Legal
Data deletion
If you want your data deleted, one message is enough. We do not ask for a reason and we do not try to keep you.
1. The quickest way
Send a message to office@inowara.com with the subject “Data deletion” and include:
- the address of the site in the account;
- the email address the account was opened with.
Send it from the account email so we know the request is yours. If that is not possible, we will get in touch to confirm your identity another way before deleting anything.
You can also send the request from the account settings in the app, while you still have access.
2. What gets deleted
On an account deletion request we delete:
- account data — username, email, settings;
- all fetched pages of your site and the knowledge base derived from them;
- the topic plan, generated texts, landing pages, images and version history;
- the record of publishes and deliveries to connected channels;
- every stored secret — WordPress application password, Webflow and Ghost tokens, webhook secret, API keys and access tokens for Google, Meta and TikTok;
- support correspondence, unless it is needed for an ongoing dispute.
Content already published on your site and your channels stays with you — it is your property and we do not touch it. If you want us to remove that too, say so in the request while the connection to the site is still active.
3. Disconnecting Google, Meta and TikTok
You can disconnect linked accounts yourself, at any time and independently of deleting your account:
- In Inowara — delete the integration in the site settings. We then stop retrieving data or publishing, and the stored token is deleted.
- At Google — revoke access at myaccount.google.com/permissions.
- At Meta — in your Facebook account settings, under Apps and websites, remove Inowara.
- At TikTok — in account settings, under Security and permissions, remove app access.
Our recommendation: do both — delete the integration with us and revoke access at the platform.
4. Timelines
- Acknowledgement of the request — within 3 working days.
- Deletion from production — at the latest 30 days from a confirmed request. Those 30 days exist so the account can be restored if you change your mind; say so in the request if you want deletion immediately, without that window.
- Deletion from backups — on the normal rotation cycle, at the latest 90 days after deletion from production.
- Tokens and secrets — deleted immediately, with no waiting period.
5. What remains and why
After deletion we keep only what we must:
- Invoices and billing data — 10 years, as Serbian tax law requires. This data is not used for anything else.
- A record of the deletion request itself — so we can prove we carried it out.
Details of retention periods and your rights are in the Privacy policy. If you believe we handled this incorrectly, you have the right to complain to the Commissioner for Information of Public Importance and Personal Data Protection.