# Privacy and compliance tools in Enydea

> The consent banner, data deletion widget, unsubscribe links and request register Enydea gives you for your own website and mailings.

Source: https://enydea.com/en/documentation/privacy-and-compliance-tools · Last updated 2026-10-02

## About this page
These are tools. They help you handle consent, deletion requests, unsubscribes and authority requests for your own website, mailings and CRM. Using them does not by itself make you compliant with GDPR or any other law, and this page is not legal advice. Ask your own legal adviser or data protection officer what applies to you. For how Enydea itself handles personal data, read the [Privacy notice](https://enydea.com/en/privacy).

| Tool | Where to find it |
|---|---|
| Consent banner and consent settings | **Settings** -> **Website Tracking** |
| Data deletion widget | **Settings** -> **Data Deletion** |
| Register of public authority requests | **Settings** -> **Data Protection** |
| Unsubscribe links | **Mailings** |
| Account deletion | **Settings** -> **Account** |

## Consent banner and consent settings
The tracking code shows a banner on your website. By default Enydea records no visits and loads none of your tracking integrations until the visitor accepts. Set the wording, the privacy policy link and the theme under **Tracker behaviour** -> **Consent**. All options are explained in [Website tracking and consent](https://enydea.com/en/documentation/website-tracking-and-consent.md).

- Enydea logs each decision (choice, session, page address, time). No screen in Enydea lists these records.
- The tracker does not write cookies itself. It keeps the visitor's choice and a random session ID in the browser's storage. Tools you add under **Tracking Integrations** may set their own cookies.
- The banner has **Reject** and **Accept** buttons in English. It does not list individual services or cookie categories, so describe them in your privacy policy.

## Data deletion widget
The widget is a small form for your website where visitors ask you to delete their personal data.

1. Open **Settings** -> **Data Deletion**.
2. On the **Widget Code** tab, click **Generate API Key**.
3. Under **Embeddable Widget Code**, click **Copy Code**.
4. Paste the code into a page of your website, for example your privacy page. To add a link to your privacy policy, put its address in the `privacyUrl` line of the code.
5. Test it: send a request with your own email address from your page, check the **Requests** tab, then click **Reject request** on your test.

Visitors enter an email address and, optionally, a name and a reason. The text is English, Dutch, German or French, following your page's `lang` setting. Other values, such as `de-DE`, show English.

**Regenerate Key** makes the old key stop working, so paste the new code into your site afterwards.

### Handle a request
The **Requests** tab lists each request with its email, name, reason, origin, status and date. A red number shows pending ones. Check this tab regularly and do not rely on an email alert. For a pending request you can:

- Click **Process — delete all matching data**. The row then shows how many records were deleted.
- Click **Reject request**.

The widget does not check that the person owns the email address, so confirm the request with them before you process it. Enydea does not email the person when you process or reject a request, although the widget tells them they will be notified. Contact them yourself.

Processing targets three kinds of records in your company:

- Relations whose **Email** or contact email is the address. The whole relation record is deleted, including a company relation that uses that address.
- Mailing list entries with that address.
- Form entries with that address.

It does not remove contact persons, calls, tracking history, emails in your mailbox or files. After processing, search for the address in **Relations**, **Forms** and your mailing lists and remove what is left.

## Public authority data requests
Under **Settings** -> **Data Protection** you can keep a register of requests from public authorities for user data. It is your own record. It does not contact anyone or send any data.

1. Click **Log New Request**.
2. Fill in **Requesting Authority**, **Jurisdiction**, **Legal Basis** (for example **Court Order** or **Subpoena**), **Data Requested** and **Date Received**. **Reference Number**, **Legal Basis Details**, **Affected User IDs**, **Affected User Count** and **Response Deadline** are optional.
3. Click **Log Request**.

Use the row menu to record your review: **Approve (Lawful)**, **Reject (Unlawful)** or **File Challenge** while a request is **Pending Review** or **Under Legal Review**, and **Record Compliance** once it is approved. A request past its deadline that is still **Pending Review** is marked overdue. **Audit Report** shows totals, the challenge rate, how often data minimization was applied, and counts by status and jurisdiction.

## Unsubscribe links and suppression
- In the Template Editor, add a **Footer** block. It is filled from the marketing relation you selected (name, address, postcode, country, website) and contains an unsubscribe link. If you build a mailing without it, add a link to `%unsubscribe_url%` yourself.
- A recipient who clicks the link first sees a page with an **Unsubscribe** button, so mail scanners that open links do not unsubscribe anyone. That page is in English.
- After unsubscribing, the address is flagged on every mailing list in your company, and later sends skip it. Bounced addresses are skipped too.
- Bulk mailings also carry a one-click unsubscribe header.

## Delete my account
Under **Settings** -> **Account**, click the edit button next to your account details, then **Delete My Account**. After you confirm, Enydea deletes your account straight away, sends a confirmation to your e-mail address and signs you out.

- **If you own the company**, the company and everything in it is deleted too: relations, contacts, mailings, forms, files and other company data. This affects the whole team. The accounts of your team members are not deleted, but the company data they worked with is gone. Your subscription is deleted too, so no further payments are collected.
- **If you are a team member**, only your own account and your personal data are deleted: chats and conversations, dashboards, push-notification subscriptions, unsorted calls and activity logs. The company and its data stay.
- **Invoices are kept**, because tax law requires you to keep them.
- **It cannot be undone.**

If the deletion fails, a message says so and you stay signed in. Try again, or write to privacy@enydea.com from your account's e-mail address. The public page `https://app.enydea.com/en/removeuser` lists the contact options.
