Data Retention & Deletion Policy
Roomiva · Version 2026-09-06.1 · Effective 6 September 2026
Exactly how long each kind of data is kept, what removes it, and how to erase your account. Every period below is the one the software enforces. The operator ("we") is identified in the Operator details at the end of this document.
1. Retention periods
An automatic job runs every day and applies these limits.
| Data | Kept for | What removes it |
|---|---|---|
| A photo upload that was never finalised into a design | 24 hours | The daily job deletes the file, then the record |
| The original photo of a project you did not save | 7 days after the design was made | The daily job deletes the photo; the designs stay |
| A saved project: its photo, designs, plans and prompts | Until you delete it | You |
| A project you deleted | 3 days, during which it can be restored, then erased | The daily job |
| Your account, email and profile | Until you delete the account | Account deletion |
| Subscription status | Until you delete the account | Account deletion |
| Usage ledger (the designs your plan has been charged for) | Until you delete the account | Account deletion |
| Store webhook records | 90 days | The daily job |
| Audit events | 365 days | The daily job; the link to your account is removed at account deletion |
| Provider cost records | Kept as a money record; the link to your account is removed at account deletion | — |
| Request-replay protection keys | 7 days | The daily job |
| The record that a guest's work was moved into your account | Until your account is deleted | Account deletion |
| A signed link to read an image | 10 minutes | Expiry |
| A signed link to upload an image | 2 hours (a limit set by our storage provider; the link can write one file, once) | Expiry |
| Server request logs | Kept by our hosting provider for the period stated in the Subprocessors document | Hosting provider |
| Abuse-monitoring logs at OpenAI, which may contain the photo and the render instruction sent to draw a design | Up to 30 days under OpenAI's API data-usage terms, unless a longer period is required by law; an image OpenAI's classifier flags as child sexual abuse material is kept for manual review | OpenAI |
| Preferences stored on your device | Until you uninstall the app | Uninstalling |
Backups made by our database provider are kept and rotated by that provider; data deleted from the live system is gone from backups on their normal cycle.
2. Deleting one project
From My Designs:
- Archive hides a project. Nothing is deleted.
- Delete removes it from your list and cancels any design still being made for it. For 3 days it can be restored; then it is permanently erased — photos and designs first, then the records.
- Delete permanently skips the 3 days.
3. Deleting your account
In the app
Settings → Legal & Privacy → Delete account. You type DELETE to confirm. Then:
- Your request is recorded immediately, your account is marked for deletion, the app signs you out on this device, and our API refuses any further request from that account — within a minute across all our servers, and at once on the device that asked.
- Anything still being generated for you is cancelled.
- Every photo and design file in storage is deleted.
- Every database record — reports, designs, jobs, briefs, uploads, projects, usage, subscription status, profile — is deleted.
- Your authentication account, including your email address, is deleted.
- The request is marked complete and the identifier on it is erased.
This runs as a resumable sequence: if a step is interrupted it resumes at the next run, without repeating what was already done. Requesting deletion twice returns the same request; it never starts a second one.
Without the app
Use the public deletion page linked from the app's Legal & Privacy screen and from the store listing. You sign in with the email sign-in link, confirm, and the same process runs.
What deletion does not do
- It does not cancel an Apple or Google subscription. Cancel that in your store account before deleting; the app's *Manage subscription* button opens the right page. A subscription left running after deletion continues to be charged by the store until you cancel it there.
- It does not remove designs you saved to your own photo library or shared elsewhere; those copies are yours to delete.
- It does not remove the records our processors keep under their own terms (for example a store's purchase history, or OpenAI's abuse-monitoring logs, which expire on their own within the period in §1).
4. Data we keep after deletion
- Audit events lose their link to your account and expire after 365 days.
- Provider cost records lose their link to your account and are kept as financial records.
- Store webhook records expire after 90 days.
- Records we are required by law to keep, for the period the law requires.
5. Asking us
Any question about retention or deletion, or a deletion request that cannot be made through the app or the public page, goes to the privacy contact in the Operator details. We will verify that the request comes from the account holder.
6. Operator details
- Operator: iClick Solutions Inc.
- Registration: State of Delaware, Secretary of State, Division of Corporations — File Number 6657647; filed March 7, 2022.
- Address: 651 N Broad St, Suite 201, Middletown, Delaware 19709, United States
- Country: United States
- Governing law and courts: The laws of the State of Delaware, United States; the state and federal courts located in Delaware
- Support: support@roomivaapp.com
- Privacy contact: support@roomivaapp.com
- Grievance officer / DPO: Viren Makkar, vmakkar@iclicksolutions.us
- EU / UK representative: Viren Makkar, vmakkar@iclicksolutions.us (for the EU and the UK)
- Database and storage region (Supabase): us-east-1 (North Virginia)
- API hosting: Render Services, Inc. — Frankfurt (EU) region, for the API, the worker and the retention job (render.yaml)
- Server log retention: Server request logs are held by Render Services, Inc. in its log store for the retention period of the Render workspace tier in use (7 days on the Hobby tier, 14 days on Pro), then deleted. No log stream to any other provider is configured.
- Sign-in email delivery: Custom SMTP via Resend (Resend, Inc.), Tokyo (ap-northeast-1) sending region; sender no-reply@send.roomivaapp.com
- AI provider terms and data use (Google Gemini API; OpenAI API): Google Gemini API, paid tier (billing enabled): under the Gemini API Additional Terms for paid services, Google does not use prompts or responses to improve its products. OpenAI API, standard paid access: under the OpenAI API data-usage terms, content sent to the API is not used to train or improve OpenAI models unless the customer opts in, which we have not; abuse-monitoring logs are retained for up to 30 days.
- Data-processing agreements: OpenAI: Data Processing Addendum executed by iClick Solutions Inc. on 2026-09-20 (DocuSign envelope E6FAD23DD4D288A181516FF270372C69); the countersigned copy is held by the operator. Supabase, Render, Resend, Google (Gemini API) and RevenueCat: the data-processing terms of each form part of the agreement accepted when the account was created and require no separate signature.