Flash offerBasic website just £1003 of 5 slots left

/ Journal

GDPR & Email Marketing: A Plain-English Guide for UK Businesses

19 June 2026 · 5 min read · RIOT Studio

Email MarketingGDPRSmall BusinessEssex

'''An email list is a powerful tool, but are you sure you're using it legally? Let's cut through the jargon and make sure your email marketing efforts are compliant with GDPR. It's not as scary as it sounds.

What Is GDPR, Really?

GDPR (General Data Protection Regulation) came into force in 2018. It's a set of rules designed to give EU citizens more control over their personal data. The UK has since incorporated it into its own law, so yes, it absolutely still applies to you.

For email marketing, it boils down to one simple principle: you need a person's explicit, informed consent to send them marketing emails. You can't just add everyone who's ever bought from you to a newsletter list. They need to have actively agreed to receive marketing.

This means no pre-ticked boxes on your checkout or contact forms. The user must physically tick a box that clearly states they are signing up for your newsletter.

Consent: The Be-All and End-All

The most important part of GDPR email marketing is valid consent. There are two main types you'll encounter:

  • Explicit Consent: This is the gold standard. A user actively subscribes, perhaps via a sign-up form on your website. They have taken a clear, affirmative action.
  • Soft Opt-In: This is more nuanced. You can send marketing emails to existing customers who have bought a similar product or service from you recently, as long as you gave them a clear chance to opt-out at the time of purchase. You must also offer an easy way to unsubscribe in every single email.

Our advice? Stick to explicit consent wherever possible. It builds a higher-quality, more engaged list. People who actively want to hear from you are far more likely to open your emails and buy your stuff.

Building a Compliant List

So, how do you build a list that ticks all the boxes? It's about being transparent and fair.

  • Use a clear sign-up form: On your website, use a form that explains what users are signing up for. "Join our newsletter for weekly tips and offers" is great. "Sign up" is too vague.
  • Double Opt-In: We strongly recommend using a double opt-in process. After someone signs up, they get an automated email asking them to confirm their subscription by clicking a link. This proves the email address is real and that the owner genuinely wants to be on your list.
  • Offline Collection: If you collect email addresses in person (e.g., at a craft fair in Colchester), you still need consent. Use a sign-up sheet that clearly states what they're agreeing to, and then follow up with a confirmation email.

Choosing the Right Email Platform

Using a professional email marketing platform is non-negotiable. It handles the technical side of unsubscribes, list management, and analytics. Sending bulk emails from your personal Outlook or Gmail account is a fast track to getting blacklisted.

Are there Mailchimp alternatives in the UK?

Mailchimp is the big name, but it has become notoriously expensive and a bit bloated. Many small businesses in Essex are now looking for a good Mailchimp alternative UK providers offer.

We often recommend platforms like EmailOctopus or sendinblue (now Brevo) to our clients. They offer excellent features, are often more affordable, and have servers in the EU/UK, which can be a plus for data compliance.

Here’s a rough price comparison for a list of 2,500 contacts:

  • Mailchimp (Standard Plan): Around £45/month
  • EmailOctopus (Pro): Around £30/month
  • Brevo (Starter): Around £19/month for 20k emails, no daily sending limits.

These prices are just a guide, but they show that shopping around can save you a significant amount of money.

What to Actually Send

Getting consent is step one. Keeping your subscribers engaged is step two. This is where good newsletter design for small business comes in.

Your emails shouldn't just be a constant sales pitch. Provide value. Share your expertise. Tell stories. A good rule of thumb is the 80/20 rule: 80% helpful, interesting content, and 20% sales.

Think about what your audience would find useful:

  • A local builder: Could send tips on home maintenance for the upcoming season.
  • An Essex-based cafe: Could share a popular recipe or highlight a local supplier.
  • A B2B consultant: Could offer insights into a recent industry trend.

Your emails should be an extension of your brand – professional, easy to read, and mobile-friendly. Most people read emails on their phones, so a clunky, desktop-only design won't cut it.

FAQs About GDPR & Email Marketing

Can I email people who gave me a business card?

No, not without their explicit consent. A business card is an invitation to have a one-to-one conversation, not a subscription to a marketing list. Ask them verbally if you can add them to your mailing list and, ideally, follow up with a double opt-in email to confirm.

Do I need a privacy policy?

Yes, absolutely. Your website must have a privacy policy that explains what data you collect, why you collect it, how you use it, and how people can request to see or delete their data. This is a core requirement of GDPR.

What happens if I ignore GDPR?

Ignoring GDPR is a risky strategy. The Information Commissioner's Office (ICO) can issue fines of up to €20 million or 4% of your annual global turnover, whichever is higher. While massive fines are rare for small businesses, the ICO does investigate complaints and can issue enforcement notices. It’s simply not worth the risk to your business or your reputation.


Getting GDPR email marketing right isn't about tying your business in knots; it's about building a better, more respectful relationship with your customers. It means your list is full of people who actually want to hear from you, leading to better open rates, more clicks, and more sales.

If you're based in Colchester or wider Essex and want to get your email marketing sorted, from choosing a Mailchimp alternative to professional newsletter design, we can help. RIOT Studio offers straightforward email marketing services that get results and keep you on the right side of the law. Get in touch for a no-nonsense chat. '''

Got a project in mind?

We're a Colchester studio building bold websites, brands and marketing for businesses across Essex and the UK.

Start a brief →