If user [email protected] violates our ToS and I suspend them, I can keep that email address forever to keep them from signing up again. They can’t just say “GDPR! You have to forget me, tee-hee!”
Any reason you won’t just use a hash?
Any reason you won’t just use a hash?