What are the main international email laws (GDPR, CAN-SPAM, CASL, LGPD, PECR)?
The "Big Five" international email laws set global standards. GDPR (EU, 2018): comprehensive data protection requiring explicit opt-in consent, extensive individual rights, and penalties up to 4% of global revenue. CAN-SPAM (US, 2003): opt-out model allowing unsolicited email with required disclosures and unsubscribe mechanisms; penalties per violation.
CASL (Canada, 2014): strict opt-in requiring express or time-limited implied consent, thorough identification requirements, and massive penalties up to $10M CAD per violation. LGPD (Brazil, 2020): GDPR-modeled law requiring lawful processing basis, individual rights, and organizational accountability for Brazilian residents' data.
PECR (UK Privacy and Electronic Communications Regulations): UK-specific rules post-Brexit complementing UK GDPR, covering cookies and direct marketing with soft opt-in provisions for existing customers. Together, these laws cover the majority of the global economy's digital population. Understanding these five frameworks provides a foundation for global email compliance-most other jurisdictions either follow similar principles or have less comprehensive requirements.
Was this answer helpful?
Thanks for your feedback!