Depending on where you live, you may have the right to see, fix, delete, or move your Asana personal data, and to complain to your local privacy regulator if you think your rights have been violated.
This analysis describes what Asana's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology
This clause operationalizes regulatory data subject rights obligations, establishing Asana's procedural framework for responding to user requests and enabling compliance with jurisdiction-specific privacy regulations. The provision clarifies that rights availability is conditional on location and applicable law, creating a framework for processing user requests within legal parameters.
This comprehensive enumeration of data subject rights was removed, with only partial replacement through more limited individual provisions, reducing clarity on available rights like portability and restriction.
View full change record →Individual Asana users can submit access, deletion, correction, or portability requests to Asana at privacy@asana.com; however, users on employer-managed accounts must exercise these rights through their employer, who controls the data — limiting direct access to Asana's rights-handling process.
How other platforms handle this
Further, you may take legal actions in relation to any potential breach of your rights regarding the processing of your Personal Information, as well as to lodge complaints before the competent data prot...
Where ZipRecruiter processes your Personal Data in the capacity of a service provider (data processor), and you seek access, or want to correct, amend, or delete your Personal Data...we will provide you with the data controller's contact information, so you can contact them directly.
to request that your data be transferred to a third party (data portability)
"Depending on your location and subject to applicable law, you may have the following rights with regard to your personal information: Access to your personal information; Correction of inaccurate or incomplete information; Deletion of your personal information; Portability of your personal information; Restriction of or objection to our processing of your personal information; and the right to lodge a complaint with your local data protection authority.Excerpt from Asana's Privacy Statement
REGULATORY FRAMEWORK: Implicates GDPR Arts.
Enforcement risk, jurisdiction flags, contract triggers, and due diligence action items.
Ad personalization controls removed. Contact scanning added. Advertiser data partnerships quietly dropped. A timeline of every change.
Get the research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.
This clause operationalizes regulatory data subject rights obligations, establishing Asana's procedural framework for responding to user requests and enabling compliance with jurisdiction-specific privacy regulations. The provision clarifies that rights availability is conditional on location and applicable law, creating a framework for processing user requests within legal parameters.
Individual Asana users can submit access, deletion, correction, or portability requests to Asana at privacy@asana.com; however, users on employer-managed accounts must exercise these rights through their employer, who controls the data — limiting direct access to Asana's rights-handling process.
ConductAtlas has identified this type of provision across 289 platforms. See the full comparison.
No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Asana.