Sunday, 25 November 2007

Data Protection and Privacy Laws

Below is a useful compliance checklist from 'Internet Marketing' by Dave Chaffey:
  1. Follow privacy and consumer protection guidelines and laws in all local markets. Use local privacy and security certification where available.
  2. Inform user, before asking for info on:
    * who the company is
    * what personal data are collected, processed and stored
    * what is the purpose of collection
  3. Ask for consent for collecting personal data.
  4. Reassure customers by providing clear and effective privacy statements and explaining the purpose of data collection.
  5. Let individuals know when 'cookies' or other covert software are used to collect info about them.
  6. Never collect or retain personal data unless strictly necessary. If extra info is required for marketing purposes this should be made clear and should be optional.
  7. Amend incorrect data when informed and tell others. Enable correction on site.
  8. Only use data for marketing when a user has been informed and agreed (opt-in).
  9. Provide option to stop receiving info on all comms (opt-out).
  10. Provide contact details on communications.
  11. Use appropriate security technology to protect customer info on site.

No comments: