Products
Data deletion
Give people a simple way to ask for their data to be deleted, and let DataCops carry it out automatically across your systems and connected ad platforms. This is DSAR automation for the GDPR right to erasure (Article 17) and CCPA deletion requests, without the manual work.
What it does
A visitor asks to have their data deleted, and DataCops erases it. The person submits their email, confirms with a link, and DataCops removes their personal data across its own systems and the ad platforms and tools you have connected, then sends a confirmation with a status link. It is a data subject request, or DSAR, handled automatically for you, covering the GDPR right to erasure (the right to be forgotten) and CCPA deletion.Why it matters
Under GDPR Article 17, any person can ask you to delete the personal data you hold about them, and you have 30 days to do it. The hard part is not the rule, it is the plumbing. The same person is a different identifier in every tool: an email in your store, a hashed value in Meta, another hash in TikTok, a contact ID in your CRM. Finding and deleting all of them by hand takes teams weeks, which is why the enterprise DSAR tools that automate this cost thousands a year.
DataCops removes that work. Because every conversion already flows through one pipe with a single canonical identity, a deletion request is one lookup, not a hunt across a dozen systems. That is what turns a manual, multi-week process into DSAR automation that finishes in minutes and completes well inside the deadline.
How DSAR automation works
- Request. The person enters their email in a form you place on your privacy page, or emails you directly.
- Verify. DataCops emails them a confirmation link. Nothing is deleted until they click it, so no one can erase another person’s data by typing their email.
- Erase. DataCops finds every record tied to that person and removes their personal data across its own systems and the destinations you have connected. Deletion signals go to the ad platforms automatically.
- Confirm. The person gets a confirmation with a status link, and the request is completed within 30 days.
Deletes across your ad platforms, not just your database
A real erasure request does not stop at your own store. The person’s data was sent downstream to every ad platform and tool you use, and the law expects it gone from there too. DataCops keeps the map of where each person’s data went, so it can act on all of it: it sends deletion signals to the platforms that accept them (for example Meta, TikTok, and LinkedIn), and for platforms that hold only hashed, aggregated data (for example Google Ads), it stops all future sending for that person. This downstream coverage is the part most teams miss and the part that turns a deletion request into a compliance risk.
The audit trail
Every request is written to an append-only record: when it arrived, when it completed, how many records were removed, and the public status page the person can check. If a regulator asks you to prove a deletion, you have a record-level answer, not just "we ran a process". Emails on the record are masked, so the proof page never exposes personal data.
GDPR and CCPA deadlines
The GDPR right to erasure gives you 30 days to respond. The CCPA and most US state privacy laws give 45 days. The same DataCops flow handles both, so you meet whichever applies to the person making the request, and every request is timestamped against its deadline.
Set it up
Drop one script tag on your privacy page and the request form renders inline. People submit, confirm by email, and their deletion is handled and logged for you. You can also point people to a support email and handle requests from your dashboard.
Frequently asked questions
What is a DSAR?
A data subject request (DSAR) is when a person asks a business to access or delete the personal data it holds about them, under laws such as the GDPR and CCPA. A deletion request is the right to erasure, also called the right to be forgotten.
How long do I have to respond to a deletion request?
Under the GDPR you have 30 days. Under the CCPA and most US state privacy laws the deadline is 45 days. DataCops completes verified deletions within 30 days.
Does it delete data from Meta and Google too?
Yes. DataCops removes the person’s data from its own systems and sends deletion signals to the ad platforms you have connected, such as Meta, TikTok, and LinkedIn. Where a platform holds only hashed, aggregated data, such as Google Ads, future sending for that person stops.
Is CCPA covered, or only GDPR?
Both. The same request flow handles the GDPR right to erasure (Article 17) and CCPA and US state deletion requests.
How is the requester’s identity verified?
The person confirms through a link sent to their own email before anything is deleted, so no one can erase another person’s data by typing their address.