7. of Retention/Removal
Consent is a checkbox, but to withdraw the consent and remove your data, you need to email us.
Threat |
|
You require your customers to send an email to withdraw their consent, but when you ask them to consent, they only need to click a checkbox. Article 7 of GDPR Conditions for Consent condition number 3 states that “It shall be as easy to withdraw consent as to give consent,” so by requiring an email be sent, the process is more complex than it should be for the subject. Other regulations also suggest a similar approach. |
|
GDPR |
Chapter 2, Art 7. – 3. |
CCPA & CPRA |
CCPA 1798.135. Methods of Limiting Sale, Sharing, and Use of Personal Information and Use of Sensitive Personal Information (b)(2)(A) |