Data Retention Policy
We keep your data as long as it's useful to you — and no longer. Here's exactly how long we keep different types of data and how to delete it.
Retention at a Glance
| Data Type | Kept While Active | After Deletion Request |
|---|---|---|
| Account data (name, email) | While account is active | Deleted within 30 days |
| Uploaded documents | While account is active | Removed from storage within 7 days |
| Notes & observations | While account is active | Deleted within 30 days |
| Database backups | Ongoing (for disaster recovery) | Purged within 90 days |
| Audit logs | Ongoing | Retained 1 year (security requirement) |
Standard Retention (Active Account)
Your data is retained for as long as your account is active. We believe your care records should be available as long as you need them — we don't delete data without your request.
After you submit a deletion request, we retain your data for 30 days as a grace period (in case you change your mind), then permanently delete it.
Documents
Documents (PDFs, images, text files) are stored in encrypted object storage. When you request deletion:
- Document files are removed from active storage within 7 days
- AI-generated summaries are deleted along with the source documents
- Copies may persist in backups for up to 90 days (see below)
Backups
We maintain encrypted database backups for disaster recovery. These backups cannot be used to restore individual records — they're snapshots of the entire database.
After your account data is deleted, residual copies in backup snapshots will be purged within 90 days as those backup cycles rotate out.
Audit Logs
We retain security and access audit logs for 1 year. These logs record events like logins, document uploads, and data access — they don't contain the content of your documents. We retain these to detect and investigate security incidents.
How to Request Deletion
You have two options:
Option 1: In-App
Go to Account Settings → Delete My Data in the app. This will initiate immediate deletion of your active data.
Option 2: Email
Email privacy@steadywith.com with the subject "Delete My Data" and include your account email address.
We will confirm completion of deletion within 30 days of your request.
Questions?
Contact us at privacy@steadywith.com