CircleSpeak ← Back to app

Delete a CircleSpeak Account

Effective: 31 July 2026

This route starts permanent deletion of a CircleSpeak account and associated data. It is not temporary deactivation.

  1. Signed in: open Profile → Privacy, support, and data → Request account deletion, review the warning, and confirm. The app shows a request reference and target date.
  2. Cannot sign in: email [email protected] from the account address. If you cannot access that mailbox, explain this without sending a password or OTP so we can offer another verification step.
  3. We verify identity and whether a shared Care Circle profile needs ownership transfer or full-profile deletion.
  4. We aim to acknowledge within two business days, confirm scope or next steps within five business days, and complete a verified request within 30 days.

What deletion covers

Deletion covers the login account and sessions, Care Circle memberships, account-linked messages and suggestions, profiles for which the requester is the only responsible guardian, custom cards and associated private images, and other personal information no longer needed to operate or protect the service.

Shared Care Circle profiles

If another authorised guardian shares responsibility, we will confirm whether the profile should transfer or be deleted. We will remove the requester’s access and account-linked content and explain any shared information that must be retained for another person’s account or a lawful reason.

Limited retention

Privacy-safe audit events expire after 90 days. Completed or cancelled deletion-request evidence and resolved generated-content reports may be kept for up to two years. Cloudflare Workers logs expire within seven days. Deleted database data may remain inaccessible in D1 point-in-time recovery history for up to 30 days before automatic expiry. A one-way hashed account reference may be kept for up to 30 days after deletion solely to signal matching apps or browsers to remove that account's local cache; it contains no email, name, or workspace content. A legal hold or unresolved dispute may require a documented exception.

Local device data

CircleSpeak keeps each signed-in account in a separate local data area. A connected app or browser that still holds the matching anonymous local account reference can recognise deletion completion for up to 30 days and automatically remove only that account's cache. An offline device cannot receive that signal, and an ordinary expired or revoked session locks the cache instead of guessing that the account was deleted. For certainty, use “Remove this account's data from this device”, uninstall the app, or clear CircleSpeak site/app data on every device. “Export local data” is a copy of the current device workspace, not a complete server-side account export.

Back to appPrivacySupportTerms