Re: [mailop] [EXTERNAL] Re: Force double opt in for marketing list companies per email address

2020-06-03 Thread Jay Hennigan via mailop
On 6/2/20 14:25, Michael Peddemors via mailop wrote: The 'From' header is too easily forged (see all the 'Paypal' and 'Netflix' phishing SendGrid is dealing with.. The 'From' header is too easily forged (see all the 'Paypal' and 'Netflix' phishing SendGrid isn't dealing with.. FTFY. -- Jay

Re: [mailop] [EXTERNAL] Re: Force double opt in for marketing list companies per email address

2020-06-03 Thread Atro Tossavainen via mailop
> I've put a subject access request into mailchimp, so I'll see what > comes back.  I guess depends whether mailchimp think they are > governed by GDPR or not. They are of course governed by the GDPR... in the role of the data *processor*. As such, upon receiving such a request they will have to r

Re: [mailop] [EXTERNAL] Re: Force double opt in for marketing list companies per email address

2020-06-02 Thread Matt Palmer via mailop
On Tue, Jun 02, 2020 at 11:37:59PM +0300, Atro Tossavainen via mailop wrote: > On Tue, Jun 02, 2020 at 08:22:40PM +, Michael Wise via mailop wrote: > > It would need to be a standard... a SINGLE standard. > > > > Like the FTC "Do Not Call" list. > > What Michael said... And it would be a colo

Re: [mailop] [EXTERNAL] Re: Force double opt in for marketing list companies per email address

2020-06-02 Thread Tim Bray via mailop
On 02/06/2020 21:22, Michael Wise via mailop wrote: It would need to be a standard... a SINGLE standard. Like the FTC "Do Not Call" list. I wasn't thinking about something central at all.  I was just thinking about it as something top 1 or 2 market leaders could do to be helpful. (like va

Re: [mailop] [EXTERNAL] Re: Force double opt in for marketing list companies per email address

2020-06-02 Thread Luis E. Muñoz via mailop
On 2 Jun 2020, at 14:25, Michael Peddemors via mailop wrote: Yeah, and IMHO (don't hit me) that VERP should go the way of the Dodo.. This assertion doesn't follow the rest of your message. Even if useless for the use case being discussed – for which it was never meant as a solution – there

Re: [mailop] [EXTERNAL] Re: Force double opt in for marketing list companies per email address

2020-06-02 Thread Michael Peddemors via mailop
Yeah, and IMHO (don't hit me) that VERP should go the way of the Dodo.. If a domain owner wants to have MailChimp send bulk email for them, they should add MailChimp to their SPF record.. and have their domain in the MAIL FROM.. it helps improve delivery dates.. eg the ISP can safely 'whitelis

Re: [mailop] [EXTERNAL] Re: Force double opt in for marketing list companies per email address

2020-06-02 Thread Atro Tossavainen via mailop
> In the end, if mailchimp actually DID use the sender's email in the > MAIL FROM, it might make it easier.. If they did had a way to see > that this was an invite.. Practically all ESPs use VERP. https://en.wikipedia.org/wiki/Variable_envelope_return_path It makes sense for them in so many ways

Re: [mailop] [EXTERNAL] Re: Force double opt in for marketing list companies per email address

2020-06-02 Thread Michael Peddemors via mailop
Yeah, over the last 10 years we banged our head on how a universal method would work, and yes.. all vulnerable to abuse.. In the end, if mailchimp actually DID use the sender's email in the MAIL FROM, it might make it easier.. If they did had a way to see that this was an invite.. You 'could

Re: [mailop] [EXTERNAL] Re: Force double opt in for marketing list companies per email address

2020-06-02 Thread Atro Tossavainen via mailop
On Tue, Jun 02, 2020 at 08:22:40PM +, Michael Wise via mailop wrote: > It would need to be a standard... a SINGLE standard. > > Like the FTC "Do Not Call" list. What Michael said... And it would be a colossally bad idea. Anybody think it wouldn't leak and be used specifically to spam some mo

Re: [mailop] [EXTERNAL] Re: Force double opt in for marketing list companies per email address

2020-06-02 Thread Michael Wise via mailop
It would need to be a standard... a SINGLE standard. Like the FTC "Do Not Call" list. Aloha, Michael. -- Michael J Wise Microsoft Corporation| Spam Analysis "Your Spam Specimen Has Been Processed." Open a ticket for Hotmail ? -Original Messa