IDP Support Center
  • Welcome
  • Getting started
    • What is IDP?
  • User Guide
    • User guide center
    • Get started with OXU
      • OXU Identity user guide
    • Account Management
      • Authentication
        • Sign up with Email and Password
        • Sign up with Google (optional)
        • Sign in with Email and Password
        • Google OIDC: Sign in to Google via OXU
        • Password requirements enforcement
        • Secure password hashing and storage
      • Account security
        • What should I do if I don't receive a verification code when signing up or forgot password?
        • Email verification
        • Two-Factor Authentication
          • Passkey authentication
          • 2FA-Email verification codes
          • MFA-Authenticator apps (TOTP)
          • MFA-Passkeys (FIDO2 / WebAuthn)
      • Data & Privacy
      • User Experience
        • Cross-platform web support
      • App Consent Management
    • Organization Admin App
      • Business Owner (Default Authority)
        • Organization Management
          • Organization creation
          • Domain ownership verification (DNS)
        • Organizational Structure
          • Organizational Units (OUs)
          • Workspaces
          • Hierarchical access scoping
        • Security & Governance
          • Enforced security policies
            • IP-Based access control
            • Geo-based access policies
            • Device and platform restrictions
          • Enforcing stronger authentication for risky login behavior
            • Risk Detection signals
            • Step-Up authentication
        • Roles & permissions
          • Assign role to user in Organization
          • Permissions list
      • SCIM – Automated user and workspace provisioning
        • What is SCIM used for?
        • User Lifecycle management
      • Administrator
        • Team & Access
          • Invite and manage users
          • Assign roles
          • Manage access at OU and Workspace level
            • Manage Access at Organizational Unit (OU)
            • Manage Workspace level
              • Team & Access – Members Management
        • Group management
        • Organization Unit
          • Create & manage Organization Units
          • Viewing and searching Organizational Units
          • Moving an Organizational Unit
          • Deleting an Organizational Unit
        • Manage activity logs of Organization's member
      • Become an OXU developer
      • App management - Workspace access
      • Report & Analytics Center
    • OXU Workspace
      • Guide to create workspace
      • Guide to manage workspace information
      • Guide to manage role and permissions
      • Applications
        • Guide to manage applications
        • OXU Developer
          • What is OXU developer
          • User guides
            • 1. Become OXU developer
            • 2. Create an app
            • 3. Input application info
              • About app ratings and reviews
            • 4. Config resource & security info
            • Security Best Practices
            • 5. Set up Pricing info
            • 6. Publish your app
              • Prepare before publishing your app
            • 7. Manage your app
              • App lifecycle
          • App versioning
        • OXU Store
          • What is OXU Store
          • 1. Register as an user
          • 2. Browsing & searching apps
          • 3. View app details
          • 4. Subscribe an app
            • Enable & Subscribe app for business workspace
          • 5. Manage subscriptions
          • 6. Rate & review an app
  • Support
    • Support center
      • What is Oten account & what can I do with Account Management App?
      • How to create account and password?
      • How to manage your Oten account information?
      • How to use MFA to protect your account?
      • What is WorkSpace & what can you do with WS?
      • What is Organization Admin app & what can you do with OAA?
    • Privacy Policy
    • Terms and conditions
      • Oten developer terms and conditions
      • Oten Store terms and conditions
    • FAQs
      • Store FAQs
      • Developer FAQ
    • Contact Us
  • Integration
    • Integration document
      • IDP integration
        • Environments: sandbox & production
        • Regular web application client
        • Native application client
        • Single page application client
        • SAML integration
        • Managing your integration applications
        • FAQ
      • What is SSO?
      • Why use SSO?
    • Provisioning connector
      • Google Workspace Configuration
    • Understand SSO flow
      • Overview
      • Flow Diagram
    • Developer Integration guide
      • Integration flow overview
    • Oten to OXU Migration guide
    • Prerequisites
      • Discovery Configuration
      • JAR Requirement - CRITICAL
      • JAR Complete Implementation Guide
      • PKCE Implementation Guide
        • Step 1: Choose OAuth Library
        • Step 2: Configure OAuth Client
        • Step 3: Implement Authorization Flow
        • Step 4: Handle Callback
        • Step 5: Token Management
      • Best practice
        • Security
      • Support & Troubleshoot
        • Common Errors
        • Debug and Troubleshooting
        • Contact Support
      • Appendix
        • Configuration Reference
        • Error Codes Reference
        • API Reference
        • Sample Code
        • Glossary
  • What's New
    • v1.0.29 - Aug 19, 2026
    • v1.0.28 - Aug 12, 2026
    • v1.0.27 - Aug 08, 2026
    • v1.0.26 - July 29 & 31, 2026
    • v1.0.25 - July 22, 2026
    • v1.0.24 - Jun 21, 2026
    • v1.0.23 - Jun 17, 2026
    • v1.0.22 - Jun 03, 2026
    • v1.0.21 - May 27, 2026
    • v1.0.20 - Apr 28, 2026
    • v1.0.19 - Apr 21, 2026
    • v1.0.18 - Apr 15, 2026
    • v1.0.17 - Apr 03, 2026
    • v1.0.16 - Mar 28, 2026
    • v1.0.15 - Mar 05 & 13, 2026
    • v1.0.14 - Feb 11, 2026
    • v1.0.13 - Jan 14, 2026
    • v1.0.12 - Jan 05, 2026
    • v1.0.11 - Jan 04, 2026
    • v1.0.10 - Dec 25, 2025
    • v1.0.9 - Dec 07, 2025
    • v1.0.8 - Nov 23, 2025
    • v1.0.7 - Nov 09, 2025
    • v1.0.6 - Oct 26, 2025
    • v1.0.5 - Sep 29, 2025
    • v1.0.4 - Sep 28, 2025
    • v1.0.3 - Sep 14, 2025
    • v1.0.2 - Aug 31, 2025
    • v1.0.1 - Aug 17, 2025
    • v1.0.0 - Aug 03, 2025
On this page
  1. User Guide
  2. Account Management

