> "Either we are holding records long past their legal life, or we deleted something we were required to keep - and nobody can say which until a regulator, or a deletion request, forces the question." ^pain A collective-track pain about the *lifecycle* dimension of knowledge: the duty to retain certain records for a mandated period and to destroy others on schedule or on request. It is distinct from access (who may read it) and staleness (whether it is current) - here the question is whether an artefact should still *exist* at all. Regulated domains feel it first - HR (employee records, right-to-erasure), finance, health, legal - but any organisation accumulating personal or contractual data carries the duty. Without a retention schedule and an owner enforcing it, data both over-persists (liability and breach surface) and under-persists (records destroyed before their required life, unrecoverable when an audit asks for them). ## Discovery questions - "For your most sensitive records, do you know how long you are required to keep them - and who deletes them when that time passes?" - "Has a deletion or erasure request ever arrived that you could not confidently fulfil across every place the data lived?" - "If a regulator asked you to produce a record - or to prove you had destroyed one - could you?" ^discovery-questions