File a data-subject access or erasure request (DSAR)
File a data-subject request (GDPR Article 15/17, CCPA/CPRA, LGPD, and other regimes) on behalf of a contact. Identify the subject with a contact_id and/or their subject_email/subject_phone, and give the requester_email where the finished export link is mailed. CCPA/CPRA requests may set request_type, applicable_jurisdiction, consumer_categories, and a verification posture; the request is queued and a background worker produces the access export or runs the erasure. Owner/admin only.
Authorizations
Dashboard JWT token from Clerk
Body
Where the signed export link (or status update) is emailed.
Existing contact the request is about (optional if an identifier is given).
The data subject's email, used to resolve or match their records.
The data subject's phone in E.164 format.
Legal regime the request is filed under (defaults to gdpr).
gdpr, ccpa, cpra, lgpd, pdpa, pipeda, dpdp The right being exercised (defaults to know).
know, delete, correct, opt_out_sale, limit_sensitive_pi, portability, non_discrimination CCPA categories of personal information the request covers.
Identity-verification posture the operator requires.
email_link, email_phone, document, manual_review Free-text description of the request (max 4096 chars).