Anti-Spam & Outreach Policy

Last updated: 14 June 2026

This policy explains how Denha Nexus s.r.o. ("Tsoden", "we", "us") conducts business-to-business (B2B) email outreach, the legal bases we rely on across the markets we operate in, and how anyone can opt out or complain. It complements our Privacy Policy and Audit Practices page.

1. What we send, and to whom

We send a low volume of plain-text, individually relevant B2B emails to business addresses (typically role-based, e.g. info@ or contact@) to introduce our free website audit. Addresses are obtained from public sources only: the business's own website, OpenStreetMap, public business registries, and public listings such as Hacker News / Product Hunt. We do not buy purchased "spam lists", and we do not target consumers in a personal capacity. Our emails are sent via our email service provider, Resend.

2. Every email we send

3. Legal bases by jurisdiction

3.1 EU / EEA — GDPR (incl. Slovakia, the Netherlands, Ireland) and ePrivacy

For B2B outreach we rely on legitimate interests under Article 6(1)(f) GDPR (direct marketing of relevant services, expressly recognised in Recital 47), supported by a documented legitimate-interests assessment and balancing test set out in our Privacy Policy. Recipients have an absolute right to object to direct marketing (Article 21), which we honour immediately. We respect national ePrivacy implementations: where a member state requires prior consent to email a particular type of recipient (for example certain individual subscribers/sole traders), we apply that stricter rule, and we always provide an easy opt-out in every message.

3.2 United Kingdom — UK GDPR + PECR

Under the Privacy and Electronic Communications Regulations (PECR), marketing email to corporate subscribers (companies and other corporate bodies) is permitted without prior consent, provided the sender is identifiable and an opt-out is offered — which we do. We treat clearly individual/sole-trader subscribers more cautiously and honour all opt-outs. We rely on legitimate interests under the UK GDPR for the underlying processing.

3.3 United States — CAN-SPAM Act

For US recipients we comply with the CAN-SPAM Act, including:

3.4 Canada — CASL

Where we send to Canadian recipients, we follow Canada's Anti-Spam Legislation (CASL): we send commercial electronic messages only where we have a lawful basis (such as an applicable consent or exception, e.g. messages to a published business address that is not accompanied by a statement refusing such messages, sent in relation to the recipient's role/business), and every message includes clear sender identification, our contact information, and a working unsubscribe that we honour within 10 business days (we act immediately). Because CASL is consent-based and strict, we are conservative about Canadian outreach and stop on any request.

4. Opt-out and suppression

5. Tracking and analytics

We measure delivery, opens (via a tracking pixel) and clicks (via link wrapping) through Resend, and process webhook events, to manage deliverability and honour opt-outs and complaints. This is described in our Privacy Policy. You can disable open-tracking by blocking remote images in your email client, and you can opt out of all email at any time.

6. Volume, deliverability and good-sender practices

We send at controlled volumes with authenticated sending (SPF/DKIM/DMARC alignment via our provider), warm-up practices, and prompt suppression of bounces and complaints, to protect inboxes and avoid being a nuisance. We do not use deceptive routing, open relays, harvested addresses, or dictionary attacks.

7. How to complain or get removed

8. Contact

Denha Nexus s.r.o., Pekná cesta 2459/19, 831 52 Bratislava, Slovak Republic — support@tsoden.ai — unsubscribe: https://quicko.tsoden.ai/unsubscribe.

This document is provided for transparency. It is general information, not legal advice to you, and should be reviewed by qualified local counsel before being relied upon.