Skip to Main Content
Community Feedback

We love to hear your feedback. Your suggestions and ideas are important to us. Our feedback forum is a great place to post your ideas and vote on others. Please share your detailed use case and how the proposed enhancements can increase value to your business. We do read all of your posts, but may not be able to respond to all comments.

More information on the status of submitted ideas can be
found here

Status New idea
Categories Recruitment
Created by Guest
Created on Aug 17, 2026

Configurable retention and deletion of sensitive onboarding data

Introduce configurable retention and deletion controls specifically for sensitive personal information collected through onboarding and New Starter Forms.

Onboarding requires organisations to collect highly sensitive information, including Tax File Numbers, bank account details and other payroll-related information. Once this information has been successfully transferred to the organisation’s payroll/HRIS system, there is limited need for it to remain accessible within PageUp.

Currently, retention and removal functionality appears to operate primarily at the applicant/profile level. This does not provide organisations with sufficiently control over sensitive information collected during onboarding without potentially removing the broader applicant or employee record.

Suggested functionality could include:

  • configurable retention periods for individual onboarding forms, fields or data categories;

  • automatic deletion, purging or de-identification of nominated sensitive fields after a defined period or workflow event;

  • the ability to trigger deletion once data has been successfully transferred to an external payroll/HRIS system;

  • the ability to retain the broader applicant/onboarding record while removing sensitive information that is no longer required;

  • role-based restrictions to sensitive onboarding information once onboarding is complete;

  • an auditable record confirming when information was deleted or de-identified; and

  • administrator reporting to identify sensitive onboarding information approaching or exceeding configured retention periods.

What business value are you trying to achieve?

Configurable retention and automated deletion/de-identification of onboarding data would help organisations:

  • better align with the Privacy Act 1988 (Cth) and the Australian Privacy Principles, particularly APP 11 (security of personal information) and data minimisation principles;

  • support compliance with the Privacy (Tax File Number) Rule 2015, which requires TFN information to be securely destroyed or permanently de-identified when no longer required for a lawful purpose;

  • reduce the impact of potential data breaches by limiting the volume of sensitive information retained;

  • strengthen information governance and auditability through automated, policy-driven retention; and

  • eliminate manual administrative processes currently required to manage sensitive onboarding records.

This enhancement would provide organisations with practical privacy controls while allowing recruitment and onboarding records to be retained where required, without retaining sensitive financial and taxation data unnecessarily.

  • Attach files