Skip to main content

How Does AXP Handle GDPR Compliance?

Understand how AXP supports GDPR compliance including data subject rights, consent management, data deletion, and privacy features.

Updated today

Summary: AXP supports GDPR compliance through built-in features for consent management, data subject access requests, data portability, right to erasure (data deletion), and privacy-by-design principles — ensuring your location can meet its data protection obligations.

Permissions Required: Roles required in AXP to perform this action are Brand Administrators, Data Protection Officers, Location Administrators.

AXP is designed with data protection in mind, providing tools and features that help your organisation comply with GDPR and other data protection regulations.

What GDPR Features Does AXP Provide?

  • Consent Management — Track and manage guest consent for each communication channel with a complete audit trail

  • Data Subject Access Requests (DSAR) — Export all data held about a guest in a portable format

  • Right to Erasure — Delete guest data upon Change Request submitted from Help & Support module, with controls to retain data required for legal or financial obligations

  • Data Minimisation — AXP only collects and stores data necessary for its stated purposes

  • Data Portability — Guest data can be exported in standard formats (CSV, JSON) for portability

  • Access Controls — Role-based permissions ensure staff only access data they need

How Do I Process a Data Deletion Request?

  1. Brand admin verify the identity of the person making the request

  2. Navigate to Help & Support > Change Request

  3. Create a new Change Request for the guest

  4. Review the data that will be deleted and any data that must be retained

  5. Submit the request

Common Questions

Will some data be retained after a deletion request?

Yes, certain data may need to be retained for legal, financial, or regulatory reasons (e.g., billing records, tax documentation).

Did this answer your question?