Every DROP cycle: matched, filed, logged, on time.

For registered California data brokers. DropClerk pulls the state's hashed deletion lists with your API key, matches them against your records inside your browser, and files your response with the state.

No credit card to sign up, practice, or run your first cycle against the state. After that, $99/month per registration.

Your records never leave your browser.

Your browser

Your records are hashed and matched here.

DropClerk

Holds your API key and calls the state for you.

  • The state's hashed lists
  • Your responsework item ids and statuses
  • Your recordsyour data never leaves
Each cycle, DropClerk downloads the state's hashed lists with your key and hands them to your browser. Your browser hashes your records, matches them against those lists, and sends back only the state's own work item ids, each with a status digit. No record, and no hash of a record, crosses the line.

State Requirements

Under the Delete Act, the state's Delete Request and Opt-out Platform gives each registered data broker a set of files, one per identifier type you registered for: name with date of birth and ZIP, email, phone, mobile ad ID, name with VIN, connected TV ID. Each row is a work item: an id, and a hash of a consumer's identifier.

What the state expects you to do:

  • Standardize and hash your own records exactly the way the state's technical spec describes, so that your hashes line up with theirs.
  • Find which work items match someone you hold.
  • Delete or opt out those people, unless an exemption applies.
  • Send back one status for every work item: Deleted, Opted out, Exempted or Not found.

The hashing rules are exacting: name folding, date formats, ZIP+4, phone punctuation. A value standardized slightly differently produces a different hash, which simply never matches, and nothing tells you.

What DropClerk does for you

  • Matches your data with the state's

    One click pulls the state's hashed lists. Choose a CSV of your records, and your browser hashes every row in the state's format and looks it up in those lists. You get counts per list and a match report of the records to act on.

  • Files your response with the state

    After you review the matches, DropClerk builds one Id,Status file per list, named the way the state expects, and uploads them with your key. The state's response is shown as it arrives, and a correction afterwards is one amendment.

  • Keeps the audit log

    Every call to the state is recorded: who, when, which registration and cycle, the file names, the counts, the spec version used, and what the state answered. Export it as CSV whenever you need it. This is what you hand an auditor, a regulator or your own counsel.

  • Watches the calendar

    Each registration shows when its next pull is due. Turn on reminders and the people you name get an email at 14, 7 and 1 days out, and once more if it goes overdue. It never depends on someone remembering.

Your records never reach our servers

This is how the product is built, not a policy we could quietly change.

Stays with you

  • Your records file, and every value in it
  • The hashes computed from your records
  • The match report: which of your records matched which work item

What we store

  • The state's hashed lists for your registration
  • The Id,Status files you submit, and the state's responses
  • The audit log
  • Your API key, encrypted, and your account email

Built on the state's published spec, and checkable

The hashing rules implement the state's technical specification v1.2.0. The state publishes 18 worked examples with their expected hashes, and all 18 pass. The spec version used is recorded with every cycle.

You do not have to take that on trust. The free public verifier runs the same code in your browser: it re-runs the 18 examples when the page loads, and lets you hash one value of your own to compare against whatever you use today.

Open the hash verifier

Practice the whole cycle before you pay

Every account includes a practice environment: a built-in mock of the state's API that speaks the same protocol and hands out lists of synthetic consumers. Download, match, review, submit and read the response, as many times as you like. We supply a matching file of invented records, or you can bring a test file of your own. It is free, and it needs no API key.

When you are ready, add a registration for the state sandbox (free) or production with your real key. A production registration's first cycle is free too, no credit card required; the subscription starts with the second.

Pricing

First cycle free! Then $99/month per registration.

No credit card to start. Practice mode and the state sandbox are free, and each production registration runs its first cycle free; after that it is $99/month while it is on your subscription. Cancel any time.

No tiers, no annual contract, no per-record fees. Every registration gets all six lists, the audit log, reminders and support; the state sandbox is free alongside it. One registration, one price; a second state will be a second registration, when there is one.

FAQ

Anything not answered here: support@dropclerk.com.

Can I use a third-party platform like DropClerk to access DROP?
Yes. The regulation does not require you to touch DROP personally; it requires you to restrict your credentials and everything derived from DROP to "persons authorized to act on the data broker's behalf," and to remain responsible for what is done through your account (Cal. Code Regs. tit. 11, ยง 7610(a)(1)). When you add a registration you authorize DropClerk to act on your behalf for that access; the terms of service say exactly what that covers. Your API key is stored encrypted and used only to call the state's download and upload endpoints for you; your records never leave your browser; and every call is in your audit log. Some vendor articles say third parties cannot access DROP. That claim is not in the text of the regulation.
Do you need my DROP username and password?
No. Only the API key, which you generate in your DROP account and can revoke there at any time. We never see your portal login.
Where do my consumer records go?
Nowhere. You open your records file in the browser; it is standardized, hashed and compared with the state's lists there. There is no endpoint on our server that accepts a record, a hash of a record, or the match report. What reaches us is the file the state is going to receive anyway: work item ids and statuses.
What format do my records need to be in?
A CSV. You map your column names to the fields the state hashes (first and last name, date of birth, ZIP, email, phone, mobile ad ID, VIN, connected TV ID) once, and the mapping is saved for next time. Any columns you do not map are ignored.
How do I know your hashes match the state's?
The hashing code reproduces every worked example in the state's technical spec (version 1.2.0), and the free hash verifier lets you check any value, or your own script, against it.
What is a registration?
One DROP account with the state, with its own API key and its own lists. Most companies have one. A company registered as more than one legal entity adds each as its own registration and runs a cycle for each.
What does it cost?
First cycle free! Then $99/month per registration. Practice mode and the state's sandbox are free. A production registration runs its first full cycle free, so you can see the whole thing work against the state before paying anything. From the second cycle it is $99 a month for as long as it is on your subscription, prorated on the day you add it. Removing a registration takes it off the bill.
Can I try it without a key?
Yes. Practice mode is a built-in mock of the state's API with synthetic consumers. It runs the whole cycle, download to submission, for free and without a subscription. The state also offers a sandbox with its own API key; that works here too, and it is free as well.
What if I reported a status wrong?
Open the cycle in DropClerk, match again, and resend that list as an amendment with one click. The state replaces the statuses it already accepted, and both submissions stay in your audit log.
Is this only for California?
Today, yes. California is the only state with a deletion platform that brokers must act on. DropClerk is designed so that a registration belongs to a state, not to the product: when another state stands up a platform of its own, it will be added as a registration type and run on the same cycle, audit log and calendar.
Is there a contract?
No. Month to month, cancel from Settings whenever you like. Your audit log and cycle history stay readable after you cancel.

Support from the person who built it

The Support button on every page opens a short form. It goes to Jim, the founder, who reads every message and answers it personally by email. There is no bot and no chat widget. Questions before you sign up are welcome too. You can also write to support@dropclerk.com.