Summary: AXP supports GDPR compliance through built-in features for consent management, data subject access requests, data portability, right to erasure (data deletion), and privacy-by-design principles — ensuring your location can meet its data protection obligations.
Permissions Required: Roles required in AXP to perform this action are Brand Administrators, Data Protection Officers, Location Administrators.
AXP is designed with data protection in mind, providing tools and features that help your organisation comply with GDPR and other data protection regulations.
What GDPR Features Does AXP Provide?
Consent Management — Track and manage guest consent for each communication channel with a complete audit trail
Data Subject Access Requests (DSAR) — Export all data held about a guest in a portable format
Right to Erasure — Delete guest data upon Change Request submitted from Help & Support module, with controls to retain data required for legal or financial obligations
Data Minimisation — AXP only collects and stores data necessary for its stated purposes
Data Portability — Guest data can be exported in standard formats (CSV, JSON) for portability
Access Controls — Role-based permissions ensure staff only access data they need
How Do I Process a Data Deletion Request?
Brand admin verify the identity of the person making the request
Navigate to Help & Support > Change Request
Create a new Change Request for the guest
Review the data that will be deleted and any data that must be retained
Submit the request
Common Questions
Will some data be retained after a deletion request?
Yes, certain data may need to be retained for legal, financial, or regulatory reasons (e.g., billing records, tax documentation).
