Skip to main content

Data Deletion Requests

Handling GDPR Article 17 "Right to Erasure" requests.

What is a Data Deletion Request?

Under GDPR, individuals can request deletion of their personal data. However, this right is not absolute and subject to exceptions.

When Deletion IS Permitted

ConditionExample
Data no longer necessaryAccount inactive, no pending transactions
Consent withdrawnMember withdraws marketing consent
Unlawful processingData collected without proper basis
Legal obligationCourt order to delete

When Deletion is NOT Permitted

ReasonExplanation
Legal obligationAML records must be retained (5-7 years)
Legal claimsData needed to establish, exercise, or defend claims
Pending transactionsFinancial records require retention
Active investigationCompliance or fraud investigation ongoing
Tax recordsRequired for tax compliance
Active Business LicenseAccount with active license cannot be fully deleted

Request Handling Process

Step 1: Verify Identity

  • Confirm requester's identity matches account holder
  • Document verification method
  • Check for power of attorney if third party

Step 2: Assess Eligibility

Check for blockers:

BlockerAction
Active Business LicenseCannot delete until license expires/cancelled
Pending withdrawalCannot delete until processed
Ongoing investigationEscalate to CIO immediately
Outstanding balanceCannot delete until resolved
Transaction history < 7 yearsMust retain for AML compliance

Step 3: Determine Scope

Data TypeCan Delete?Reason
Profile name/emailPartialAnonymize but retain record
Marketing preferencesYesFull deletion
Transaction historyNoAML/tax retention
KYC documentsAfter retention periodRegulatory requirement
Commission recordsNoTax/AML retention
Support ticketsYesUnless relevant to legal claim
Login historyAfter retention periodSecurity requirement

Step 4: Execute or Decline

If eligible:

  1. Anonymize personal identifiers
  2. Delete non-essential data
  3. Retain required records with minimized data
  4. Document what was deleted vs retained

If not eligible:

  1. Explain specific reasons for refusal
  2. Cite legal basis for retention
  3. Explain when deletion may become possible
  4. Inform of right to complain to data protection authority

Response Templates

Partial Deletion (Most Common)

"We have processed your deletion request dated [DATE].

Deleted: Marketing preferences, support tickets, profile photo

Retained (legal obligation): Transaction history, commission records, KYC verification records

These records are retained for [X] years to comply with anti-money laundering regulations and tax requirements. After this period, they will be automatically deleted.

You retain the right to lodge a complaint with your local data protection authority if you disagree with this decision."

Cannot Delete (Active Account)

"We cannot process your deletion request at this time because your account has an active Business License expiring [DATE].

To proceed with deletion:

  1. Allow your Business License to expire (or request cancellation)
  2. Withdraw any available commission balance
  3. Resubmit your deletion request

We will retain your request on file and can process it once these conditions are met."

Cannot Delete (Investigation)

"We are unable to process your deletion request at this time due to an ongoing review of your account. We will contact you when this review is complete. You retain the right to lodge a complaint with your local data protection authority."

Timeline

StageDeadline
Acknowledgment48 hours
Decision communicated30 days
Deletion executed30 days from decision
Third parties notified30 days (if data was shared)

Escalation Triggers

Escalate to CIO immediately if:

  • Request received during active investigation
  • Member threatens legal action
  • Request involves business entity (KYB)
  • Unusual circumstances or complex history

Post-Deletion

After deletion is executed:

  • Confirm deletion to member in writing
  • Document what was deleted and what retained
  • Note legal basis for any retained data
  • Update internal records
  • Notify any third parties who received the data