Delete a customer's collected location data (right to erasure)
POST/v2/consent/delete-data
Immediately erases a customer's collected location pings and drift events — distinct from /v2/consent/revoke, which only stops future collection. The scheduled retention job deletes the same rows eventually; this endpoint is for a customer invoking their right to erasure now, without waiting out the retention window. Requires consent to already be revoked (400 otherwise) — revoke first, then delete, so a live monitoring relationship can never be wiped out from under itself. Deliberately does not touch KYC verifications or certificates: those carry their own retention mandate and are never subject to self-service deletion here.
Request
Responses
- 200
- 400
- 403
Data deleted
Missing required fields, or consent is still active (revoke it first)
The endpoint requires an account-scoped API key. Legacy keys without an account identity cannot access tenant data. Also returned when the requested resource (loan, schedule) is registered to another account.