# FarmWallet Data Deletion Policy (Draft)

Last updated: 2026-09-04

Important: This draft is a policy starting point and must be confirmed by FarmWallet owner/legal counsel before publication.

## 1. Deletion request channels
Users should be able to request account/data deletion through:
- In-app account deletion flow (recommended for app store compliance)
- Support contact channel (email/web form)

Owner action required:
- Publish official support/deletion contact details.

## 2. Verification
Before deleting data, FarmWallet should verify requestor identity to prevent unauthorized deletions.

## 3. What may be deleted
Subject to legal requirements and operational constraints, deletion may include:
- User profile and authentication linkage
- Company/farm workspace associations
- Uploaded files where legally removable
- Tokens and active sessions

## 4. What may be retained
Certain records may be retained for:
- Legal/regulatory compliance
- Financial/accounting obligations
- Security and fraud prevention
- Audit and dispute resolution

Owner/legal confirmation required:
- Exact retention windows and legal basis.

## 5. Timing
FarmWallet should define and publish target completion windows for deletion requests.

Owner confirmation required:
- Specific SLA (for example, 30 days).

## 6. Third-party processors
Deletion requests may require coordinated removal from:
- PostgreSQL databases
- Cloudflare R2 object storage
- Logging/backups (subject to backup retention cycles)

## 7. App Store / Play compliance
FarmWallet should provide clear deletion instructions and an in-app path when account creation is supported.

## 8. Contact
Official deletion request contact details: To be confirmed by FarmWallet owner.
