Data Retention & Deletion Policy

Roomiva · Version 2026-09-06.1 · Effective 6 September 2026

Exactly how long each kind of data is kept, what removes it, and how to erase your account. Every period below is the one the software enforces. The operator ("we") is identified in the Operator details at the end of this document.

1. Retention periods

An automatic job runs every day and applies these limits.

DataKept forWhat removes it
A photo upload that was never finalised into a design24 hoursThe daily job deletes the file, then the record
The original photo of a project you did not save7 days after the design was madeThe daily job deletes the photo; the designs stay
A saved project: its photo, designs, plans and promptsUntil you delete itYou
A project you deleted3 days, during which it can be restored, then erasedThe daily job
Your account, email and profileUntil you delete the accountAccount deletion
Subscription statusUntil you delete the accountAccount deletion
Usage ledger (the designs your plan has been charged for)Until you delete the accountAccount deletion
Store webhook records90 daysThe daily job
Audit events365 daysThe daily job; the link to your account is removed at account deletion
Provider cost recordsKept as a money record; the link to your account is removed at account deletion
Request-replay protection keys7 daysThe daily job
The record that a guest's work was moved into your accountUntil your account is deletedAccount deletion
A signed link to read an image10 minutesExpiry
A signed link to upload an image2 hours (a limit set by our storage provider; the link can write one file, once)Expiry
Server request logsKept by our hosting provider for the period stated in the Subprocessors documentHosting provider
Abuse-monitoring logs at OpenAI, which may contain the photo and the render instruction sent to draw a designUp to 30 days under OpenAI's API data-usage terms, unless a longer period is required by law; an image OpenAI's classifier flags as child sexual abuse material is kept for manual reviewOpenAI
Preferences stored on your deviceUntil you uninstall the appUninstalling

Backups made by our database provider are kept and rotated by that provider; data deleted from the live system is gone from backups on their normal cycle.

2. Deleting one project

From My Designs:

3. Deleting your account

In the app

Settings → Legal & Privacy → Delete account. You type DELETE to confirm. Then:

  1. Your request is recorded immediately, your account is marked for deletion, the app signs you out on this device, and our API refuses any further request from that account — within a minute across all our servers, and at once on the device that asked.
  2. Anything still being generated for you is cancelled.
  3. Every photo and design file in storage is deleted.
  4. Every database record — reports, designs, jobs, briefs, uploads, projects, usage, subscription status, profile — is deleted.
  5. Your authentication account, including your email address, is deleted.
  6. The request is marked complete and the identifier on it is erased.

This runs as a resumable sequence: if a step is interrupted it resumes at the next run, without repeating what was already done. Requesting deletion twice returns the same request; it never starts a second one.

Without the app

Use the public deletion page linked from the app's Legal & Privacy screen and from the store listing. You sign in with the email sign-in link, confirm, and the same process runs.

What deletion does not do

4. Data we keep after deletion

5. Asking us

Any question about retention or deletion, or a deletion request that cannot be made through the app or the public page, goes to the privacy contact in the Operator details. We will verify that the request comes from the account holder.

6. Operator details