Retention schedule

DataOperational target
Original analysis uploadProcess transiently; delete after analysis unless a workflow explicitly stores it
Reports and missing-item dataUser-selected period; default 30 days where no selection exists
Client-portal attachmentsUntil workflow completion plus configured retention, then delete
Account/profileAccount life plus deletion cooling period and necessary legal hold
Security/audit logsUsually 12–24 months based on risk and legal need
Billing/tax recordsPeriod required by applicable accounting and tax law
Support/privacy requestsUsually 3 years after closure to evidence handling
BackupsEncrypted rolling cycle, target maximum 90 days, then overwrite

Deletion may be delayed by litigation hold, fraud prevention, security investigation or mandatory law. Expired backup copies are isolated from ordinary use and deleted through rotation.