After the race · Administrators
GDPR & erasure
The system holds only what judging needs, and gives administrators simple tools to anonymise a race once results are final, delete what's no longer needed, and answer a request for a copy of someone's data.
What's held
| About | Held |
|---|---|
| Athletes | Bib, name, country (or club) and place |
| Officials | Code, name, country, role, judge number, and an email address only if one is given (used only to send them their PIN) |
| Administrators | Name and email address |
| The audit log | Who did what and when, including administrator emails and official codes |
Never held: dates of birth, phone numbers, addresses, device identifiers, location, or any tracking or analytics. A Roster Athletics import reads the files, keeps only name, number and club or country, and discards everything else without storing it.
The public posting board shows bib numbers and red-card symbols only, never names.
Recommended practice after an event
- Export the summary sheet and keep it. It's the official competition record. (Summary sheet export)
- Revoke any graphics API keys issued for scoreboards or broadcast.
- Purge the race's personal data once results are official.
- Delete the meet once the protest period has passed.
- Trim the audit log to the retention period in your privacy notice, keeping it at least as long as results can be protested.
Purging a race's personal data
- Export the summary sheet first. The purge can't be undone.
- In administration, open the race and press GDPR: purge personal data.
- Read the confirmation and confirm. The race is anonymised and archived.
| Changes | Stays |
|---|---|
|
|
The anonymised names appear everywhere the race is shown: the boards, a summary sheet exported afterwards, the JSON export and the graphics feed. Copies taken before the purge (a summary sheet already downloaded, or what a scoreboard or broadcaster has already received) aren't affected.
Officials are not touched
Purging a race doesn't affect the officials themselves. Their entry in the registry, their code and their PIN keep working at every other meet, because judges are usually working elsewhere that same week. Removing a person is a separate decision (below).
Deleting races and meets
| Action | Removes | When |
|---|---|---|
| Delete race | The race and everything in it: athletes, cards, zone times, places | When you want it gone entirely rather than anonymised |
| Delete meet | The meet, its races and its panel assignments | After the protest period. This removes the last link between a judge number and a person. |
Why the meet matters: even after a purge, a card still belongs to the panel position it was given under, and panel positions belong to the meet. While the meet exists, J3 could still be traced back to the person who held that position. Deleting the meet closes that link.
Officials' own data
- Removing an email address: any administrator can open the official on the Officials tab, choose Edit, clear the address and save. It's removed immediately; nothing else holds a copy. The official keeps their PIN and loses nothing but the emailed copy.
- Removing an official entirely: a superadmin deletes them from the registry. Do this only when they've asked to be removed or no longer officiate, because it ends their login at every meet.
- Officials' names stay on summary sheets already exported. The sheet is a competition record that attributes each card to a numbered judge, just as the paper sheet always has.
Answering a request for a copy of someone's data
In administration, open the race and press Export data (JSON). It downloads a complete machine-readable copy of the race: athletes, panel, cards and times. Pass on the parts that relate to the person asking.
The audit log
The audit log records every change: cards, voids, corrections, closings and reopenings with their reasons, late card decisions, exports and purges. That's what makes the record trustworthy, and it covers the record TR 54.7.8 requires.
It has no automatic expiry. Choose a retention period, state it in your privacy notice, and trim older entries to match; whoever hosts the system can do this with a single command. Keep it at least as long as results can be protested.
Who can do what
| Action | Who |
|---|---|
| Purge a race, delete a race or meet, export JSON | Administrators of that organisation, and superadmins |
| Clear an official's email address | Any administrator |
| Delete an official from the registry | Superadmin only |
Every one of these is recorded in the audit log with the administrator who did it.