GDPR Compliance

Last updated: May 1, 2026

Our Commitment to GDPR

At Outpilot, we are fully committed to compliance with the General Data Protection Regulation (GDPR) and to helping our customers comply with their own GDPR obligations. We take the privacy and security of our users' data very seriously.

Outpilot as a Data Processor

When you use Outpilot to find leads and send emails, you are acting as the Data Controller, and Outpilot is acting as the Data Processor. We only process personal data on your behalf and in accordance with your instructions, as outlined in our Data Processing Agreement (DPA).

Key Features for GDPR Compliance

We have built features into our platform to help you remain compliant:

  • Easy Unsubscribe: Every email sent through Outpilot can include a one-click unsubscribe link. We automatically prevent you from emailing unsubscribed contacts again.
  • Data Deletion: You can permanently delete a contact and all associated data at any time from your dashboard or via our API.
  • Data Portability: You can export all your contact data and campaign history in standard formats (CSV/JSON) at any time.

Sub-processors

We use a limited number of trusted sub-processors to help provide our services (e.g., AWS for hosting). All our sub-processors are vetted for strict security and GDPR compliance.

Data Processing Agreement (DPA)

Our standard Data Processing Agreement is incorporated into our Terms of Service. If your organization requires a signed copy, please contact our support team at legal@outpilot.ai.