Ceyu

Data request (DSAR)

Last updated: 28 July 2026

You can ask what personal data we hold about you, have it corrected, get a copy of it, or have it deleted. This page says exactly how, and what happens afterwards.

1. What you can request

RequestWhat you getArticle
AccessConfirmation of what we process about you, and a copy of itArt. 15 GDPR
CorrectionInaccurate profile data correctedArt. 16 GDPR
DeletionYour account and content deleted or anonymisedArt. 17 GDPR
RestrictionProcessing paused while a dispute is resolvedArt. 18 GDPR
PortabilityA machine-readable export of the data you providedArt. 20 GDPR
ObjectionProcessing based on legitimate interests stoppedArt. 21 GDPR

2. How to make one

Send an email to privacy@ceyu.org from the address on the account, and include:

  • which of the above you are asking for
  • the account email address, and the workspace or organisation if you are in more than one
  • for a correction, what is wrong and what it should say

A subject line of “DSAR — access”, “DSAR — deletion” and so on helps it get routed quickly.

3. Identity verification

We verify who you are before disclosing or deleting anything. Without that step, a request form would be a way to read or destroy someone else's data.

Writing from the account's own email address is usually enough. Where it is not — for example if you have lost access to that address — we will ask for something additional, and we will ask for the least that will do. We do not ask for a copy of an identity document unless there is no other way, and if we do, you may redact everything except what is needed.

4. How long it takes

  • We acknowledge receipt, normally within a few working days.
  • We respond substantively within one month of a verified request (Art. 12 (3) GDPR).
  • Where a request is complex, that can be extended by up to two further months. We tell you within the first month if so, and why.
  • Deletion: profile data is deleted or anonymised within 30 days of a verified request. Workspace content is soft-deleted, then purged after the retention window.

Requests are free. We only charge for manifestly unfounded or excessive repetition, which in practice has not happened.

5. What we cannot delete, and why

Some data outlives a deletion request, for reasons that are not ours to waive:

  • Invoices and accounting records must be kept for statutory periods under German commercial and tax law (up to 10 years). We restrict them instead of deleting them.
  • Security and audit logs are retained for their defined period where there is a legitimate interest in being able to investigate an incident.
  • Backups roll off on their own schedule, approximately 30 days. Data deleted from live systems disappears from backups as the window passes rather than instantly.
  • Content in a shared workspace that other members also worked on may need to remain for them. We remove your personal identifiers from it rather than deleting their work.

What we do not have

Where cloud sync is enabled, your workspace content is encrypted with a key that never leaves your devices. An access request cannot produce a readable copy of that content, because we do not hold one. Export it from the application instead — or simply take it from your own disk, where the primary copy already is.

6. Doing it yourself

You do not need us for most of this. Profile data can be corrected in the application's settings, boards and projects can be exported, and an account can be deleted from workspace settings. This page exists for the cases where the self-service route does not cover what you need.

7. If you are not satisfied

You can complain to a supervisory authority. The competent authority for our seat is the Landesbeauftragte für den Datenschutz und die Informationsfreiheit Baden-Württemberg, Lautenschlagerstraße 20, 70173 Stuttgart, Germany. You may also complain to the authority where you live or work.

We would rather you told us first — write to privacy@ceyu.org — but that is a preference, not a precondition.