Retention schedule

Data Retention and Deletion

Math Check data is kept only for the period assigned to its current purpose.

Standard time limits

Unfinished identity-free check24 hours after the most recent assessment activity
Completed identity-free result30 days after completion
Restricted privacy-administration log90 days after the staff privacy action

Automatic deletion

An automated retention job deletes expired assessment state, answers, and results. Deletion removes related rows together so an answer is not left without its identity-free result.

Controlled legal hold

A documented legal hold may temporarily prevent scheduled deletion only when an authorized staff member records the reason, time, and responsible actor. Legal hold is not available through the public assessment.

Infrastructure logs and backups

Cloudflare infrastructure logs and database backups require separate retention controls. They must not be used to create a child profile or intentionally joined to an identity-free assessment record. Their configured time limits are reviewed as part of each production privacy audit.