United Kingdom

Data Retention & Deletion Policy

Updated 31 August 2026

This policy explains how Noagent Properties LTD decides how long to keep personal data and what happens when data is removed or deletion is requested. It should be read with our Terms of Use and Privacy Policy.

Purpose-led

We keep personal data only while there is a documented purpose or lawful reason to retain it.

Different controls

Removing a listing, deleting a message, deleting a workspace and requesting personal-data erasure are different actions.

Shared records

One participant cannot automatically erase another participant's independent records or account.

Limited exceptions

Legal duties, claims, fraud and security needs, safeguarding and protected backups can require limited retention.

1. Our retention principles

We apply the UK GDPR storage-limitation principle. We consider why information is needed, whether an account, listing, workspace or transaction is active, user expectations, sensitivity, applicable legal or claims periods, disputes, fraud and security risks, and whether information can instead be deleted or anonymised. We review these rules when the service or a relevant legal requirement changes.

2. Deletion is not one action

No Agent provides several removal and deletion controls. The effect depends on what is being removed. Deleting or withdrawing a property listing does not automatically delete the account that created it. Deleting a workspace does not automatically delete a participant's separate No Agent account or another participant's independent records. A personal-data erasure request is reviewed separately against the scope of the request and any lawful retention exceptions.

ActionWhat it normally affectsWhat it does not automatically remove
Remove or delete a property listingThe listing and, where a permanent deletion is authorised, its associated property media and workspace dataThe user's separate account, required audit evidence, protected backups or records we must lawfully retain
Delete your messageThe sender's message content in the live conversationLimited deletion metadata or copies another participant lawfully made outside No Agent
Delete a workspaceLive workspace records and files within the authorised deletion scopeSeparate user accounts, another participant's independent records, restricted audit evidence or protected backups awaiting expiry
Request personal-data erasureThe personal data identified during our review of the requestInformation that must or may lawfully be retained for legal obligations, claims, fraud, security, safeguarding or another applicable exception

3. Standard retention schedule

DataStandard ruleWhy
Account and authentication recordsFor the account's life, followed by a proportionate closure period unless earlier erasure appliesAccess, security, support and account administration
Property listingsWhile needed to provide or administer the listing, then according to its removal status and any documented support, fraud, dispute or legal needListing service, moderation, safety and dispute handling
Active workspace, tasks, viewings and decisionsWhile the workspace or related transaction is active, then reviewed against transaction, dispute and legal-claim needsProvide the shared workflow and preserve an accurate record
MessagesWhile the relevant workspace is active and afterwards only for a documented transaction, security or claims need; sender-deleted content is removed from the live record soonerCommunication, safety and dispute handling
Stage 1 evidenceOnly while needed for verification and the relevant transaction, unless a legal hold or claim requires longerQualification, referencing or buyer verification
Stage 2 drafts, signed copies and additional documentsWhile needed for the transaction and any applicable legal-claim period; users should retain their own authoritative copyShared document service and transaction record
Service and security logsNormally up to six months in production, unless an incident requires a restricted extract for longerSecurity, availability and investigation
Rights requests and privacy complaintsFor as long as needed to handle the matter and demonstrate our response, taking account of applicable claims periodsUK data-protection accountability
Financial and tax recordsFor the period required by applicable tax, accounting and company lawLegal obligation

A shorter period applies where the purpose ends and no exception justifies continued retention. A longer period applies only where we have a documented lawful reason.

4. Deleting your messages

The sender can choose Delete on their own message and must confirm the action. We remove the message text from the live conversation for both parties and replace it with a deletion marker. This cannot be undone through the messaging interface.

We retain only limited information such as the message identifier, sender reference and deletion timestamp where needed to keep the conversation coherent, secure the service and demonstrate the deletion. The recipient's screenshots, downloads or other copies outside No Agent are not controlled by this action.

5. Workspace deletion and erasure requests

Where a permanent workspace deletion control is available to an authorised owner or administrator, it removes live workspace records and stored files within that deletion scope. The action does not itself delete a separate No Agent account, and limited audit evidence or protected backups may remain where this policy permits.

An authenticated participant may separately request erasure of their personal data in a workspace. A request starts a review; it does not automatically remove another participant's independent records, information required by law, material needed for legal claims, security records or data awaiting protected-backup expiry. You can make a request through the available privacy controls or email support@noagent.properties.

We verify the requester and scope, identify the relevant personal data, consider other participants' rights and check for retention exceptions. We normally respond to a valid data-rights request within one calendar month. Where the law permits extra time because a request is complex or multiple requests have been made, we will explain this. If we refuse all or part of a request, we will explain the reason and relevant complaint rights.

6. Legal holds and shared-party records

The right to erasure is not absolute. We may retain restricted information where processing is necessary for a legal obligation, legal claims, fraud prevention, security, safeguarding, freedom of expression or another applicable exception. One participant cannot use self-service controls to automatically erase another participant's independently authored or lawfully retained records.

Where only part of a record must be retained, we aim to minimise it and restrict access rather than continue ordinary product use.

7. Backups, versions and deletion completion

Deletion applies first to live systems. Encrypted backups or protected historical file versions may persist until their scheduled expiry or secure overwrite. Data held only there is beyond ordinary product use and will not be restored except where needed for disaster recovery; if restored, applicable deletion controls or requests must be reapplied. We do not keep backups indefinitely.

8. Anonymisation

Where we no longer need identifiable data, we may delete identifiers or aggregate information so it can no longer reasonably identify a person. Properly anonymised information is not personal data and may be kept for service measurement and planning.

9. Contact and complaints

Contact support@noagent.properties about retention, deletion or a privacy complaint. Include the account email and relevant property or workspace reference, but do not email identity documents unless we request them through an approved secure route.

You can also complain to the Information Commissioner's Office at ico.org.uk/make-a-complaint.

10. Policy changes

We will publish changes here and update the date above. Material changes will be communicated appropriately.

Payment methods:
Apple PayGoogle PayCard