Capability 1 of 6
Deletion orchestration
How it maps to C-36: the bill proposes a disposal right, deletion or anonymization, with downstream service-provider action and documented exceptions. See the deletion delta.
What the capability must do
- Schedule and run deletion across production, data lakes, analytics, logs, archives, endpoints, email, and backups
- Propagate deletion to service providers and record their confirmation, not just the request
- Pause for legal holds: narrow, authorized, time-limited, and released promptly
- Produce deletion proof: job ID, systems reached, records affected, exceptions, approver, completion date
Questions to ask vendors
- Show me one sample deletion running end to end, from request to provider confirmation.
- How do backups and archives get handled without breaking restore?
- What happens to derived data, inferred profiles, and model features?
- How is a legal hold applied, authorized, and released?
- What does the deletion proof look like, and can I export it without your help?