Plugin Author
Stiofan
(@stiofansisland)
Hi @wpflattipsuser,
Contact forms and review/comment forms do not usually require a GDPR consent checkbox. Under the General Data Protection Regulation, consent is only one possible lawful basis for processing personal data, not the default.
In most cases, these forms rely on legitimate interests as the lawful basis. When a user submits a contact or review form, they reasonably expect their data to be processed for that specific purpose (e.g., responding to an enquiry or displaying a review). As long as the data is only used for that expected purpose and the impact on the user’s privacy is minimal, explicit consent is not required.
However, you must still be transparent. This means providing a clear privacy notice explaining what data is collected, how it is used, and how users can exercise their rights.
A checkbox would only be required if you intend to use the data for additional purposes beyond the user’s expectations—such as marketing, adding them to a mailing list, or sharing data with third parties.
Thanks,
Stiofan
Thank you, sounds great. 🙂