UnifyID legal
Data Retention Notice
The principles and indicative periods used to retain UnifyID records.
Version 1.0Effective 31 July 2026
How periods are set
Retention is based on purpose, sensitivity, contractual commitments, fraud and security risk, limitation periods, and applicable legal obligations. Records are deleted, anonymized, or placed beyond ordinary use when the period ends.
Indicative schedule
- Account and verified identity attributes: while active and for the applicable legal or dispute period after closure.
- Consent evidence: for the connection and applicable audit or dispute period.
- Temporary verification uploads and biometric captures: the shortest provider and security window technically and legally permitted.
- Security and audit events: according to risk and regulatory requirements with restricted access.
- Privacy and support requests: for completion and the applicable accountability or dispute period.
Deletion requests
A deletion request triggers a record-level review. Some records may be retained in restricted form for legal compliance, fraud prevention, security, or legal claims.