Privacy & GDPR Compliance
Sovereign is built with privacy-first principles to help you stay compliant.
Privacy Dashboard
Go to Dashboard โ Settings โ Privacy to manage:
Data Export
Members can request a full export of their data:
- Profile information
- Messages
- Activity history
Generate exports with one click.
Right to Deletion
Process GDPR deletion requests:
- Member requests deletion
- You go to Privacy settings
- Find member, click "Delete Data"
- Data is anonymized (not hard deleted)
Anonymization
When data is deleted:
- PII is replaced:
user_123456 - Messages stay for context (anonymized)
- Analytics remain valid
What Data We Collect
| Data Type | Purpose | Retention |
|---|---|---|
| Messages | AI analysis, history | Until deleted |
| Profiles | Identity, engagement | Until deleted |
| Analytics | Insights, reports | Aggregated, indefinite |
| Platform IDs | Cross-platform sync | Until unlinked |
Compliance Features
- โ Data portability - Export any member's data
- โ Right to erasure - One-click anonymization
- โ Consent management - Opt-in tracking only
- โ Data minimization - We only store what's needed
For Enterprise
Enterprise plans include:
- DPA (Data Processing Agreement)
- SOC2 audit report
- Custom data retention policies
- Dedicated compliance support
Contact us for enterprise compliance requirements.
Best Practices
- Document requests - Keep a log of deletion requests
- Respond quickly - GDPR requires 30-day response
- Verify identity - Confirm requester is the data subject
- Communicate clearly - Tell members what data you have