Data Deletion Policy

Understanding how your data is handled, retained, and securely destroyed.

What Happens When Data is Deleted?

At 20Bit, we take data privacy and security seriously. When an account or specific data is scheduled for deletion, we follow strict protocols to ensure the information is permanently removed from our active systems.

Data We Delete

  • • Personal Identifiable Information (PII)
  • • Uploaded documents and medical records
  • • Notification histories and device tokens
  • • User-specific analytics identifiers

Data We Retain

  • • Anonymized aggregate analytics
  • • Financial transaction logs (tax compliance)
  • • System logs devoid of personal identifiers
  • • Backups (retained for max 90 days before overwrite)

Legal Obligations & Compliance

In some cases, we may be legally obligated to retain certain information for specified periods (for example, financial laws require keeping invoice records). However, this data is strictly segregated, access-controlled, and not processed for any other purposes.

Data Deletion Journey

Request Received

Day 1

User submits a data deletion request via our support channels or directly within the application settings.

Identity Verification

Day 1 - 3

Our team verifies the identity of the requester to ensure authorized data destruction and prevent malicious account takeovers.

Deletion Started

Day 3 - 7

Automated scripts begin purging personal data from live databases, caching layers, and active storage buckets.

Deletion Completed

Day 30 (Max)

Live systems are cleared. Immutable backups will naturally age out and be overwritten within our 90-day retention cycle.