Loading request...
The user highlights a challenge with GDPR: if past communications are not retained or data is removed upon request, there's no clear way to prove in writing that certain interactions did or did not occur with that individual. This implies a need for a feature or system within a compliance tool to address this legal requirement for proof.
It seems people in EU who made GDPR didn't think another legal aspect of this however: If you DON'T keep past communications, or if someone asks to Remove his/her data (which may be an email correspondence), then how can you PROVE in writing, that something did or did not take place with this person?