en:gdpr_deletion_rules

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
en:gdpr_deletion_rules [2022/05/12 17:22] fwen:gdpr_deletion_rules [2025/02/26 10:31] (current) bk
Line 1: Line 1:
 ====== Deleting of personal data (DSGVO/GDPR) ====== ====== Deleting of personal data (DSGVO/GDPR) ======
  
-Personal data generally is to be deleted when the indented usage is over. Simultaneously with this obligation to delete, there is the burden of proof in the context of judicial or extrajudicial disputes, e.g. for the evidence of an opt-in or the intended use of the data. This means there is a legitimate interest, with a duration of 36 months after sending the last message (limitation period), to save personal data for the proof of intended usage. +Personal data generally is to be deleted when the intended usage is over. Simultaneously with this obligation to delete, there is the burden of proof in the context of judicial or extrajudicial disputes, e.g. for the evidence of an opt-in or the intended use of the data. This means there is a legitimate interest, with a duration of 36 months after sending the last message (limitation period), to save personal data for the proof of intended usage. 
  
-For more information we link to this document of the Certified Senders Alliance (CSA): Obligation to Delete vs. Burden of Proof [[https://certified-senders.org/wp-content/uploads/2018/09/Obligation-to-Delete-vs-Burden-of-Proof.pdf]]+For more informationwe link to this document of the Certified Senders Alliance (CSA): Obligation to Delete vs. Burden of Proof[[https://certified-senders.org/wp-content/uploads/2018/09/Obligation-to-Delete-vs-Burden-of-Proof.pdf]]
  
-Therefore the data saved in promio.connect is subject to these standard deleting rules: +Thereforethe data saved in promio.connect is subject to these standard deleting rules: 
  
-  * 36 months after an address is added to the blacklist the personal data of this data set is automatically deleted. The internal user-ID remains the same – but the data set contains no further information after deletion.  +  * 36 months after an address is added to the blacklistthe personal data of this data set is automatically deleted. The internal user ID remains the samebut the data set contains no further information after deletion.  
-  * The entry in the blacklist remains and prevents a new import or registration of the address+  * The entry in the blacklist remains and prevents a new import or registration of the address.
   * A deletion log records the timestamp and extent of the deletion. The deletion log does not contain personal data.   * A deletion log records the timestamp and extent of the deletion. The deletion log does not contain personal data.
-  * Therefore after deletion no connection can be drawn to personal data anymore.+  * Thereforeafter deletionno connection can be drawn to personal data anymore.
  
  
-These standard deleting rule are the minimum – differing, stricter rules can be defined for each client. The following processes are possible:+These standard deleting rules are the minimum–differing, stricter rules can be defined for each client. The following processes are possible:
  
 ===== Deletion after entry into blacklist (standard)  ===== ===== Deletion after entry into blacklist (standard)  =====
Line 19: Line 19:
   * Parameter: Number of days after entry into blacklist: min. 1 day, max. 1095 days (3 years)    * Parameter: Number of days after entry into blacklist: min. 1 day, max. 1095 days (3 years) 
  
-===== Deletion after last sending of a message =====+===== Deletion after the last sending of a message =====
  
   * Parameter: Number of days after last sending of a message: min. 90 days, max. 1095 days (3 years)    * Parameter: Number of days after last sending of a message: min. 90 days, max. 1095 days (3 years) 
Line 25: Line 25:
 ===== Deletion due to external definitions ===== ===== Deletion due to external definitions =====
  
-  * An automatic import process can be set up. Included e-mail addresses will be deleted automatically. The user of promio.connect carries the responsibility for this deletion process. Warning: a falsely deleted data set can not be restored in promio.connect. +  * An automatic import process can be set up. Included email addresses will be deleted automatically. The user of promio.connect carries the responsibility for this deletion process. Warning: a falsely deleted data set cannot be restored in promio.connect. 
  
 {{tag>delete personal_data DSGVO GDPR }} {{tag>delete personal_data DSGVO GDPR }}
  
en/gdpr_deletion_rules.1652368971.txt.gz · Last modified: 2022/05/12 17:22 by fw