LEGAL-003
TailorDrive Data Retention and Deletion Policy
Status: Draft
Version: 0.1.0
Document ID: LEGAL-003
In short
TailorDrive keeps data only for as long as necessary to provide the service, comply with legal obligations and protect the legitimate interests of the parties.
Users control the data they enter into the application and may request export or deletion under applicable law and this policy.
1. Purpose of this document
This policy explains:
- how long data is kept;
- when it is deleted;
- how backups are handled;
- how a user may request export or deletion of data.
This policy supplements the TailorDrive Privacy Policy.
2. General principles
TailorDrive follows these data retention principles:
- data is kept only as long as necessary;
- data that is no longer necessary is deleted;
- data may be recovered from backups in case of technical incidents;
- legal obligations for keeping certain information are respected.
3. Retention periods
3.1 User account
Account data is kept for as long as the account exists.
After account deletion, it will be removed or anonymized within a reasonable period, except for information that must be retained under legal obligations.
3.2 Data entered in TailorDrive
Data entered by users, including clients, contacts, documents, messages, tickets, appointments, tasks, contracts, invoices and other information, is kept until:
- it is deleted by the user;
- the account or organization is deleted;
- a legal obligation requires it to be kept for a specific period.
3.3 Uploaded files
Uploaded files are kept until deleted by the user or until the account is deleted.
3.4 Technical logs
Technical and audit logs are kept for a limited period required for operation, security and incident investigation.
The exact period may vary depending on log type and operational requirements.
4. Backups
The Provider may create backups for internal service-continuity, security and disaster-recovery purposes. They are not a customer archive and do not guarantee that a particular file, version or change can be restored.
Backups may be periodic rather than continuous and may be incomplete, delayed, corrupted, unavailable or unable to restore recent changes. Their schedule, scope and retention may change according to operational requirements unless expressly agreed in a signed order.
Data removed from the application may temporarily remain in backups until replacement or expiry. Conversely, deleted or overwritten data may be unrecoverable. Customers remain responsible for independent, current and tested copies of business-critical data.
5. Data export
Users may request export of their own data under applicable law and available TailorDrive functionality.
6. Data deletion
Users may request deletion of data where there is a legal basis for doing so.
In some cases, the Provider may keep certain information where legal obligations or legitimate interests justify retention.
7. Secure deletion
When retention periods expire, data is removed through internal procedures aimed at preventing unauthorized access and reducing the risk of unauthorized recovery.
8. Changes to this policy
This policy may be updated to reflect legal, technical or operational changes.
The updated version will be published on the website and in the TailorDrive application.
