# GDPR and anonymizing personal data

**URL:** https://meta.discourse.org/t/gdpr-and-anonymizing-personal-data/72103
**Category:** Community Building
**Tags:** gdpr, privacy
**Created:** [October 15, 2017, 12:40pm UTC](https://meta.discourse.org/t/gdpr-and-anonymizing-personal-data/72103 "2017-10-15T12:40:56Z")
**Posts on this page:** 1
**Showing post:** 32

<div class="post-metadata">

### Author: ![RGJ](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/rgj/32/523185_2.png) [@RGJ](https://meta.discourse.org/u/RGJ)
#### Post date: [January 30, 2018, 8:07am UTC](https://meta.discourse.org/t/gdpr-and-anonymizing-personal-data/72103/32 "2018-01-30T08:07:37Z")

</div>

> [@hlcfan](#):
>
> If user requests to revoke their consent, I think we don’t need to delete the data from our database, we just don’t use it, right?

No, you must actually delete it. The GDPR calls it “erase personal data without undue delay”.

---

_[View the full topic](https://meta.discourse.org/t/gdpr-and-anonymizing-personal-data/72103)._
