Reference
Data
Customer Data
Rencore Governance collects and processes customer data, which means any information and metadata of the customer contained in Microsoft 365 or other services the customer chooses to connect to Rencore Governance.
Personally Identifiable Information
Rencore Governance stores usernames and e-mail addresses, URLs, titles, and other metadata of the collected data like Site Collections, Sites, Lists, Teams, etc (for more information regarding GDPR click here). The collected customer data can be removed at any time by…
Telemetry data
In order to operate the service and being able to further improve the service for Rencore's customers, Rencore Governance is collecting telemetry data that can be access by authorized support personell.
Data Residency
Rencore Governance stores all data in the Microsoft data center chosen by the customer upon creation of the Rencore Governance workspace.
Data Retention
For the majority of entities, Rencore Governance retains only the details of the most current scan. Historic data usually only includes the total number of entities, check violations etc. to allow Rencore Governance to calculate trends.
Un-anonymize user data
On September 1st, 2021 Microsoft enabled pseudonymization of user data for reports in all M365 by default. This is affecting data returned by all M365 report APIs. The following objects are affected in Rencore Governance:
Admin Portal Access
In order to operate Rencore Governance, Rencore personnel requires to access certain data connected to each customer. Authorized Rencore personnel uses an internal admin portal backend for this purpose.