The DROP API for California data brokers.
One API call tells you if a record is on California's deletion list. Send a record, a batch or a full CSV and get back exactly what to delete. We sync your DROP list every day, so you're always checking the latest version.
// request { "records": [ { "id": "cust_1001", "email": "jane.doe@example.com" }, { "id": "cust_1002", "phone": "(916) 555-0142" } ] } // response { "list_synced_at": "2026-10-04T06:00Z", "results": [ { "id": "cust_1001", "action": "delete", "matched_on": ["email"] }, { "id": "cust_1002", "action": "clear" } ] }
Illustrative example · see full API docs
Under California's Delete Act, a data broker that fails to process a DROP deletion request can be fined $200 for every request, for every day it goes unhandled, plus the agency's investigation costs.
Over 345,000 Californians filed requests in the first months alone. A missed download, a formatting mismatch, or one stale data feed can leave thousands of requests open at once. That gets expensive fast.
What a miss could cost
Move the sliders. Fines are $200 per request, per day.
Purgepath: $500/month. Less than three days of fines on a single missed request.
DROP runs on a 45-day clock that never stops.
Since August 1, 2026, every data broker in California has to keep up with the DROP list on a fixed schedule, for as long as it's in business.
Formatting mismatches miss matches
DROP sends SHA-256 hashes. If your record says Jane.Doe@x.com and the state normalized to jane.doe@x.com, the hashes don't match. You never see the miss.
New data slips past old requests
A record you buy next quarter for someone who filed in January still has to be suppressed. Scripts that only process the latest file don't catch it.
No proof when the auditor asks
A spreadsheet can do the work once. It can't easily show when you checked, what matched, and what you deleted, months later.
Send your records. Get back what to delete.
- STEP 01
Link your DROP list
A one-time setup from your existing DROP account. Takes minutes.
- STEP 02
Send your records
Upload a CSV or call the API. One record, a new data feed, or your whole database.
- STEP 03
Get your purge list
Every match flagged for deletion in minutes, with a timestamped record of the scrub.
Fast, accurate, and on the record.
Updated daily
We pull new DROP requests every day and keep your list current. No manual downloads, no 45-day reminders.
Unlimited API
Scrub in real time inside your own pipelines, before new data lands anywhere.
Matching that matches
Records are normalized to the state's formatting rules before hashing, so near-misses get caught.
Ongoing suppression
Every past request stays on your list, so newly acquired data is screened too.
Records on file
Timestamped records of every scrub, ready if an auditor or regulator asks.
Hashed, never resold
We work with hashed identifiers, under your DROP account. Your list is never pooled, shared or sold.
One plan. Unlimited scrubs.
No setup fees, no per-record charges, no enterprise sales cycle. Scrub as much as you want, every day.
Two ways to scrub, both unlimited
Bulk upload
Drop in a CSV of any size. Get back a purge list in minutes.
Batches · full databaseReal-time API
Check records one at a time over REST, before they land.
Per record · live feeds- Daily DROP list updates
- Normalized hash matching
- Ongoing suppression
- Timestamped scrub records
Currently at capacity. We'll reach out as spots open.
Questions, answered.
What is DROP scrubbing?
How often do I have to check the DROP list?
What's the penalty for missing a request?
Why is there a waitlist?
Does Purgepath handle compliance for us?
What happens to our data?
How much does it cost?
We're at capacity. Get in line.
New brokers are onboarded from the waitlist. Tell us about your setup and our team will reach out as soon as there's room.
- 1Join the waitlist. Takes about a minute.
- 2Our team reaches out by email.
- 3Link your DROP list and start scrubbing.