Store prompts, outputs, evaluations, and audit logs.
Do not retain personal data beyond its purpose.
Choose two policies.
Define purpose, retention, access, and deletion by data type, account for legal and audit requirements, and record deletion and exceptions.
Detailed explanation
Evidence and unnecessary personal data can be distinguished.
Evidence and unnecessary personal data can be distinguished.
Retention is justified and verifiable.
Retention is justified and verifiable.
Purpose limitation and breach impact worsen.
Purpose limitation and breach impact worsen.
Data can remain after the primary copy is deleted.
Data can remain after the primary copy is deleted.
Try it yourself
An example you can run in a temporary verification environment.
AWS公式AIF-C01 Domain 5.2のデータライフサイクル、保持、削除、コンプライアンスを確認する。Expected result
必要な監査証跡を残しつつ、目的を超えるデータ保持を避けられる。Key points
- Retention
- Deletion
- Backups
Notes
- Environment: AWS公式AIF-C01試験ガイドとAWS公式ドキュメントの確認
- Command output formatting can vary slightly by distribution or tool version.
- Run the example in a temporary directory or process when possible.
Foundation review
Read the scope first
Check whether the command acts on the current shell, a new process, an existing process, or a file.
Verify the observable result
Use the supplied command and compare the output with the expected result.