Data retention is part of the overall store management system. It governs how long data is stored in and how data is removed from the Palantir platform. Organizations should determine how long data is needed for a defined purpose, which obligations require retention, and who may authorize deletion. Sensitive data such as personally identifiable information (PII) typically should not be retained after that purpose is fulfilled unless another legitimate purpose or obligation requires retention. Consult your organization's legal and privacy teams to determine applicable requirements. Because deletion from the Palantir platform eventually becomes irreversible, implement relevant controls, such as eligibility reviews, throughout the process.
A retention best practice is to determine retention requirements as early as possible, ideally before any data is ingested. Review privacy and civil liberties in practice for retention and deletion planning, and use Data Lifetime to apply lineage-aware retention policies where appropriate.
For more information, refer to the documentation on how retention works, or contact Palantir Support.