Data & Privacy

PreviousMFA-Passkeys (FIDO2 / WebAuthn)NextUser Experience

Last updated 2 months ago

  • Scope
  • I am new. Where should I start?
  • Purpose
  • Prerequisites
  • What can I see on the Data & Privacy Page?
  • Important Notes
  • Summary

Scope

The Data & Privacy page gives you a read-only overview of how OXU Identity handles your data usage, retention, profile visibility, and data management.

Currently, this page is view-only — settings are displayed for transparency but cannot be edited from this page.

  • In scope: viewing data usage indicators, data retention periods, profile visibility settings, connected apps summary, and the Data Management section.

  • Out of scope: editing data usage toggles, changing retention periods, modifying profile visibility, deleting data (these actions are not yet available from this page).


I am new. Where should I start?

The Data & Privacy page provides transparency into how your personal data is collected, retained, shared, and managed within OXU Identity. It is organized into sections that explain each aspect of your data.

Note: This page is currently view-only. The sections below describe what you can see on the page. Editing capabilities (toggles, dropdowns, data deletion) are not yet available and are planned for a future release.

  • Data Usage — shows whether activity tracking, search & usage history, and third-party data sharing are enabled.

  • Data Retention — displays how long the system keeps your activity logs, session records, and account inactivity settings.

  • Profile Visibility — shows who can see each field of your profile (name, email, phone, photo, etc.).

  • Apps & Services — lists the third-party apps connected to your account.

  • Data Management — presents the data deletion option (currently display-only; the deletion action is not yet active).

Personal Account users can view all privacy settings. Business Account users may see profile visibility settings controlled by their organization administrator.


Purpose

  • Understand what data the system collects about your activity and usage

  • See how long the system retains your activity logs and session data

  • Review per-field profile visibility to understand who sees your personal details

  • See which third-party apps are connected to your account

  • Be aware of the data deletion option (coming in a future release)


Before viewing your data and privacy settings, ensure that:

  • You are signed in to your account

  • You understand that this page is informational only — no changes can be made here yet


This section shows the current status of your data usage settings:

  • Activity Log visibility — whether your activity log is visible on the Activity Log page.

  • Search & Usage History — whether search queries and in-app usage patterns are being saved.

  • Third-party Data Sharing — whether extended data permissions are shared with connected third-party apps.

These are display-only. You cannot toggle them on or off from this page yet.


This section displays the configured retention periods for your data:

  • Activity Logs — how long activity log records are kept (e.g., 90 Days, 6 Months, 1 Year, etc.).

  • Session Logs — how long inactive session records are retained.

  • Auto-delete account after inactivity — the inactivity period after which the system would delete your account (e.g., 30 days, 3 months, 6 months, 1 year, etc.).

These values are shown for your reference. They cannot be changed from this page yet.


This section shows the visibility level for each profile field (First Name, Last Name, Display Name, Profile Photo, Gender, Birthday, Email Address, Phone Number):

  • Anyone — the field is visible to other users and returned to third-party apps.

  • Only me — the field is hidden from other users and returned as empty to third-party apps.

For Business Account users, this section displays your organization administrator's configured values (read-only). Visibility options may include "Anyone," "Only me," "Workspace," or "Organization."

You cannot change profile visibility from this page yet.


This section displays the third-party apps connected to your account:

  • App icons are shown. If more than a display threshold (e.g., 3), a "+N more" indicator appears.

  • Click anywhere in the section to navigate to the detailed management page.


This section presents the Delete My Data option:

Warning: Data deletion is permanent and irreversible. However, this action is not yet active on the current page — the button is displayed for informational purposes only.

Once the deletion capability is enabled in a future release, the flow will require confirmation and OTP verification before permanently deleting your account and all associated personal data.


  • View-only page: The Data & Privacy page currently displays your settings for transparency. No editing, toggling, or deletion actions are available yet.

  • Activity Log vs. Audit Log: Activity Log visibility affects what you see; it does not delete internal compliance audit data.

  • Security Log is separate: Security events are logged separately and are not shown on this page.

  • Business Account limitations: Profile visibility settings reflect your organization's policy and are read-only.

  • Future capabilities: Data usage toggles, retention period configuration, auto-delete setup, profile visibility editing, and data deletion are planned for future releases.


Prerequisites

What can I see on the Data & Privacy Page?

Data Usage

Data Retention

Profile Visibility

Apps and Services You Use

Data Management

Important Notes

Summary

Item
Description

Page location

App management (disconnecting apps) happens on the page, not here.

Account Settings > Data & Privacy

Current state

View-only — settings are displayed but cannot be edited

Data Usage

View activity log visibility, search & usage history, third-party data sharing status

Data Retention

View activity log, session data, and auto-delete inactivity retention periods

Profile Visibility (Personal)

View per-field visibility (Anyone / Only me)

Profile Visibility (Business)

Read-only, set by organization admin

Apps & Services

View connected apps, navigate to App Consent Management for management

Delete My Data

Displayed, but action not yet active

Future releases

Edit toggles, configure retention, modify visibility, delete data

App Consent Management