Where consents live
Open a candidate or contact and go to the Consent subtab on the Overview tab. It has two sections:- Consent: that person’s consent records.
- Marketing Opt-out: opt-outs that exclude the candidate from marketing emails.

Configure consent purposes
The consent purposes candidates can be tracked against are managed from Settings → Data Model → Candidates → Consents. Spott ships with system purposes such as Recruiting, Marketing Email, Marketing SMS, and WhatsApp Business Marketing, each with a default expiry time. Use Create your own consent purpose to add custom purposes for your workspace.
Add a consent
Consent records are created manually. Spott does not write one for you, not even when someone accepts your terms through the Request updated CV link. Your terms and privacy policy are configured under Settings → General.- Open the candidate and go to Overview → Consent.
- Click Add Consent.
- Fill in the fields:
- Purpose, for example Recruiting, Marketing Email, or a custom purpose
- Type and Source
- Lawful basis, for example Consent, Legitimate Interest, or Contract
- Valid until
- Save.
Stay compliant
Spott gives you the tracking and the triggers; you stay in charge of what happens to a record. In practice that is a routine:- Track expiry dates so you renew consent before it lapses rather than after.
- Use the compliance filters on the Candidates and Contacts views to pull up everyone whose consent is about to expire, or has already.
- Reach out and record the renewal. A campaign or an automated email handles the outreach; the new consent goes on the record when they answer.
- Act on what has lapsed, by deleting or anonymizing those records once you have decided they should go.
Expiry flags a record, it does not act on it. Spott never deletes or anonymizes a
candidate, a contact, or their CV on its own. Retention is a judgement call with legal
consequences, and it stays yours: nothing disappears from your database because a date
passed.