Compliance

1. Introduction

This document details Mailall, LLC's (referred to as "Mailall") practices concerning the collection, use, storage, and protection of personal data. Mailall is dedicated to maintaining the privacy and security of all processed data and adheres to the General Data Protection Regulation (GDPR).

2. Company Information

3. Data Collection and Purpose

Mailall gathers various data for user account creation, email marketing, and identity unibox. This includes data from Google Analytics, IP addresses, and user-provided information during sign-up. Integrations with Stripe and Pipedrive enhance service offerings without sharing personal data.

4. Data Storage and Security Measures

Data is securely stored using advanced cloud services, accessible only to authorized personnel. Security measures include encryption, firewalls, and regular security audits.

  • AWS Services: Using AWS RDS and AWS S3 ensures customer and end-user data are managed with advanced security measures, including encryption, strict access controls, and secure file access via pre-signed URLs.
  • Stripe Integration: Stripe handles secure payment processing, adhering to stringent security standards. Mailall does not store any payment method information on its servers.
  • Data Security Protocols: Multi-layered security measures such as access keys, certificates, and passwords protect user-uploaded data from unauthorized access or breaches.

5. Data Retention Policy

Mailall retains personal data only until a user requests its deletion, giving users control over their personal information as per GDPR guidelines.

6. Data Protection Officer (DPO)

The Co-Founder of Mailall, Salman Saleem, serves as the DPO, overseeing data protection strategies and ensuring GDPR compliance. Contact: [email protected].

7. Procedure for Data Breaches

Mailall has established protocols to monitor and respond to data breaches, including notifying affected individuals and authorities within 72 hours of detecting the breach.

8. Third-Country Data Transfers

User data is stored in the AWS RDS server region: US West (Northern California). Mailall ensures all data transfers comply with GDPR’s stringent data protection and cross-border security standards.

9. User Rights and Data Management

In line with GDPR, Mailall acknowledges and respects the following user rights:

  • Access to Data: Users can access their data through our user dashboard.
  • Correction/Deletion/Restriction: Users can request data correction, deletion, or restriction via Gleap inquiry, email, or Pipedrive.
  • Data Portability: Users’ files are securely stored in AWS S3, facilitating easy data portability.
  • Transparency in Data Processing: Mailall is committed to transparency and does not use user-uploaded data for internal purposes such as direct marketing or profiling.
  • Communication Preferences: Users are informed about the use of their email for file-related information and marketing campaigns, ensuring clarity and consent. For additional information, contact us at [email protected].

10. Consent Mechanism

User consent for data collection and processing is explicitly obtained during sign-up. Users can withdraw their consent at any time directly within the application.

11. Additional Information

  • Cookies Policy: Available at https://mailall.io/policies/cookies-policy/
  • Global Operations: Mailall operates globally, adhering to GDPR standards for international data protection.
  • Market Focus: Mailall is designed for B2B interactions, specifically targeting agencies and enterprises.

For further inquiries or to exercise your GDPR rights, contact our Co-Founder / Data Protection Officer, Salman Saleem, at [email protected].