Skip to content
Logmanager
Free tool

Log Retention Period Estimator

Find the commonly recommended log retention periods for GDPR, NIS2, PCI DSS, HIPAA, ISO 27001, SOX, and other frameworks, then estimate the resulting log storage requirements. The result is intended as an indicative planning guideline and should not be considered legal advice.

Volume input mode

Regulation / framework

Typical guideline shown below. Edit the retention field if your policy differs.

Environment

Used to estimate workstation and identity-related events.
Application, database, file and infrastructure servers.
Firewalls, switches, routers, VPN gateways, IDS/IPS and similar devices.
bytes
700 bytes is a commonly used planning assumption.

Known daily volume

GB / day
Use your current ingestion rate from your log management or SIEM platform.
Retention
days
Pre-filled from the selected framework. Override with your own policy at any time.
days
Some frameworks (e.g. PCI DSS) require a portion of history to be immediately available for analysis.