Retention & Lifecycle

Retention policies aligned to regulation. Workspace lifecycle automation from provisioning through inactivity, archival, and deletion. Closed-loop governance that satisfies regulators.

Published For Compliance & Legal, IT Admin, M365 Product Owner

Retention & Lifecycle is Rencore's set of capabilities for managing the full lifecycle of workspaces and the retention of governance data itself. Workspace lifecycle automation covers creation through archival to deletion, with policy-driven triggers and approval gates for irreversible actions. Data retention policies align audit log, evidence pack, and inventory retention to regulatory requirements (GDPR, sector frameworks). End-to-end coverage so nothing lingers past its compliance horizon.

Why lifecycle matters for compliance

A workspace that should have been deleted three years ago is a compliance liability today. GDPR data-minimization principles require that personal data is not retained beyond its purpose. Sector-specific frameworks (financial services, healthcare) require explicit retention schedules. Internal data governance policies typically require that workspaces unused for N months be archived or deleted. Without automation, the workspace stays forever.

Workspace lifecycle automation turns the policy into operation. Inactivity detection identifies candidates; renewal flows give owners the chance to retain; archival and deletion automations handle the cases where renewal does not happen. The audit log captures every step.

How the phases compose

Provisioning establishes the workspace with the appropriate template (naming, metadata, retention tag). Inactivity detection runs on a schedule, workspaces with no recent activity surface as renewal candidates. Renewal asks the owner to attest or extend. Archival moves workspaces out of active scope while preserving content. Deletion permanently removes the workspace after retention expires.

Each phase has hooks for custom logic, notifications to specific stakeholders, escalation to admins when owners are unavailable, custom retention overrides for legal hold scenarios.

Retention of governance data

Beyond workspace lifecycle, Rencore retains its own data, audit logs, evidence packs, inventory snapshots, policy version history. Each category has a configurable retention period. Defaults align to SOC 2 (1-3 years) and ISO 27001 expectations; legal hold flags exempt specific records from automatic deletion when litigation or audit demands.

Frequently asked questions

What is Rencore governance?
Rencore governance is a SaaS platform that continuously monitors your Microsoft 365 tenant for policy violations, configuration drift, and security risks across SharePoint, Teams, Power Platform, Copilot, and AI Agents. It automates compliance evidence collection, surfaces oversharing and sprawl, and provides actionable remediation workflows, reducing manual audit effort by up to 80%.
How do Rencore policies work?
Rencore ships with hundreds of pre-built policies that detect governance violations across every connector, oversharing, sprawl, cost overruns, security risks, and compliance gaps. Policies run on a continuous schedule, evaluate each discovered object against configurable rules, and flag violations with severity (High, Medium, Low), category, and a recommended action.
What does Rencore discover during inventory scanning?
Rencore automatically inventories all resources across connected services: Microsoft 365 sites, teams, groups, mailboxes, Power Platform apps and flows, AI agents, plus the equivalent objects in Slack, Box, Confluence, Claude, and every other connector. Discovery runs continuously with delta detection, so new resources appear within minutes of creation.

Trusted by

MAPALBAMVille de LuxembourgWACKERGRUNDFOSAMGENOsramLufthansaHoneywellThyssenKruppSunrisePattern

See Rencore in your tenant

Connect your environment in minutes and surface the governance findings that matter on day one.