Why UUIDs matter
A Minecraft UUID identifies a player across servers and is treated as personal data. ReplayCore gives controllers tools to limit how player identities are exposed in the panel and to honour erasure requests at the UUID level.
Controls you have
Replays are only visible to signed-in members of your own account, and per-role visibility settings in the panel control which team roles can use which replay features. A replay only becomes visible outside your team if someone with access deliberately creates a public share link for it, and you can disable share links account-wide from the sharing settings.
Exposing player activity beyond your staff team is a controller decision that should be reflected in your own player-facing privacy notice.
Erasure at the UUID level
When you need to remove a specific player, you can raise an erasure request keyed to that player's UUID. The request is accepted and actioned within our 72-hour SLA, after which the player's personal data is removed from the affected replays. See the Data subject access requests article for how to raise a request and the applicable response target.