Data retention
What PacSpace keeps of a record, what a retention window removes, and why a records workspace can leave the setting alone. The default keeps everything, and no window removes any part of a record.
Nothing in a record is removed by a retention setting. Every entry, the sealed record as you wrote it and the seal that was committed over it, is kept whatever window the workspace sets. A window does not change what an evaluator, an auditor, or anyone else you share the record with can open or check.
What is always kept
- Every entry of every record: the title, the time of the action, who acted, the fingerprints, and every other field you sent, exactly as committed.
- Every seal, and when each entry was committed.
- Whether each write committed or failed, and the failure's code.
This is what the check compares a record against.
What a retention window removes
The default is Forever, and nothing is removed. A window of 90, 30, or 7 days removes two things once they are that old: the payloads and endpoint addresses of webhook deliveries that were delivered or that failed for good, and the raw business data of entries written by another PacSpace product, outside these docs. A delivery whose payload is gone stays in the delivery list as a tombstone for 30 days, with dataPurged: true.
For a records workspace the window changes nothing about a record. records.history, records.receipt, the Shared Record, and the printed statement answer the same after the window as before it.
Setting it
An admin or a manager sets it in the dashboard under Settings, Data retention, or:
curl -X PATCH https://app.pacspace.io/dashboard/tenant/retention \
-b pacspace-dashboard-cookies.txt \
-H "X-Pacspace-CSRF: 1" \
-H "Content-Type: application/json" \
-d '{ "dataRetentionDays": 30 }'dataRetentionDays is null for Forever, or 7, 30, or 90. The setting applies to the whole workspace. The answer says what the window removes, and that entries in a record are never removed. The removal runs daily at 03:00 UTC.
What is removed on its own
Two kinds of operational row are removed on a schedule that is not yours to set: API request logs after 90 days, and the delivery tombstones of webhooks 30 days after their payloads were removed. Neither is part of any record.