Security and data handling
Your customer data stays in your custody.
The whole point of the Delete Act is protecting personal information. It would be strange to comply by shipping all of it to a new vendor. Lethe is built so you never do that.
The model
Hashes, not plaintext. And in the top tier, nothing at all.
Hash and send
Your records are normalized and hashed on your own premises before anything moves. Only the hashes leave your environment. Names, emails, phone numbers, and dates of birth never do. Lethe matches hashes against hashes.
Fully on-premise
For the most cautious brokers, the engine runs entirely inside your network. No hashes leave either. You hold the data, the matching, and the output, end to end.
Said plainly
We protect the hashes like personal data, because they are.
Here is a point most vendors gloss over. The identifiers DROP works with are things like email and phone number, and the hash has to be deterministic or matching breaks. That means the hashes are low-entropy and, in principle, reversible, so the law still treats them as personal data. We cannot add our own salt, because DROP dictates the hash.
So we do not claim to be blind to personal data. We are blind to plaintext. The hashes that pass through hash-and-send are protected at rest as if they were the underlying identifiers, because functionally they are. If you want zero exposure of even hashes, that is what the fully on-premise tier is for.
The legal posture
A processor, papered correctly.
Mandated terms in writing
We sign a service-provider agreement with the terms California requires: purpose limitation, no selling or reusing your data, and deletion on instruction.
Liability does not transfer
You remain the regulated party and filer of record. No vendor can take your statutory liability, and we never pretend to. Our job is to leave you defensible.
Your chosen point, in writing
How much may leave your network is written into the contract and reflected in price, including an honest note on what that choice means for your audit proof.
Questions about how your data is handled?
Ask before you share anything. We will walk through the model and the agreement first.