Step 1
Open Account data rights
Sign in, open the account profile and choose Data rights. Authenticated requests are linked to a pseudonymous subject reference and an audit trail.
Step 2
Choose export, correction or deletion
- Export requests ask for a portable copy of eligible account data.
- Correction requests identify inaccurate account information that needs review.
- Deletion requests begin a governed process with identity confirmation, cooling-off time and retention review.
Step 3
Apply the stronger deletion confirmation
A deletion request requires the current password and the exact confirmation phrase shown in the form. The default cooling-off period is seven days. An administrator cannot complete the request before the eligible date.
Submitting a deletion request does not immediately erase data. Applicable security, legal, accounting, dispute or backup obligations may require scoped retention.
Step 4
Use support for unauthenticated requests
If you cannot access the account, contact the published support address. Identity must be verified before account data is disclosed or changed.