In light of XeroCon2023 cyber security - I believe there should be an option on Xero XPM that allows us to delete sensitive data from archived clients.
If we are to do annual audits of the data we hold, and keep and delete what we no longer need to have on file, would it not then be pertinent to give us a reminder when we archive clients that leave our practice to either manually delete (or automagically ask for it to be redacted).
I'm thinking data including:
+ Tax File Numbers
+ Date of Birth
+ Bank details
At the moment, the process to delete this information from my archived list is to restore the old client, manually delete, and then re-archive.
For those of us who have used XPM since inception, that's a LOT of clients and a LOT of data to delete being a big time waster, but important in these times of higher scrutiny on data security.
Ideally we'd have two options available to Practice Administrators:
1. Delete this data from already archived clients
2. Reminder / Request to delete this data upon archiving active clients
In light of XeroCon2023 cyber security - I believe there should be an option on Xero XPM that allows us to delete sensitive data from archived clients.
If we are to do annual audits of the data we hold, and keep and delete what we no longer need to have on file, would it not then be pertinent to give us a reminder when we archive clients that leave our practice to either manually delete (or automagically ask for it to be redacted).
I'm thinking data including:
+ Tax File Numbers
+ Date of Birth
+ Bank details
At the moment, the process to delete this information from my archived list is to restore the old client, manually delete, and then re-archive.
For those of us who have used XPM since inception, that's a LOT of clients and a LOT of data to delete being a big time waster, but important in these times of higher scrutiny on data security.
Ideally we'd have two options available to Practice Administrators:
1. Delete this data from already archived clients
2. Reminder / Request to delete this data upon archiving active clients