A retention schedule specifies how long you keep personal data and what happens to it afterwards. UK GDPR requires you to keep data only for as long as necessary for the purpose it was collected.
Retention is set in two places in Folelse: on each ROPA entry (the policy-level retention) and on each Information Asset (the operational-level retention). The Retention Schedule page (Dashboard → Retention) shows a consolidated view across all assets.
Go to Dashboard → Retention to see all assets sorted by urgency. Status badges indicate:
NHS organisations should reference the NHS Records Management Code of Practice 2021 for statutory retention periods for clinical and administrative records. Common periods: patient records 8 years (adults), 25 years (mental health), staff records 6 years after employment ends.
Need more help with this?
Contact support