# GDRP: Let user delete its mautic contact

**URL:** <https://forum.mautic.org/t/gdrp-let-user-delete-its-mautic-contact/30556>\
**Category:** General Discussion\
**Tags:** gdpr\
**Created:** [January 18, 2024, 4:54pm UTC](https://forum.mautic.org/t/gdrp-let-user-delete-its-mautic-contact/30556 "2024-01-18T16:54:28Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![andkp80](https://sea2.discourse-cdn.com/flex020/user_avatar/forum.mautic.org/andkp80/32/8549_2.png) [@andkp80](https://forum.mautic.org/u/andkp80)\
**Post date:** [January 18, 2024, 4:54pm UTC](https://forum.mautic.org/t/gdrp-let-user-delete-its-mautic-contact/30556/1 "2024-01-18T16:54:28Z")

</div>

**Your software**  
My Mautic version is: 4.4.10  
My PHP version is: 8.0  
My Database type and version is: MariaDB

**Your problem**  
No problem yet, just want to discuss best practice how to provide users a Link / Button to delete there mautic contact / data. Is it just by unsubscribing from a segment or setting a desired property. then running a campaign in mautic to delete the contact?  
How do you implement such a feature?

Thx  
Andreas

---

<div class="post-metadata">

**Author:** ![mzagmajster](https://sea2.discourse-cdn.com/flex020/user_avatar/forum.mautic.org/mzagmajster/32/687_2.png) [@mzagmajster](https://forum.mautic.org/u/mzagmajster)\
**Post date:** [January 19, 2024, 10:08am UTC](https://forum.mautic.org/t/gdrp-let-user-delete-its-mautic-contact/30556/2 "2024-01-19T10:08:32Z")

</div>

When user clicks unsubscribe there is record made in lead\_donotcontact table that tells mautic that this user has unsubscribed. Contact does not really get deleted, though it could be implemented if that is desired behavior.

---

<div class="post-metadata">

**Author:** ![andkp80](https://sea2.discourse-cdn.com/flex020/user_avatar/forum.mautic.org/andkp80/32/8549_2.png) [@andkp80](https://forum.mautic.org/u/andkp80)\
**Post date:** [January 23, 2024, 12:31pm UTC](https://forum.mautic.org/t/gdrp-let-user-delete-its-mautic-contact/30556/3 "2024-01-23T12:31:45Z")

</div>

Hhhm, unsubscribe typically should lead to just unsubscribing from a segment, not from everything. Anyway it would be interested to have some best practices how to set up all things gdpr compliant

---

<div class="post-metadata">

**Author:** ![peter\_k](https://sea2.discourse-cdn.com/flex020/user_avatar/forum.mautic.org/peter_k/32/511_2.png) [@peter\_k](https://forum.mautic.org/u/peter_k)\
**Post date:** [January 23, 2024, 3:17pm UTC](https://forum.mautic.org/t/gdrp-let-user-delete-its-mautic-contact/30556/4 "2024-01-23T15:17:21Z")

</div>

> [@andkp80](#):
>
> unsubscribe typically should lead to just unsubscribing from a segment, not from everything

_Unsubscribe_ should lead to a complete unsubscribe from that specific channel (email, text, etc). That is what a user expects when they click unsubscribe.

That is the way the one click unsubscribe feature works.

If you want users to manage their segment memberships instead of unsubscribing, you’d need to set up a preference center.

(Keep in mind: Some people claim that redirecting a user to such a preference center instead of directly unsubscribing them is a dark pattern and could pose a violation in itself.)

### Contact deletion

I’m not sure if there should be an option to let users delete their records.

Worst case: Someone wants to intentionally harm you. They sign up, receive emails, click delete and file a GDPR complaint. At this point, you don’t have any record that you lawfully sent them messages, i.e., processed their data.

In my opinion unsubscribing is enough. You can keep the data for 2 years to respond to any GDPR inquiries.

If a user really wants to delete their data they can and will email you. This email is then proof that you once processed their data lawfully.

* * *

> [@andkp80](#):
>
> Anyway it would be interested to have some best practices how to set up all things gdpr compliant

See this

> [@RFC: Improving Mautic's GDPR Compliance - Cookie Management](https://forum.mautic.org/t/rfc-improving-mautics-gdpr-compliance-cookie-management/27801):
>
> Introduction In light of the General Data Protection Regulation (GDPR) and ePrivacy requirements, I believe it is essential for Mautic to enhance its compliance by addressing certain issues related to cookie management. Therefore, I created this Request for Comments (RFC). I’m hoping we could lay out some procedures to enhance Mautics GDPR and ePrivacy compliance while maintaining its analytic features for the Mautic devs. I outlined some key problems and potential solutions. Discussed Topics …

---

<div class="post-metadata">

**Author:** ![andkp80](https://sea2.discourse-cdn.com/flex020/user_avatar/forum.mautic.org/andkp80/32/8549_2.png) [@andkp80](https://forum.mautic.org/u/andkp80)\
**Post date:** [January 25, 2024, 8:56pm UTC](https://forum.mautic.org/t/gdrp-let-user-delete-its-mautic-contact/30556/5 "2024-01-25T20:56:46Z")

</div>

Thank you @peter_k for the detailed answer and hint to more details!
