GDPR compliance in the Reltio Platform
Learn about how the Reltio Platform supports compliance with EU General Data Protection Regulation (GDPR) requirements.
About GDPR
- protects the personal data of individuals residing in the EU, as well as non-EU residents visiting the EU.
- applies to monitoring individual behavior, processing personal data through automation, and processing data by any method with the intention of filing that data.
- applies to any entity that processes or controls data in the EU, offers goods or services to people who are in the EU, or monitors behaviors of people physically in or related to the EU.
- extends due diligence obligations and potential liability to data controllers and data processor.
GDPR compliance requirements
- All profile entity or entities
- All historical data
- All losing entity or entities (for more information, see Merging Two Entities)
- All records from the Activity Log except records about creating and deleting
- The customer has a pending transaction.
- The customer has completed a transaction with the past 30 days.
How the Reltio Platform supports GDPR compliance
The Reltio Platform supports compliance with the EU GDPR by providing mechanisms to remove personal data when a data subject exercises their Right to be forgotten.
When consumer data is deleted for GDPR purposes, the platform removes personal attribute values and related historical information associated with the entity. This ensures that personal data is no longer accessible or processed within the platform.
The platform also sanitizes audit and activity information to ensure that sensitive data is no longer visible, while retaining minimal system events related to entity creation and deletion for compliance and traceability.
GDPR deletion requests are typically initiated outside of the Reltio Platform through a rights management or compliance system. The Reltio Platform does not store the identity of the individual or organization requesting the deletion.
For more information about how GDPR deletion is implemented in Reltio, see Delete Entities by GDPR.