Data-request guide
Last updated: 23 September 2026
When a booker asks for their information (access, export, erasure, rectification, or withdrawal of marketing), your business is the controller. Klarte provides tools. You remain responsible for replying within 30 days.
Right to erasure (“the right to be forgotten”)
If a booker asks you to delete their information, you can delete or anonymise it in the product. You do not need to ask Klarte to do it manually.
- Self-service. Confirmations and reminders contain a privacy link. The booker can delete or anonymise their own information there.
- You, on request. Dashboard → Settings → Legal → Help a customer → enter the email → Delete data. The same screen can download JSON if they asked for a copy instead.
Erasure removes that person’s personal data on your booking form, including past bookings, and cancels upcoming appointments for them. Contact details on some appointments may remain until a short notice window has passed, and are then removed automatically. You must still tell the booker that the information has been deleted. Klarte does not decide erasure for people who book with you on its own.
Broader process (complaints, breaches, when a booker contacts Klarte): privacy requests overview.
1. Use the privacy link first (self-service)
Confirmations and reminders contain a privacy link. The booker can:
- Export — download JSON (logged as
export) - Delete / anonymise — cancels pending bookings where that applies, and may hold contact details until a notice window has passed (logged automatically)
- Withdraw marketing — logged in the consent register
If the booker completes self-service, you usually only need to confirm by email if they asked you directly.
2. If they email instead
- Confirm that you received the request (good practice within a few business days)
- Check that the email matches the booking before you send information
- Ask them to use the privacy link when possible
- Otherwise: Dashboard → Settings → Legal → Help a customer → enter the email → Download JSON (access) or Delete data (erasure when they cannot use the privacy link)
- Reply with the export, or confirm erasure or withdrawal of consent
- For manual access via Help a customer: after you have replied by email, click Mark as completed to record the request in the audit log
3. Request types — quick reference
| Request | What you do |
|---|---|
| Access / copy of information | Export via the privacy link, or Download JSON under Help a customer → reply by email |
| Erasure | Delete via the privacy link, or Delete data under Help a customer if they cannot use the link → confirmation by email |
| Rectification | Update the booking or customer in the dashboard, or ask the booker to book again |
| Withdrawal of marketing | The privacy link, or confirm that marketing is off in your records |
| Complaint (GDPR) | Reply within 30 days. Do not obstruct the right to complain to Datatilsynet or the local supervisory authority |
4. What Klarte does not do
- Klarte does not reply to bookers as controller for your booking data
- If a booker contacts Klarte, we forward the request to the business email and offer technical help only
- Klarte does not give legal advice for your industry or country
5. Suspected breach
Contact hjelp@klarte.no immediately. See privacy requests section 7 and the data processing agreement section 11.