Ensure GDPR compliance by default (Article 25 GDPR – privacy by design and by default). Under GDPR, consent must be freely given, specific, informed and unambiguous [1]. We were subscribing users without explicity consent, which goes against the "No pre-ticked boxes" principle. For compatibility with existing installations, we're using a setting, disabled by default. Once we release version 2.4.0 we will enable it by default, which won't affect existing installations but only new ones. [1] https://gdprinfo.eu/best-gdpr-newsletter-consent-examples-a-complete-guide-to-compliant-email-marketing
10 lines
320 B
Ruby
10 lines
320 B
Ruby
class RemoveDefaultValueInUserNotifications < ActiveRecord::Migration[7.1]
|
|
def change
|
|
change_table :users do |t|
|
|
t.change_default :newsletter, from: true, to: nil
|
|
t.change_default :email_digest, from: true, to: nil
|
|
t.change_default :email_on_direct_message, from: true, to: nil
|
|
end
|
|
end
|
|
end
|