{
  "id": "WEB-116",
  "slug": "web-116",
  "title": "A landing page that collects personal information must publish a privacy policy",
  "statement": "Any landing site collecting personal information must carry a conspicuously accessible privacy policy.",
  "rationale": "The page where a consumer types their phone number is the page where they are entitled to know what happens to it, and a policy two clicks away on a different domain does not reach them at the moment it matters. Campaign landing pages are built to convert and routinely ship without the footer the main site has, so this fails on exactly the page the messages point at.",
  "layer": "WEBSITE",
  "layerSlug": "website",
  "object": "landing page policy link",
  "severity": "BLOCKING",
  "detectability": [
    "CRAWL"
  ],
  "failureClass": "TERMINAL_WEBSITE",
  "authorities": [
    "AT&T",
    "Bandwidth"
  ],
  "codes": [
    {
      "provider": "Twilio",
      "code": "7100",
      "remediable": true
    }
  ],
  "applicabilityText": "Applies to every 10DLC registration.",
  "universal": true,
  "remediation": "Link the privacy policy from the landing page itself, next to the form rather than only in a footer nobody scrolls to. Done when the policy is reachable in one click from the page that collects the number.",
  "notes": "WEB-045 asks the same question of the brand home page. Both are kept because a brand routinely satisfies one and not the other: the main site has a footer and the campaign landing page does not.",
  "phase": "approval",
  "automated": true,
  "url": "https://ekas.io/rules/10dlc/website/web-116/",
  "markdown": "https://ekas.io/rules/10dlc/website/web-116.md",
  "registry": "https://ekas.io/rules/10dlc/",
  "updated": "2026-07-25",
  "licence": "CC BY 4.0 — https://creativecommons.org/licenses/by/4.0/"
}
