Frequently asked questions
How does Double Opt-In help with GDPR compliance?
Double Opt-In creates an auditable trail of your consent (e.g., IP, signup, and confirmation times). This demonstrates a clear, informed choice and supports your rights, including the ability to unsubscribe at any time.
Is Double Opt-In required by GDPR?
GDPR focuses on lawful, transparent processing and demonstrable consent. We use a GDPR-compliant Double Opt-In process under Art. 6(1)(b) to meet these requirements.
What if I don’t click the confirmation link?
In a Double Opt-In system, the subscription activates only after you confirm. If you do not confirm, you won’t receive the newsletter.
How can I unsubscribe?
You can cancel your subscription at any time using the unsubscribe link included in every newsletter message.
Who processes my email data?
We send the newsletter via WeKloud s.r.l. under a data processing agreement. We transmit your name, email address, IP address, date of registration, and language so the service can deliver and personalize the newsletter and document consent.
Practical takeaways to protect your inbox
- Confirm promptly: After signing up, click the confirmation link to activate your subscription.
- Use your primary inbox: This helps ensure you see and act on the confirmation email.
- Whitelist our sender address: Reduce the chance of missing updates you’ve requested.
- Review every confirmation email: Make sure it reflects the content and frequency you expect.
- Keep control: Use the unsubscribe link anytime you want to stop receiving messages.
- Know your data: We use your name and language for personalization, plus IP and timestamps to document consent.
Related privacy topics you might explore
- Cookies and how to manage them in your browser settings
- Google Analytics and the official opt-out browser add-on
- Why we load Google Fonts for better on-site display
- Guest Pass data handling and legal basis
- How voucher purchases are processed with ADDITIVE under GDPR
Conclusion
With Double Opt-In, you’re in charge. You confirm your subscription, we document your consent, and you can unsubscribe at any time—simple, transparent, GDPR-aligned.
Ready to receive relevant updates? Subscribe to our newsletter and confirm your email to get started. Have questions about privacy? Write to us at info@stetteneck.com.