Delete a CircleSpeak Account
Effective: 31 July 2026
This route starts permanent deletion of a CircleSpeak account and associated data. It is not temporary deactivation.
- Signed in: open Profile → Privacy, support, and data → Request account deletion, review the warning, and confirm. The app shows a request reference and target date.
- Cannot sign in: email [email protected] from the account address. If you cannot access that mailbox, explain this without sending a password or OTP so we can offer another verification step.
- We verify identity and whether a shared Care Circle profile needs ownership transfer or full-profile deletion.
- We aim to acknowledge within two business days, confirm scope or next steps within five business days, and complete a verified request within 30 days.
What deletion covers
Deletion covers the login account and sessions, Care Circle memberships, account-linked messages and suggestions, profiles for which the requester is the only responsible guardian, custom cards and associated private images, and other personal information no longer needed to operate or protect the service.
Limited retention
Privacy-safe audit events expire after 90 days. Completed or cancelled deletion-request evidence and resolved generated-content reports may be kept for up to two years. Cloudflare Workers logs expire within seven days. Deleted database data may remain inaccessible in D1 point-in-time recovery history for up to 30 days before automatic expiry. A one-way hashed account reference may be kept for up to 30 days after deletion solely to signal matching apps or browsers to remove that account's local cache; it contains no email, name, or workspace content. A legal hold or unresolved dispute may require a documented exception.
Local device data
CircleSpeak keeps each signed-in account in a separate local data area. A connected app or browser that still holds the matching anonymous local account reference can recognise deletion completion for up to 30 days and automatically remove only that account's cache. An offline device cannot receive that signal, and an ordinary expired or revoked session locks the cache instead of guessing that the account was deleted. For certainty, use “Remove this account's data from this device”, uninstall the app, or clear CircleSpeak site/app data on every device. “Export local data” is a copy of the current device workspace, not a complete server-side account export.
