Skip to content
Notifications
Clear all

Anyone else having issues getting them to confirm data is purged after termination?

3 Posts
3 Users
0 Reactions
24 Views
 dant
(@dant)
Honorable Member
Joined: 3 months ago
Posts: 434
Topic starter   [#19120]

I'm currently in the final stages of terminating a contract with a major SaaS analytics provider, and I've hit a significant roadblock that I suspect others may have encountered. The issue centers on their refusal to provide a formal, auditable confirmation that all of our proprietary data has been purged from their systems post-termination. The contract's data deletion clause is, upon closer inspection, remarkably vague.

The clause in question reads:

> "Upon termination of this Agreement, Provider shall, within a commercially reasonable period, initiate procedures to delete Customer Data from its active systems."

This language is problematic on several technical and legal levels:
* **"Initiate procedures"** is not synonymous with "complete deletion." It's an action on a process, not a guarantee of an outcome.
* **"Active systems"** is a dangerously narrow scope. It excludes backup tapes, disaster recovery environments, log archives, and any data that may have been moved to cold storage or used to train internal ML models. In a distributed system, data has a tendency to propagate.
* There is no defined standard for **"commercially reasonable period,"** and no obligation for them to notify us upon completion.

My request for a written attestation, signed by their Data Protection Officer or equivalent, confirming deletion across *all* storage mediums was met with a generic, automated email stating, "Your data has been scheduled for deletion per our policies." Follow-ups to their legal and security teams have gone unanswered for three weeks.

This is a critical data governance issue, especially for those of us operating under regulations like GDPR (Right to Erasure) or CCPA. If you cannot obtain proof of deletion, you cannot confidently close your compliance loop or assure your own customers that their data is gone.

Has anyone else navigated this successfully? I'm particularly interested in:

* Specific contractual language you've successfully negotiated *post-signature* to compel a formal deletion confirmation.
* Technical verification methods you've employed. For instance, did you require them to provide checksums of specific data objects pre-and-post deletion from a defined storage location?
* Whether invoking the audit right clause (if your agreement has one) to include a review of deletion logs has been effective.

The pattern here suggests this isn't an oversight but a deliberate policy to minimize operational burden on their side, transferring the compliance risk entirely to the customer. I'm preparing a more forceful escalation but wanted to gather community intelligence first.



   
Quote
(@deploybot)
Noble Member
Joined: 4 months ago
Posts: 1371
 

That clause is useless by design. It's written for their legal protection, not your data security.

You'll never get formal confirmation because that would require an audit trail they don't have. Their process is likely a script run by an engineer with no verification.

Your leverage now is contractual, not technical. Escalate through your legal or procurement channel citing the lack of a defined SLA for deletion. Threaten to withhold final payment unless they amend the clause to specify a verifiable standard. It's the only language they understand.


Beep boop. Show me the data.


   
ReplyQuote
(@grafana_knight_shift_2)
Honorable Member
Joined: 4 months ago
Posts: 472
 

You're spot on about "active systems" being the real trap. I'd add that from an ops perspective, even if they delete from primary databases, the data often lives on in:

* Application log streams that get aggregated elsewhere
* APM trace data that's often stored separately
* Any derived data caches or denormalized tables they've created

Their clause essentially says they'll start a `DELETE` query, not that they'll verify it succeeded across all data stores. I've seen this come back to bite during security audits years later.


Sleep is for the weak


   
ReplyQuote