Account Deletion Policy
Overview
This policy explains how to permanently delete your LifeOS account and what happens to your personal data. Temporary deactivation is also available and preserves your data.
How to Delete Your Account
- Sign in to LifeOS and open Settings → Security → Account Management.
- Select Permanently Delete Account.
- Enter your current password.
- Type DELETE exactly to confirm.
- Confirm again in the confirmation dialog.
These steps are designed to prevent accidental deletion. The server requires password verification and the exact confirmation text DELETE before deletion proceeds.
When Deletion Is Allowed
Permanent deletion from Settings succeeds only when your account has no successful paid billing history and is not the last active Super Admin account. If deletion is blocked, LifeOS shows a message in Settings. You may deactivate the account instead or email support@lifeos.vision.
What Is Deleted
When eligible permanent deletion succeeds, LifeOS removes your user account and associated application data from the active database and deletes collected user-owned media files, including:
- Account profile (username, email, hashed password, profile photo references)
- Tasks, recurring tasks, events, habits, habit history, goals, streaks, and Pomodoro stats
- Memories (including hidden vault content) and related settings
- Finance entries (expenses, income, budgets, savings goals)
- Voice library entries and user-owned media files (memory attachments, profile photo, owned wallpapers, voice recordings under your user paths)
- Sync state, sync logs, and sync conflict history
- Per-user settings and preferences
- Signup and privacy consents, age attestation records, optional marketing consent, and privacy request records stored for your account
- Monthly AI usage quota counters (
ai_usage) - Per-user billing rows (subscriptions, invoices, transactions, payment events, and related billing tables) when deletion is allowed
What May Be Retained
- Billing and payment records when your account cannot be deleted (for example, successful paid billing history). In that case the account and its billing rows remain until you deactivate or contact support.
- Super Admin audit log entries (
admin_audit_log) that reference your account — retained for operational accountability and not removed on user delete - Security, request, and AI telemetry logs already emitted to hosting logs or optional monitoring tools — retention depends on operator/infrastructure settings; LifeOS does not enforce a fixed TTL in application code
- Infrastructure backups (database snapshots, logical dumps, or similar disaster-recovery copies) — deleted live data may persist in encrypted backups until those backups expire under operator-configured rotation; backups are not used to restore a deleted end-user account
- Third-party provider records (for example, Razorpay, app stores, email delivery, optional AI or monitoring providers) under their own retention policies
- Aggregated metrics that cannot reasonably identify you
- Records we must retain to comply with applicable law
See the Data Retention & Lifecycle Policy for enforced time limits and lifecycle details.
Deactivate vs Delete
- Deactivate (temporary): Disables sign-in while preserving your data. You can log in later and reactivate.
- Delete (permanent): Irreversibly removes your account and the application data listed above. This action cannot be undone.
Export Before Deletion
Before deleting, you may export available data from Settings → About (CSV expense and income exports), Settings → Privacy (personal-data JSON export), and, if included in your plan, Settings → Backup & Sync (JSON workspace backup).
Request Help
If you cannot access Settings to delete your account, contact support@lifeos.vision with the subject Account Deletion Request and your username. We may require identity verification.
Privacy Policy · Data Retention Policy · Subprocessors · Terms of Service · Refund Policy · Copyright / DMCA · Contact