Skip to main content

Data minimization

To comply with the principle of data minimization, you need to ensure that the Personal Identifiable Information (PII) that your app processing is:

  • Relevant: you should collect only PII necessary for the specified purposes.
  • Adequate: you have enough data to fulfill those purposes properly.
  • Limited to what's necessary: you periodically review the stored data and delete anything unnecessary.

Dynatrace enables its customers to comply with data minimization requirements through built-in mechanisms, such as data masking rules. You need to consider whether customers need similar data masking rules in your app and, if relevant, offer settings that allow the customer to disable access to sensitive information.

Tips on how to minimize data collection in Dynatrace Apps

  • If specific PII isn't needed to offer the core functionality of the app, don't collect it
  • The app should use the minimum amount of customer data required to carry out a given task
  • Offer settings to disable access to specific data types
  • Minimize the amount of data collected in the log data
Still have questions?
Find answers in the Dynatrace Community