Skip to content
Docs / Privacy / What is kept, and for how long
Your account
Privacy

What is kept, and for how long

Everything the Hub stores has a deletion rule. The record chain is the one exception, and the reason is on the record trail page.

WhatStoredFor how long
Accounte-mail address, time of registration, a hashed token per signed-in deviceuntil you erase it; a device token 30 days; unconfirmed addresses 7 days
Profilewhat you add: name, organisation, role, line, biography, place, contact, website, languages, pictureuntil you change or erase it
Journalyour entries, public or privateuntil you delete them or the account
Filesthe files you upload, with title and public flaguntil you delete them; deleted files leave the backups after 14 days
Proposalsname, title, area, summary, links, the record trail you attachan unconfirmed proposal 7 days; a published module while it is in the catalogue
Applicationsthe text you write to become a contributor24 months after the decision
Requests and reportsname, address, organisation, kind, text180 days
Invitationsthe address you invite and your messageunanswered ones 180 days
Servicesname, kind, the address to check, resultsuntil you remove them
Sign-in linksa hash of the link, its purpose and expiry20 minutes for sign-in, one hour for a proposal confirmation, then purged
Request logIP address, path, status, duration, account number when signed in14 days
Record chainaccount numbers, hashes, kinds, short textspermanently
Backupsencrypted copies of the database and the sitekept without a fixed limit for the time being; the statement says so

What stays in your browser, and only there: your projects, the board's record trail, your theme and your sign-in token.

Dormant accounts

No sign-in for 24 months brings a notice by mail; three months later without a sign-in the account is erased like a self-erasure, with the attribution set on each module.

Last updated 2026-09-11