---
title: "Natalia On-Premise Reversibility | Your Data Stays Home - Natalia"
description: "Natalia On-Premise reversibility: data on your disk, CSV or JSONL export, license end with no data loss, GDPR erasure with signed certificate."
url: https://getnatalia.com/en/documentation/natalia-analytics-on-premise/reversibility
lang: en
---

[Home](https://getnatalia.com/en/) / [Documentation](https://getnatalia.com/en/documentation) / [On-Premise](https://getnatalia.com/en/documentation/natalia-analytics-on-premise) / Reversibility

# On-Premise reversibility: your data never leaves

The appliance runs on your hypervisor and the data sits on your disk. Leaving Natalia means exporting what you need, then deleting the VM when you decide.

## What stays with you

<table class="text-sm w-full"><tbody class="align-top text-police-grey"><tr class="border-line border-t first:border-t-0"><th scope="row" class="font-semibold p-4 text-left text-police-titre">Data</th><td class="p-4">CDR, configuration and audit log live on the appliance data disk, on your infrastructure.</td></tr><tr class="border-line border-t"><th scope="row" class="font-semibold p-4 text-left text-police-titre">Access</th><td class="p-4">Natalia cannot delete your data remotely. In Strict mode, Natalia has no access to the appliance at all.</td></tr><tr class="border-line border-t"><th scope="row" class="font-semibold p-4 text-left text-police-titre">End of license</th><td class="p-4">The dashboard locks, the data stays on the disk. Collection keeps running. <a href="/en/documentation/natalia-analytics-on-premise/license-lifecycle#etats" class="lnk">License states</a></td></tr><tr class="border-line border-t"><th scope="row" class="font-semibold p-4 text-left text-police-titre">Retention</th><td class="p-4">By default, CDR are kept 5 years and the audit log 3 years, then purged automatically.</td></tr></tbody></table>

## Leaving the solution

Step 1/3

## Export

Before the license expires, export your CDR in CSV or JSONL with their JSON Schema. Open formats, readable without Natalia. See [exports](https://getnatalia.com/en/documentation/natalia-analytics-on-premise/exports).

Step 2/3

## Keep or archive

Keep the data disk or a hypervisor snapshot for as long as your own retention obligations require.

Step 3/3

## Delete

Delete the VM and its disks from your hypervisor, following your media destruction procedure. Natalia keeps no copy.

## Erasure of an employee's data (GDPR art. 17)

Without leaving the solution, an administrator can erase the data linked to an extension. The erasure cascades over all the related data and returns a signed certificate, verifiable offline, to hand to the employee or to the supervisory authority.

Trade secret notice

The selection, organization and presentation of the information contained in this documentation constitute a proprietary asset of Natalia. The precise internal architecture (software versions, implementation choices, data schemas) is a trade secret under article L. 151-1 of the French Commercial Code and is not publicly disclosed. Post-installation details are governed by the signed proprietary license. Full CISO audit available under NDA — contact [security@getnatalia.com](mailto:security@getnatalia.com).

Last updated : October 5, 2026

[Suggest an edit](mailto:doc@getnatalia.com?subject=Doc%20edit%3A%20natalia-analytics-on-premise%2Freversibility)
