S
Payments

TruePrivacy + Stripe

Map Stripe customer and payment data in your data inventory.

Auth: API Key
Setup time: 8 minutes

Overview

Stripe stores customer payment data, billing addresses, card details (tokenized), and transaction history. TruePrivacy integrates with Stripe to map customer and payment data to your compliance inventory, and to automate the deletion of Stripe customer records when erasure requests are received — while respecting financial records retention obligations.

Because Stripe data is subject to both privacy regulations and financial records retention requirements, TruePrivacy handles Stripe deletion carefully — anonymising personal data while preserving transaction records required for accounting and tax compliance.

What TruePrivacy can do

Data Discovery
Data Mapping

Data types accessed

  • Customer records
  • Billing addresses
  • Payment method details (tokenized)
  • Charge history
  • Subscription records
  • Invoice records

DSR capabilities

  • Delete Stripe customer records (name, email, address)
  • Export customer payment history for access requests
  • Update customer billing information
  • Identify all transactions associated with a data subject

How it works

  1. 1

    Add a Stripe Restricted API Key with the appropriate permissions to TruePrivacy.

  2. 2

    TruePrivacy scans Stripe customers, payment methods, charges, subscriptions, and invoices for personal data.

  3. 3

    Discovered Stripe data is mapped to your compliance inventory with the appropriate legal basis and retention policy.

  4. 4

    Deletion DSRs anonymise the Stripe customer record (name, email, address) while preserving transaction records for financial retention requirements.

Frequently asked questions

TruePrivacy requires a Stripe Restricted API Key with read access to Customers, Payment Methods, Charges, and Subscriptions for data discovery, plus write access to Customers for deletion operations. We do not require access to your Stripe payout or financial reporting data.

Stripe stores card data as tokens — the actual card numbers are never accessible via the API. TruePrivacy can delete the Stripe customer record (which removes name, email, and address) and detach payment methods (removing the card token). Historical charge records are retained as required for financial compliance.

TruePrivacy applies a policy of anonymising personal data in Stripe while preserving transaction records. The customer's name, email, and billing address are removed from the Stripe customer object, but charge and invoice records are retained with the personal data fields cleared. This satisfies GDPR's right to erasure while preserving records required for tax compliance.

Connect TruePrivacy to Stripe today

Start your free trial and connect Stripe in 8 minutes.