So, Is MailChimp Secure

If you see security alert messages, it's because MailChimp supports SSL encryption throughout our entire application. So from time to time, you might encounter a “mixed media content warning” (especially if you’re one of those people forced into using Internet Explorer at work — so sorry).

Don’t be alarmed. Most of the time, you're going to see this error when images or content stored on a nonsecure page interact with the MailChimp app, which is secure. For instance, if you try to add an image from your image gallery into your campaign, you may see security warnings in Internet Explorer. This is because the images are stored in the cloud, not on the same server as the MailChimp app. This doesn't affect the security of your MailChimp data in any way, it just allows nonsecure items to display within our application.

The Error Messages

Each browser handles these security alerts differently.

  • FireFox will show an error message at the top of the screen.
    firefox security
  • Chrome will put a little caution sign over the lock in the URL bar. You can click the lock to see details.
    chrome security
  • Internet Explorer will fling poo all over the site. Just kidding, but you will see more pop up errors when using IE. And you will see different pop up errors in IE7 and IE8. If you're in a pop up window in MailChimp like the Image Gallery or Pop Up Preview, the security warning might pop up in the original window, or appear to be hiding behind windows. Use your Alt+Tab keys together to browse through the open windows on your computer.

If you click the wrong viewing option for your browser, you won't be able to see some images in your campaign. If you click the correct options to view all content on the page, you'll be able to see the full interface and design. It's a safe option, no private or personal information would become insecure by choosing to see both types of content.

IE 8

Correct click = NO

Do you want to view only the webpage content that was delivered securely?
This webpage contains content that will not be delivered using a secure HTTPS connetion, which could compromise the security of the entire webpage.

mixed content error message

IE 7

Correct click = YES

This page contains both secure and nonsecure items.
Do you want to display the nonsecure items?

ie7 security warning

Places to Expect Alerts

There are some places in our application where these security alerts are inevitable.

  • Viewing Tutorial Videos
    Our video system loads a 3rd party javascript library, that even if we change to ssl, will throw a certificate exception.
  • Searching for Help In the App
    IE users that are experiencing alerts when searching for help from within the MaiLChimp application can avoid security alerts by bookmarking http://kb.mailchimp.com/ for your search queries.
  • Image Gallery
    You may see security alerts when adding an image to a campaign from the image gallery. Your security alert may pop up in the window behind the gallery display. Click the appropriate response for your browser as noted above to add the image to your image properties box and campaign.
  • Campaign Archives
    Archives need to be public for all to see, so they will throw a security warning when view from within the application. Your recipients won't see any alerts, if they view your archive from your sent campaigns, or if you link to the archive on your website.

If you see these alerts anywhere else in the MailChimp application, feel free to alert our support team and they will pass it on to the dev team for investigation. This will help us find them all and work to have less alerts for you.


Related Articles