Cold Email Compliance
Legal requirements for sending unsolicited commercial emails, including CAN-SPAM (US) and GDPR (EU).
Cold email is legal in most jurisdictions but must follow specific rules. In the US, CAN-SPAM requires: no misleading headers or subject lines, a physical mailing address, a clear way to opt out, and honoring opt-outs within 10 business days.
In the EU, GDPR is stricter. B2B cold email is generally allowed under 'legitimate interest' but you must: have a lawful basis for processing, only use business email addresses, provide easy opt-out, and delete data on request. B2C cold email is much more restricted under GDPR.
Best practices for compliance: only email business addresses, include an unsubscribe link, honor opt-outs immediately, keep records of your data sources, and include your company name and address in every email.