Skip to main content
Last reviewed: March 5, 2026 Owner: Security + Engineering Review cadence: Quarterly Status: Implemented This policy defines baseline retention windows and deletion behavior for core hosted data classes.

What this policy answers

  • Which hosted data classes are retained and for how long
  • How deletion is enforced in active systems and backups
  • How retention ownership differs in self-hosted deployments

Implementation status (March 5, 2026)

Retention and deletion controls described on this page are active in the hosted deployment model.

Retention schedule (hosted default)

Deletion behavior

  • On account or workspace deletion, Tero removes data from active systems within 30 days.
  • Backup copies expire with their retention windows.

Hosted vs self-hosted scope

Exceptions and governance

Retention exceptions require documented risk acceptance, approval, and time-bound remediation. Questions: