Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • Deactivated users’ data is automatically pseudonymised after a set period.

  • You can customise the delay (between 1 and 6 7 years) to suit your organisation’s needs.

...

  • 1 years minimum: Covers scenarios like parental leave, allowing users to return if needed.

  • 6 7 years maximum: Aligns with GDPR’s principle of limiting data retention to what is necessary.

Info

Note: You can manually psyhedponomise at anytime manually pseudonymise users at any time through the User Interface.

...

  1. Navigate to Company Settings > People > Data Protection.

  2. Locate the “Automated Pseudonymisation” option.

  3. Enable the setting and choose your delay period (between 1 and

...

  1. 7 years)

...

  1. Optionally, select if 1-to-1s should be deleted when user is pseudonymised

  2. Save your changes.

...

To manually pseudonymise a user:

  1. Go to the user’s profile in the User Interface.

  2. Select the

...

  1. Anonymise User, and confirm.

...

How It Works

  1. Delay Period: Pseudonymisation occurs after the deactivation date plus the configured delay period.

  2. Timestamp: A confirmation timestamp is recorded once the pseudonymisation process is complete.

  3. Aggregate Usability: The pseudonymised data remains usable for statistical and reporting purposes without compromising user privacy.

...

Expand
titleCan I restore a pseudonymised user?

No, pseudonymisation is irreversible. Take care when configuring or manually applying pseudonymisation.

Expand
titleCan I restore a pseudonymised user?

No, pseudonymisation is irreversible. Take care when configuring or manually applying pseudonymisation.

Expand
titleWill pseudonymised data still be usable for analytics?

Yes. Pseudonymised data is stripped of personal identifiers but remains available for aggregate reporting and analytics.

Expand
titleWhy are the delay limits set between 1 and 6 7 years?

This range ensures compliance with GDPR and Learn Amp’s policies, striking a balance between protecting user privacy and meeting organisational needs. The minimum delay of 1 year accounts for scenarios such as parental leave, where some organisations deactivate accounts temporarily. This helps prevent accidental pseudonymisation of users who may return within this timeframe.

Expand
titleCan I manually pseudonymise a user before 2 years?

Yes, you can manually pseudonymise any user at any time via the User Interface. This offers flexibility for immediate action.

Expand
titleWhat records are impacted by pseudonymisation?

Anonymised: First Name, Last Name & Email

Removed: Bio, Job Title, Profile Picture

Optionally: 1-to-1s can be configured to be deleted when a user is pseudonymised. (This includes removing 1-to-1 comments, answers, notes and action points, reviewer responses and comments etc).

Expand
titleWhat if an Employee returns, and we need to re-link their account to the pseudonymised data?

The pseudonymisation process does not alter data stored in custom fields. Therefore, if you use a non-personal identifier (e.g., payroll ID or HRIS ID) as a custom field, this can be used to re-link the pseudonymised user data upon the employee’s return. It is important to ensure that this identifier cannot be used by Learn Amp to identify the user directly and does not qualify as personal data under GDPR. Always confirm that the identifier is unique to your organisation and does not, on its own, allow for re-identification by Learn Amp.

Expand
titleIf a user has added personal information to a 1-to-1 response, will this information be pseudonymised?

Any identifiable information added to 1-to-1 responses will not be automatically pseudonymised, unless the setting “Delete a user's 1-to-1s when they are pseudonymised” is checked. If this setting has been checked, the related 1-to-1s records will be deleted, including all answers, notes, action points from both reviewee and reviewer etc.

Expand
titleIf I checked the setting “Delete a user's 1-to-1s when they are pseudonymised”, will I still be able to include these records in 1-to-1 reporting once the user is pseudonymised?

No; these 1-to-1s records will be completely deleted.

Expand
titleIf I checked the setting “Delete a user's 1-to-1s when they are pseudonymised”, will I still be able to see the reviewer's submission once the user is pseudonymised?

No; these 1-to-1s records will be deleted, including all the information submitted by the reviewer.

Expand
titleWhat happens if I re-activate a pseudonymised user?

You can re-activate a pseudonymised user, but the fields impacted by the pseudonymisation will not automatically roll back to the original values.
If you have retained a non-personal identifier (e.g. payroll ID or HRIS ID) in a custom field, an admin could still manually edit the first name / last name /email of the account to restore the original values.