| 1 |
# Mailing List Data Processing |
| 2 |
|
| 3 |
Who is responsible for a subscriber's address when a creator sends mail through a project mailing list, and who answers when that subscriber asks a question about it. |
| 4 |
|
| 5 |
This page covers project mailing lists specifically. For everything else we hold, see the [Privacy Policy](./privacy-policy.md). |
| 6 |
|
| 7 |
--- |
| 8 |
|
| 9 |
## The Arrangement |
| 10 |
|
| 11 |
Makenotwork and the creator are **joint controllers** for a project mailing list. |
| 12 |
|
| 13 |
Neither party alone decides both what the list is for and how it runs: |
| 14 |
|
| 15 |
- Makenotwork holds the addresses, runs the send, and holds the contract with the email provider. |
| 16 |
- The creator decides who is on the list and what the mail says. |
| 17 |
|
| 18 |
Joint controllership is what that split is called under GDPR Article 26. It is not a processor relationship, and describing it as one would put the whole responsibility on Makenotwork for decisions the creator makes. |
| 19 |
|
| 20 |
This page is the summary of the arrangement that Article 26 requires us to make available to subscribers. |
| 21 |
|
| 22 |
--- |
| 23 |
|
| 24 |
## One Contact for Every Request |
| 25 |
|
| 26 |
**privacy@makenot.work.** |
| 27 |
|
| 28 |
Article 26 lets joint controllers name a single point of contact, and we have. A subscriber can also go to either party directly, and a request that arrives anywhere gets handled rather than forwarded with instructions to try the other one. |
| 29 |
|
| 30 |
Nothing below changes that. The division of responsibility is between us and the creator; a subscriber never has to work out which of us to write to. |
| 31 |
|
| 32 |
--- |
| 33 |
|
| 34 |
## Who Answers What |
| 35 |
|
| 36 |
|
| 37 |
|
| 38 |
| Access: what do you hold about me | Makenotwork | We hold the record. The creator sees a subscriber list, not our database. | |
| 39 |
| Erasure: delete my address | Makenotwork, and it takes effect on the creator's list | See below. | |
| 40 |
| Rectification: fix my address | Makenotwork | Same record. | |
| 41 |
| Objection: stop sending me this | Either. The unsubscribe link is the fastest route. | Unsubscribing is instant and needs no request at all. | |
| 42 |
| Why did I get this mail | The creator, with our help if they need it | The creator decided the content and the audience. | |
| 43 |
|
| 44 |
### Erasure, in detail |
| 45 |
|
| 46 |
Erasure is the request that a badly drawn arrangement leaves bouncing between two parties, so it is settled here. |
| 47 |
|
| 48 |
An erasure request against a project mailing list is fulfilled by Makenotwork, and it removes the address from the creator's list at the same time. The creator does not hold a separate copy to be chased down: the subscriber list a creator sees is a view of our database, and an erased address is gone from both at once. |
| 49 |
|
| 50 |
A creator can export their subscriber list, which puts a copy of the addresses on their own machine. That copy is outside our database, so it is worth being exact about it. Under this arrangement a creator must not keep mailing an address after it is erased, and must delete the exported copy when we tell them an erasure covers it. A subscriber does not have to chase that: write to privacy@makenot.work and we pass it on and follow it up. The same two obligations are written into the [Terms of Service](./terms-of-service.md), under Creator Terms, which is where a creator agrees to them. |
| 51 |
|
| 52 |
Suppression records are the exception, and they are the same exception the Privacy Policy already makes. If an address bounced or filed a complaint, we keep a one-way record that we must not mail it again. Erasing that record would mean mailing the address again the next time somebody adds it. |
| 53 |
|
| 54 |
--- |
| 55 |
|
| 56 |
## When a Creator Leaves |
| 57 |
|
| 58 |
A creator can close their account with a list still on it. Three things happen, in this order: |
| 59 |
|
| 60 |
1. **Sending stops immediately.** A closed account cannot trigger a broadcast or an automatic notification. |
| 61 |
2. **The list stops being a list.** Subscribers are not transferred anywhere, not sold, and not folded into another creator's audience. |
| 62 |
3. **The addresses are deleted within 30 days**, on the same schedule as the rest of the account's data. |
| 63 |
|
| 64 |
Makenotwork remains reachable at privacy@makenot.work for the whole of that window and afterwards. A departing creator does not take the obligation with them, which is the point of naming a single contact. |
| 65 |
|
| 66 |
Subscribers are not notified that a list has closed. The mail simply stops. |
| 67 |
|
| 68 |
--- |
| 69 |
|
| 70 |
## The Email Provider |
| 71 |
|
| 72 |
Our email provider is a **processor**, not a joint controller. It sends what we tell it to send and holds the addresses to do it. The current provider is named in [Infrastructure & Vendors](../tech/infrastructure.md). |
| 73 |
|
| 74 |
Processor and joint controller are different roles and this page keeps them apart. The creator decides who gets mailed; the provider decides nothing. |
| 75 |
|
| 76 |
--- |
| 77 |
|
| 78 |
## What This Does Not Cover |
| 79 |
|
| 80 |
- **Account mail.** Receipts, security notices and password resets are ours alone. No creator is involved and no creator can stop them. See [Email you cannot turn off](../guide/email-you-cannot-turn-off.md). |
| 81 |
- **Lists a creator runs somewhere else.** If a creator exports their subscribers and mails them from another service, that service and that creator are the parties involved, and we are not one of them. The erasure obligations above still follow the addresses, because they came from here. |
| 82 |
|
| 83 |
--- |
| 84 |
|
| 85 |
## Contact |
| 86 |
|
| 87 |
Subscriber requests about a project mailing list: privacy@makenot.work |
| 88 |
|
| 89 |
Formal data protection inquiries: dpo@makenot.work |
| 90 |
|
| 91 |
--- |
| 92 |
|
| 93 |
## See Also |
| 94 |
|
| 95 |
- [Privacy Policy](./privacy-policy.md): Everything else we hold |
| 96 |
- [Mailing Lists](../guide/mailing-lists.md): How lists work for creators |
| 97 |
- [Email you cannot turn off](../guide/email-you-cannot-turn-off.md): The mail that ignores every preference |
| 98 |
- [Terms of Service](./terms-of-service.md): Full legal terms |
| 99 |
|