This page explains how to delete your account and every piece of data associated with it, what is removed immediately, and what takes longer. It is maintained to meet the Google Play Store and Apple App Store data-deletion requirements.
Most of your data is only ever on your phone. Your analysis results, personas and behavioural signals live in an encrypted database on your device and have no server copy, so deleting in the app removes them outright. Two things do leave your device and are covered below: the contents of export files you select for analysis, and your account identity plus per-category scores if you have not opted out of analytics sync.
How to Delete Your Account and All Data
Option 1 — Delete inside the app (instant)
This is the fastest route and removes all on-device data immediately.
- Open the Ôwn app.
- Tap the Settings tab in the bottom navigation bar.
- Stay on the Account tab, which opens first, and scroll to Data Management.
- Tap Delete Account & Data.
- Confirm when prompted.
This deletes the encrypted vault and its contents, clears the stored keys, revokes the app's Google access tokens, and removes your analytics records from our backend. No further action is required.
Option 2 — Request deletion by email
If you cannot access the app, or you want written confirmation that server-side data is gone:
- Email: hello@anappidea.llc
- Subject:
Data Deletion Request – Ôwn - Include: the email address linked to the account you signed in with
We will process the request and send confirmation within 5 business days.
Option 3 — Delete analytics data only
Category analytics sync is opt-out, not opt-in: it is on unless you turned it off, so this applies to you unless you opted out. To remove just those records while keeping the app installed:
- In-app: Settings > Account > Delete Analytics Data
- By email: hello@anappidea.llc with subject
Analytics Deletion Request – Ôwn
What Is Deleted, and When
| Data | Where it lives | Deleted when | Notes |
|---|---|---|---|
| Analysis results, personas, behavioural signals | Your device, in AES-256 encrypted SQLite via SQLCipher 4 | Immediately, on in-app delete or uninstall | No server copy exists |
| Google and Apple sign-in tokens | Your device, in the iOS Keychain or Android Keystore | On in-app delete, uninstall, or manual revoke | Revoke separately at myaccount.google.com/permissions |
| Account identity and per-category scores | Our backend database (Railway PostgreSQL, US) | Within 30 days of a confirmed request | Includes the account identifier, email address and display name |
| AI request contents sent for analysis | Our backend proxy, then Google Gemini | Not persisted by us after the request completes | Google states prompts may be held up to 55 days for abuse monitoring, and are not used to train models |
| Backend operational logs | Railway platform log stream, metadata only | Governed by Railway's log-retention policy | Tokens, API keys and request bodies are redacted before emission |
What never reaches a server at all. Calendar event titles and locations, photo and video content, photo coordinates, and contact names, email addresses and phone numbers are reduced on your device to counts, time buckets and distances before anything is sent. The underlying text and coordinates are neither transmitted nor stored, so there is nothing of them to delete anywhere but your phone.
Revoking Account Access
Revoking access is separate from deleting data. It stops the app reaching your account but does not remove anything already on your device, so use Option 1 or 2 above for that.
- Google: go to myaccount.google.com/permissions, find Payback, and choose Remove Access.
- Apple: on your device, open Settings, tap your name, then Sign in with Apple, select Payback, and choose Stop using Apple ID.
Contact
- Email: hello@anappidea.llc
- Developer: An App Idea LLC
- Privacy Policy: anappidea.llc/legal/payback/privacy
- Response time: 5 business days