For AI agents: a documentation index is available at the root level at /llms.txt and /llms-full.txt. Append /llms.txt to any URL for a page-level index, or .md for the markdown version of any page.
  • Getting Started
    • Introduction
    • How Verifa Works
    • Quickstart
    • Choosing an Integration Method
  • Use Cases
    • KYC Onboarding
    • Age Verification
    • AML Compliance
    • Fraud Prevention
    • Marketplace Trust & Safety
  • Core Concepts
    • Overview
    • Sessions
    • Verifications & Checks
    • Workflows
    • Identities
    • Cases
    • Screening & Reports
    • Lists
  • Integration Guides
    • Overview
    • JavaScript SDK
    • Web Capture Flow
    • API-Only Integration
    • Mobile SDK
    • Webhooks Guide
    • MCP Server
    • Migrating from Persona
  • API Details
    • Overview
    • Authentication
    • Pagination
    • Rate Limiting
    • Versioning
    • Errors
    • Webhooks
    • Idempotency
    • Key Inflection
    • Data Access
    • Data Retention
  • Tutorials
    • Creating Your First Verification Session
    • Creating a Workflow
    • Receiving Webhooks & Validating Signatures
    • Handling Webhook Events
    • Custom Document Types & AI Extraction
  • Best Practices
    • Testing
    • Preventing Duplicates
    • Fraud Signals
    • Changelog
  • API Reference
      • GETList identities
      • POSTCreate an identity
      • GETGet an identity
      • PATCHUpdate an identity
      • DELRedact an identity
      • GETExport identity data (GDPR Art. 15 DSAR)
      • POSTSearch identities
      • GETList identity sessions
      • GETGet identity audit log
      • POSTAdd a tag
      • POSTRemove a tag
      • POSTSet tags
      • POSTPreview identity merge
      • POSTMerge identities
      • POSTArchive an identity
      • POSTRestore an archived identity
      • POSTPause continuous monitoring for an identity
      • POSTResume continuous monitoring for an identity
      • POSTAdvanced identity search
      • GETGet custom field values
      • PATCHSet custom field values
      • GETList identity relationships
      • POSTCreate an identity relationship
      • DELDelete an identity relationship
      • GETQuery identity relationship graph
      • GETFind cross-session image similarity matches
      • GETGet monitored lists for an identity
      • POSTAdd lists to identity monitoring
      • PUTReplace monitored lists for an identity
API ReferenceIdentities

Redact an identity

DELETE
https://devapi.withverifa.com/api/v1/identities/:identity_id/data
DELETE
/api/v1/identities/:identity_id/data
$curl -X DELETE https://devapi.withverifa.com/api/v1/identities/identity_id/data \
> -H "X-API-Key: <apiKey>"
1{
2 "id": "idn_abc123",
3 "status": "redacted",
4 "message": "string"
5}
Permanently removes all personal data from an identity record, including encrypted PII and HMAC hashes used for duplicate detection. The identity record itself is retained with status `redacted` for audit purposes. This fulfills GDPR right-to-erasure (Art. 17) requests at the identity level. To also redact individual session data, use the session redaction endpoints separately. **Required scope:** `redact:write` (or legacy `identities:write`).
Was this page helpful?
Previous

Export identity data (GDPR Art. 15 DSAR)

Next
Built with

Permanently removes all personal data from an identity record, including encrypted PII and HMAC hashes used for duplicate detection. The identity record itself is retained with status redacted for audit purposes.

This fulfills GDPR right-to-erasure (Art. 17) requests at the identity level. To also redact individual session data, use the session redaction endpoints separately.

Required scope: redact:write (or legacy identities:write).

Authentication

X-API-Keystring

Organization API key. Keys are prefixed with vk_live_ (production) or vk_sandbox_ (sandbox).

Path parameters

identity_idstringRequired

Identity ID (idn_*) or external reference.

Headers

Verifa-VersiondateOptional

API version date string (e.g. 2026-02-01). If omitted, the version pinned to your API key is used.

Idempotency-KeystringOptional<=255 characters

Unique key for idempotent requests. Cached for 24 hours. Sending the same key with different parameters returns 422.

Response

Identity redacted.
idstring
statusstring
messagestring

Errors

401
Unauthorized Error
404
Not Found Error
422
Unprocessable Entity Error