Data Retention Policy
What is Data Retention Policy?
A documented policy defining how long different categories of data should be kept, when it should be archived, and when it must be permanently deleted.
Frameworks that govern data retention policy
What the standards actually require on data retention policy
Requirements naming data retention policy across this standard, quoted from the control text.
COPPA1 control
An operator may retain personal information collected from a child only for as long as reasonably necessary to fulfil the specific purpose for which it was collected, and must then delete it using reasonable measures to protect against unauthorised access duri...
COPPA-312.10 · Data Retention and Deletion (Written Retention Policy) →Questions people ask about data retention policy
What is Data Retention Policy?
A documented policy defining how long different categories of data should be kept, when it should be archived, and when it must be permanently deleted.
Why is Data Retention Policy important for compliance?
Data Retention Policy is a key concept in Privacy and Data Protection. Understanding data retention policy helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address Data Retention Policy?
Data Retention Policy appears in the requirement text of COPPA. Across these standards we have identified 1 control that names it directly, each linked to the control text on the compliance platform.
Where can I learn more about Data Retention Policy?
Explore our compliance framework pages to see how data retention policy applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.
See how Data Retention Policy applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.
Written and maintained by Gerard Blokdyk, The Art of Service.