The Data Retention Timeline Almost Nobody Reads Before Signing Up
The unread section
Data retention policy is one of the least-read sections of any privacy policy, despite directly answering a question most users eventually have: what happens to my data if I stop using this?
The actual timeline
An account with no activity is deleted after 3 years. KYC-specific data is retained separately for 5 years post-closure to satisfy regulatory requirements, then removed.
User rights in the meantime
Access, rectification, deletion, and data export can be requested at any point, per the GDPR rights outlined in the published policy.
