Skip to content

US‑E4‑02 – GDPR‑konforme Datenhaltung #12

@mvk-abs

Description

@mvk-abs

User Story
Als Datenschutz‑Beauftragter möchte ich nur Business‑Partner‑IDs statt personenbezogener Daten speichern, um die GDPR‑Vorgaben einzuhalten.

**Akzeptanzkriterien**  
```gherkin
Feature: GDPR Data Storage
  Scenario: Store only BP IDs
    When the editor saves a participant
    Then the database stores the BP ID only and no personal email or phone number
```

**UI/Technical Notes**  
- Validation in CAP handler rejects payload containing e‑mail or phone.  
- Audit log entry “PII filtered”.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions