Skip to content
Independently verified · Quarterly re-audit
EU VETTED

MailerLite

VERIFIED
Email marketing · Lithuania
Founded 2010 · mailerlite.com ↗

Lithuanian-founded email marketing platform with EU data storage, a generous free tier, and broad automation plus transactional features.

Why this score?

EU-owned (Polish parent cyber_Folks via Vercom) with EU primary email storage and ISO 27001, but a US legal entity (MailerLite Inc., San Francisco) for non-EEA customers plus multiple US sub-processors (Intercom, Stripe, OpenAI, Google Vertex AI, Zoom, NetSuite) and no public DPA or dedicated sub-processors page caps the score at 3/5.

SCORE
3.0/5
CLOUD ACT
OWNERSHIP
SUB-PROCS
0 none disclosed
JUMP TO
OVERVIEW

About MailerLite

MailerLite is a Vilnius-founded email marketing and automation platform offering newsletters, automation flows, landing pages, signup forms, and transactional email through its sister product MailerSend. Founded in 2010 by Ignas Rubezius, the company was acquired by Polish e-mail communications group Vercom in April 2022 for around €84M, and public reporting indicates a further 2025 transition under Polish-listed cyber_Folks — both moves keep MailerLite under EU ownership. The legal structure splits by region: MailerLite Limited (Dublin, Ireland) is the data controller for EEA, UK, and Swiss customers, while MailerLite, Inc. (San Francisco, California) handles other regions. Primary subscriber storage runs from an EU data center carrying ISO 27001 certification (Bureau Veritas), but the US legal entity together with several US sub-processors — Intercom for support, Stripe/Braintree/PayPal for payments, OpenAI and Google Vertex AI for AI-assistant features, Zoom for events, Oracle NetSuite for accounting — introduce material CLOUD Act exposure, especially for customers handled by the US Inc. MailerLite competes on price and UX against Mailchimp: a free tier covers up to 500 subscribers and 12,000 monthly emails, paid plans start at roughly €9/month, and a long-running 30%-recurring affiliate program with a 45-day cookie remains a strong distribution lever. Marketing-site internationalization covers EN, ES, and PL; in-product UI localization in those languages was not directly verified during this audit. Best fit: SMBs and creators who want a credible EU primary-hosting story and low-cost entry, and can accept a US legal entity for non-EEA accounts plus US sub-processors for support and AI features. Procurement teams with strict no-CLOUD-Act requirements should pair this with legal review or look at higher-scoring alternatives in the category.
SUB-PROCESSORS

Sub-processor map · none disclosed

Source ↗
Vendor discloses zero sub-processors. All data processing happens in-house.
CERTIFICATIONS

Frameworks & certifications

ISO/IEC 27001
ACTIVE
FEATURES

Capability matrix

INTEGRATION & ACCESS
REST API Yes
SSO (SAML / OIDC) No
COMPLIANCE & GOVERNANCE
Audit log No
Self-host / on-prem option No
PRICING

Pricing & tiers

FREEMIUM
from €9/mo
View pricing page ↗
PUBLIC DOCUMENTS

Public documents

  • Data Processing Addendum (DPA)
    www.mailerlite.com/legal…
    Open ↗
  • Sub-processors list
    www.mailerlite.com/legal…
    Open ↗
  • Terms of Service
    www.mailerlite.com/legal…
    Open ↗
ALTERNATIVES

Alternatives in this category