Earlier quoted context omitted.
They aren’t the only gaming company to interpret GDPR that way and they are arguably target #1 by EU regulators so they don’t have room to misinterpret Here is one of the provisions of interest: https://gdpr-info.eu/art-5-gdpr/ Ubisoft also cites GDPR provisions for deletion of inactive accounts: https://www.gamepressure.com/newsroom/ubisoft-removes-player...
This is nonsense. While you cannot keep personal data lying around forever with GDPR, deleting accounts after 6 months or a year or inactivity is a choice being made by the company. They could equally well have said that an account which was inactive for 2 years, or 3 years would be deleted and still be legally compliant.
If you have regulators breathing down your neck being conservative on time isn’t a terrible idea.