Data Retention Policy
Data Types and Retention Requirements
Data Type | Description | Retention Period | Disposal Method | Justification |
---|---|---|---|---|
Intern Contact Details | Key contacts, email addresses | 2 years | Deletion | Operational needs |
Correspondence | Emails and communications with publishers and interns | Indefinite | N/A | Operational needs |
Book Creator Information | Contact details, information about research | Indefinite | N/A | Research continuity, Historical records |
Publisher Contact details | Key contacts, email addresses | Indefinite | N/A | Business continuity |
Access and Security Controls
-
Restricted Access: Only authorized personnel with a clear business need may access this data.
-
Data Encryption: All publisher and book creator data will be encrypted both in transit and at rest.
-
Periodic Review: An annual review will be conducted to confirm that data is securely stored, accessible only to relevant parties, and to assess any need for updates to security measures.​​​​​​​​
Disposal
As this data is retained indefinitely, no routine disposal is planned. However, should disposal become necessary due to legal or business requirements, all data will be securely deleted to prevent unauthorized access.
Compliance and Auditing
Regular audits will be conducted to ensure the policy is adhered to, and data retention practices comply with applicable data protection regulations.
Compliance and Auditing
Regular audits will be conducted to ensure the policy is adhered to, and data retention practices comply with applicable data protection regulations.