Zendesk states that it may retain personal data after a business relationship ends for purposes including fulfilling surviving contract provisions, evidencing business practices, marketing its products and services, and meeting legal or tax requirements; data stored in backup archives may be retained until deletion is technically feasible.
This analysis describes what Zendesk's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology
This provision authorizes post-relationship retention for a range of purposes, including continued marketing communications, which may require evaluation under GDPR storage limitation principles and applicable national laws. The backup archive exception permits retention beyond standard deletion timelines in cases where technical deletion is not immediately feasible.
Interpretive note: Whether retention for marketing purposes after relationship termination satisfies GDPR's legitimate interests standard depends on the specific circumstances and the outcome of a legitimate interests assessment, which the notice does not provide in detail.
Under this clause, personal data may remain in Zendesk's systems after a contractual relationship ends, and may be used to send information about Zendesk products and services until a legitimate business need no longer exists. The agreement states that data in backup archives will be isolated from further processing but retained until deletion is technically possible.
Cross-platform context
See how other platforms handle Post-Relationship Data Retention and similar clauses.
Compare across platforms →"Once you and/or your company have terminated the contractual relationship with us or otherwise ended your relationship with us, we may retain your personal data in our systems and records to ensure adequate fulfillment of surviving provisions in terminated contracts or for other legitimate business purposes, such as to evidence our business practices and contractual obligations, to provide you with information about our products and services, or to comply with applicable legal, tax, or accounting requirements. When we have no ongoing legitimate business need nor lawful legal ground to process your personal data, we will delete, anonymize, or aggregate it or, if this is not possible (for example, because your personal data has been stored in backup archives), then we will securely store your personal data and isolate it from any further processing until deletion is possible.Excerpt from Zendesk's Privacy Policy
1.
Enforcement risk, jurisdiction flags, contract triggers, and due diligence action items.
Get the research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.
This provision authorizes post-relationship retention for a range of purposes, including continued marketing communications, which may require evaluation under GDPR storage limitation principles and applicable national laws. The backup archive exception permits retention beyond standard deletion timelines in cases where technical deletion is not immediately feasible.
Under this clause, personal data may remain in Zendesk's systems after a contractual relationship ends, and may be used to send information about Zendesk products and services until a legitimate business need no longer exists. The agreement states that data in backup archives will be isolated from further processing but retained until deletion is technically possible.
No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Zendesk.