Pulling the whole series together: here is the end-to-end checklist we recommend before any Indian B2B outbound campaign goes live.
1. Data sourcing
- Prefer registry-verified establishment data (GST/MCA) over scraped personal contacts
- Record the source and verification date of every list you buy
- Flag proprietorship records — the “company name” may be personal data
2. Channel rules
- Email: honest sender, honest subject, instant unsubscribe, suppression list
- Calls/SMS: DLT registration, daily DND scrub, 9 AM–9 PM window
- WhatsApp: use the Business API with approved templates — grey-market bulk senders get numbers banned and may breach platform and consent rules
3. Consent & rights handling
- One suppression list across all channels, checked before every send
- A named owner for access/correction/erasure requests, 30-day response SLA
- Grievance contact published on your site
4. Records
- Keep campaign logs: list source, scrub date, template, opt-outs processed
- Review the stack quarterly — DPDP rules are still being operationalised and will evolve
Compliance isn’t the tax you pay on growth — done right, it is the growth strategy: better data, warmer replies, and a sender reputation that compounds.
This article is general information, not legal advice.