> For the complete documentation index, see [llms.txt](https://oten.gitbook.io/identity-support/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://oten.gitbook.io/identity-support/user-guide/account-management/data-and-privacy.md).

# Data & Privacy

### Scope <a href="#scope" id="scope"></a>

The **Data & Privacy** page gives you a read-only overview of how OXU Identity handles your data usage, retention, profile visibility, and data management.&#x20;

{% hint style="info" %}
Currently, this page is **view-only** — settings are displayed for transparency but cannot be edited from this page.
{% endhint %}

* In scope: viewing data usage indicators, data retention periods, profile visibility settings, connected apps summary, and the Data Management section.
* Out of scope: editing data usage toggles, changing retention periods, modifying profile visibility, deleting data (these actions are not yet available from this page).

***

### I am new. Where should I start? <a href="#i-am-new-where-should-i-start" id="i-am-new-where-should-i-start"></a>

The Data & Privacy page provides transparency into how your personal data is collected, retained, shared, and managed within OXU Identity. It is organized into sections that explain each aspect of your data.

> **Note:** This page is currently **view-only**. The sections below describe what you can **see** on the page. Editing capabilities (toggles, dropdowns, data deletion) are not yet available and are planned for a future release.

* **Data Usage** — shows whether activity tracking, search & usage history, and third-party data sharing are enabled.
* **Data Retention** — displays how long the system keeps your activity logs, session records, and account inactivity settings.
* **Profile Visibility** — shows who can see each field of your profile (name, email, phone, photo, etc.).
* **Apps & Services** — lists the third-party apps connected to your account.
* **Data Management** — presents the data deletion option (currently display-only; the deletion action is not yet active).

Personal Account users can view all privacy settings. Business Account users may see profile visibility settings controlled by their organization administrator.

***

### Purpose <a href="#purpose" id="purpose"></a>

* Understand what data the system collects about your activity and usage
* See how long the system retains your activity logs and session data
* Review per-field profile visibility to understand who sees your personal details
* See which third-party apps are connected to your account
* Be aware of the data deletion option (coming in a future release)

***

### Prerequisites <a href="#prerequisites" id="prerequisites"></a>

Before viewing your data and privacy settings, ensure that:

* You are signed in to your account
* You understand that this page is informational only — no changes can be made here yet

***

### What can I see on the Data & Privacy Page? <a href="#what-can-i-see-on-the-data--privacy-page" id="what-can-i-see-on-the-data--privacy-page"></a>

#### Data Usage <a href="#data-usage" id="data-usage"></a>

This section shows the current status of your data usage settings:

* **Activity Log visibility** — whether your activity log is visible on the Activity Log page.
* **Search & Usage History** — whether search queries and in-app usage patterns are being saved.
* **Third-party Data Sharing** — whether extended data permissions are shared with connected third-party apps.

> These are display-only. You cannot toggle them on or off from this page yet.

***

#### Data Retention <a href="#data-retention" id="data-retention"></a>

This section displays the configured retention periods for your data:

* **Activity Logs** — how long activity log records are kept (e.g., 90 Days, 6 Months, 1 Year, etc.).
* **Session Logs** — how long inactive session records are retained.
* **Auto-delete account after inactivity** — the inactivity period after which the system would delete your account (e.g., 30 days, 3 months, 6 months, 1 year, etc.).

> These values are shown for your reference. They cannot be changed from this page yet.

***

#### Profile Visibility <a href="#profile-visibility" id="profile-visibility"></a>

This section shows the visibility level for each profile field (First Name, Last Name, Display Name, Profile Photo, Gender, Birthday, Email Address, Phone Number):

* **Anyone** — the field is visible to other users and returned to third-party apps.
* **Only me** — the field is hidden from other users and returned as empty to third-party apps.

For **Business Account** users, this section displays your organization administrator's configured values (read-only). Visibility options may include "Anyone," "Only me," "Workspace," or "Organization."

> You cannot change profile visibility from this page yet.

***

#### Apps and Services You Use <a href="#apps-and-services-you-use" id="apps-and-services-you-use"></a>

This section displays the third-party apps connected to your account:

* App icons are shown. If more than a display threshold (e.g., 3), a "+N more" indicator appears.
* Click anywhere in the section to navigate to the detailed management page.

> App management (disconnecting apps) happens on the [App Consent Management](https://file+.vscode-resource.vscode-cdn.net/Users/anyanguyen/work/silver-tiger/internal-admin/repos/identity-product-docs/user-guide/Personal%20Account/App%20Consent%20Management/README.md) page, not here.

***

#### Data Management <a href="#data-management" id="data-management"></a>

This section presents the **Delete My Data** option:

> **Warning:** Data deletion is **permanent and irreversible**. However, this action is **not yet active** on the current page — the button is displayed for informational purposes only.

Once the deletion capability is enabled in a future release, the flow will require confirmation and OTP verification before permanently deleting your account and all associated personal data.

***

### Important Notes <a href="#important-notes" id="important-notes"></a>

* **View-only page**: The Data & Privacy page currently displays your settings for transparency. No editing, toggling, or deletion actions are available yet.
* **Activity Log vs. Audit Log**: Activity Log visibility affects what you see; it does not delete internal compliance audit data.
* **Security Log is separate**: Security events are logged separately and are not shown on this page.
* **Business Account limitations**: Profile visibility settings reflect your organization's policy and are read-only.
* **Future capabilities**: Data usage toggles, retention period configuration, auto-delete setup, profile visibility editing, and data deletion are planned for future releases.

***

### Summary <a href="#summary" id="summary"></a>

| Item                          | Description                                                                           |
| ----------------------------- | ------------------------------------------------------------------------------------- |
| Page location                 | Account Settings > Data & Privacy                                                     |
| Current state                 | **View-only** — settings are displayed but cannot be edited                           |
| Data Usage                    | View activity log visibility, search & usage history, third-party data sharing status |
| Data Retention                | View activity log, session data, and auto-delete inactivity retention periods         |
| Profile Visibility (Personal) | View per-field visibility (Anyone / Only me)                                          |
| Profile Visibility (Business) | Read-only, set by organization admin                                                  |
| Apps & Services               | View connected apps, navigate to App Consent Management for management                |
| Delete My Data                | Displayed, but action not yet active                                                  |
| Future releases               | Edit toggles, configure retention, modify visibility, delete data                     |
