Privacy operations
GDPR, retention, deletion, and export
This page separates personal-account deletion from organization-owned workspace content and states which retention periods are verified in product behavior today.
Privacy owner and DPO contact
Lyniti has not publicly designated a named Data Protection Officer. Privacy requests are owned by the Lyniti operator in Helsinki, Finland and handled through the contact below.
If legal review determines that formal DPO designation is required, this page and the Privacy Policy will be updated with the designation and direct contact.
Privacy contact: support@lyniti.com
Retention schedule
Periods below distinguish verified product behavior from retention still requiring an operational record. Legal holds, fraud prevention, disputes, billing law, and security obligations may require limited longer retention.
| Data category | Current period | Deletion or retention rule |
|---|---|---|
| Active account profile and authentication data | While account is active | Removed or anonymized after the verified 30-day account-deletion window, subject to records that must remain. |
| Scheduled account deletion | 30 days | Request signs the user out and schedules deletion. A reminder is sent near deletion. Product behavior permits cancellation before execution. |
| Workspace content | While workspace exists | Workspace deletion removes related content subject to legal, billing, security, dispute, fraud-prevention, and backup-expiration exceptions. |
| Shared messages and files after personal-account deletion | Follows workspace retention | Content remains available to the organization where it belongs to the workspace; the deleted user identity is anonymized. |
| Billing and legally required records | Applicable statutory period | Kept only as required for accounting, tax, payment, dispute, fraud, or other legal duties. Exact category schedule requires legal-record verification. |
| Security and service logs | Operational period not yet published | Kept only as needed for security, reliability, abuse prevention, and investigation. Numeric production retention awaits OP-01 verification. |
| Backups | Until normal rotation expires | Residual copies may remain temporarily. Exact production rotation period awaits OP-01 backup-record verification. |
| Support communications | For request handling and defensible follow-up | Deleted when no longer needed unless security, dispute, or legal requirements apply. |
Controller and processor roles
Lyniti is controller for account, billing-contact, support, security, and service-usage data used to operate Lyniti. A customer organization is generally controller for personal data it places in its workspace, while Lyniti processes that workspace data to provide the service.
Roles can differ for a specific deployment or use case. Signed customer terms and DPA control over this summary where applicable.
Export process
Users should use built-in exports for supported records before deleting an account or workspace. Where a complete built-in export is not available, an authorized workspace representative can request assistance through the privacy contact.
- Identify requester and verify account or workspace authority.
- Confirm scope, date range, data subjects, and required format.
- Use available product exports first, then assess a supported administrative export where technically feasible.
- Deliver through an authenticated or otherwise agreed secure channel.
- Record completion and any data that could not be included because it belongs to another controller, user, or legal restriction.
Deletion process
Personal-account deletion is requested from account settings after active subscriptions owned by the user are resolved. The account enters a 30-day pending-deletion period, active refresh tokens are removed, and sessions are invalidated.
At execution, authentication links, password material, encryption-key records, profile metadata, workspace memberships, and direct personal identifiers are removed or anonymized. Sole-member workspaces are deleted; ownership of workspaces with other members is transferred. Shared messages and files remain with those workspaces under organization retention.
- Account deletion does not silently delete organization records owned by a shared workspace.
- Workspace deletion and personal-account deletion are separate actions with different scope.
- Backup copies expire through normal rotation and are not restored to active service except for recovery purposes.
- Requests subject to a legal hold or statutory duty may be restricted or delayed only to that extent.
Data subject requests
Requests may cover access, correction, deletion, restriction, objection, portability, or withdrawal of consent where applicable. Lyniti verifies identity and authority before disclosing or changing data.
For workspace content controlled by a customer organization, Lyniti may direct the requester to that organization or assist it as processor. Complaints may also be filed with the Finnish Data Protection Ombudsman.