TrainMeUK LogoTrainMeUK
Home
How It Works
Product
Reports
Pricing
Resources
Login

Summer sale

Limited time

15% off monthly · +20% annual

15%off monthly+20%off annual
Claim offer
Help
Help Center
General SettingsEmail Notifications & Power AutomateBrandingTeams IntegrationCompliance Settings & FrameworksData ProtectionBilling & LicencesCourse SurveysAdding External CertificatesLearner VerifyWhen to Use Learner Verify for Identity ChecksTroubleshooting Email Delivery
General SettingsEmail Notifications & Power AutomateBrandingTeams IntegrationCompliance Settings & FrameworksData ProtectionBilling & LicencesCourse SurveysAdding External CertificatesLearner VerifyWhen to Use Learner Verify for Identity ChecksTroubleshooting Email Delivery
HelpSettings & ConfigurationData Protection

Data Protection

Retention periods, anonymise (right to be forgotten), export user data, and privacy policy

Overview

The Data Protection tab provides GDPR-oriented tools for monitoring data retention, responding to subject access requests, and processing anonymisation (right to be forgotten) for eligible users. It is intended for authorised administrators who handle privacy operations — not everyday training administration.

Who can access this tab?

Data Protection settings require the canManageSystemSettings permission. Actions taken here are logged for audit purposes.

Warning

Data protection actions affect live production data. Review your organisation's privacy policy and internal procedures before exporting, anonymising, or running retention enforcement. Anonymisation is intended for inactive or archived users and cannot always be reversed.

Compliance Status

The Compliance Status panel shows indicator lights for key controls:

  • GDPR Compliant
  • Data Retention Enforced
  • Encryption Enabled
  • Audit Logging Active

These indicators reflect platform configuration and operational status. They help you confirm controls are in place before an audit — they do not replace your organisation's own compliance assessment.

Data Retention Statistics

The dashboard shows counts for users (total, active, archived, anonymized) and data records such as audit logs and sessions, including how many records have passed their retention period.

Data Retention Statistics — users, records, and Retention Periods (Days)Click image to enlarge
Retention periodTypical scope
User DataInactive user records eligible for cleanup
Audit LogsSystem audit trail entries
Progress DataCourse completion and progress records
Session DataCalendar session and attendance records
NotificationsNotification history
Temp PasswordsTemporary credential data

Retention periods are shown in days on the Retention Periods (Days) panel. These are platform-defined defaults — contact TrainMeUK support if you need to discuss custom retention requirements for your contract.

Quick Actions

Three buttons in Quick Actions trigger operational retention processes:

ActionPurpose
Enforce Retention PoliciesProcesses records that have exceeded their configured retention period
Clean Up Expired DataRemoves expired records identified by the retention system
Generate Compliance ReportDownloads an Excel GDPR compliance report for your records

What these actions do not do

Retention enforcement and cleanup remove or anonymise data according to configured retention rules within the TrainMeUK platform. They do not guarantee immediate erasure from all backup systems, offline exports, or third-party integrations your organisation may operate separately. Allow reasonable time for scheduled backup rotation and document your internal process accordingly.

Anonymize User (Right to be Forgotten)

Use this workflow when you have a valid request to anonymise an inactive user's personal data. The system validates eligibility before allowing anonymisation.

Anonymize User (Right to be Forgotten) and Export User DataClick image to enlarge
1

Search for an inactive user

In Anonymize User (Right to be Forgotten), search by name or email. Only inactive or archived users appear — active users cannot be anonymised through this flow.

2

Review eligibility

Select the user and wait for validation. The page shows whether the user can be anonymized or explains why not (for example, active assignments or open compliance records).

3

Provide a reason and confirm

Enter a Reason for Anonymization (required for audit). Click Anonymize User when validation passes.

Warning

Anonymisation replaces identifiable personal data with non-identifying placeholders. Training history may be retained in anonymised form for compliance reporting. This is a serious action — confirm you have authority to process the request and have verified the user's identity through your organisation's standard procedure.

Export User Data

Use Export User Data to respond to subject access requests. You can search any user (not limited to inactive accounts) and download their data.

1

Search and select a user

Type a name or email in Search Users. Click the matching result to select them.

2

Choose format

Select JSON Format or CSV Format from the dropdown.

3

Export User Data

Click Export User Data. A file downloads to your browser. Export activity is recorded in Recent Activity on the dashboard.

Tip

Store exported files securely and delete them when your retention policy no longer requires them. Exports may contain sensitive personal data.

Privacy Policy

The Privacy Policy panel shows the current policy version and last updated date. Click View Privacy Policy to open the published policy document.

Share this link with learners and staff when they ask where to read TrainMeUK's privacy information for your tenant.

Troubleshooting

User cannot be anonymized

Read the validation message — common reasons include the user still being active or having open records. Archive the user first if appropriate, then retry validation.

Export failed or is empty

Confirm you selected the correct user. If the problem persists, note the user ID and contact support with the approximate time of the attempt.

Retention counts still show expired records

Run Enforce Retention Policies or Clean Up Expired Data, then refresh the page. Large tenants may take a moment to process.

Related Guides

  • Learner Verify — identity evidence retention and review
  • Password Policy & MFA — security controls alongside data protection
  • Exporting Reports — training data exports for operational reporting
Previous

Compliance Settings & Frameworks

Next

Billing & Licences

TrainMeUK LogoTrainMeUK Ltd

Connect Azure once. TrainMeUK handles reminders, Teams nudges, certificates, and audit-proof reports — automatically.

hello@trainmeuk.co.uk
+44 1252 929213
8 George Myers Close, Ash, Guildford, Surrey, GU12 6FW

Quick Links

  • Home
  • How It Works
  • Product
  • Reports
  • Pricing
  • Resources
  • Knowledge Base

Legal

  • Privacy Policy
  • Terms of Service
  • Cookie Policy
  • Data Processing Addendum
  • Subprocessors
  • Acceptable Use Policy
  • FAQ

Popular Resources

Mandatory Training Requirements for UK BusinessesHow Often GDPR Training Should Be Done in the UKHow Fast You Should Produce Training Records for Auditors

© 2026 TrainMeUK Ltd. All rights reserved.

CPD Accredited Provider