Current retention schedule
| Data category | Normal retention | Reason |
|---|---|---|
| Authentication sessions | Up to 24 hours unless revoked earlier | Secure account access. |
| Account profile, role, time zone, and preferences | While the account is active; then until a verified deletion request is completed | Operate and personalize the workspace. |
| Completed signup source, ASN, country, and network-risk signals | Exact signup IP for up to 365 days; derived signup attribution while the account remains active | Investigate automated registrations, fraud, and abuse. |
| Uncompleted signup-attribution attempts | 30 days | Rate limiting and short-term abuse investigation. |
| Group requests, approvals, workspace assignments, and monitoring prompts | While active and until account deletion, removal, or loss of a lawful monitoring purpose | Provide customer-configured monitoring and preserve access decisions. |
| Captured source posts and listing metadata | While at least one authorized workspace requires the source record; removed or de-identified when no authorized purpose remains | Deduplicated collection and delivery of identified results. |
| Matched results visible to a workspace | While the account and applicable prompt/group assignment remain active, or until deletion is requested | Provide result history. |
| Completed or skipped AI-processing jobs | 30 days by default | Reliability review and queue maintenance. |
| Dead AI-processing jobs | At least 90 days before pruning | Incident investigation. |
| Successful notification-delivery records | 90 days | Delivery history and usage accounting. |
| Dead or permanently failed notification records | 30 days | Troubleshooting and incident review. |
| Processed Stripe webhook event records | 90 days | Idempotency and billing-event audit. |
| Billing, invoice, tax, fraud, and transaction records | As required by applicable accounting, tax, payment, and anti-fraud law | Legal and financial obligations. |
| PM2 application logs | Rotated at 5 MB with seven retained archives under the production configuration | Operational diagnostics without unbounded disk growth. |
| Watcher diagnostic snapshots | The 20 newest snapshots | Diagnose Facebook layout and extraction changes. |
| Analytics consent preference | Until changed or local browser storage is cleared | Remember the visitor’s choice. |
| Website contact inquiries | While the inquiry is active and then only as reasonably needed for sales, support, dispute, or legal records | Respond to the sender and maintain business records. |
Configured periods may be shortened when data is no longer needed. They may be extended only for a documented legal hold, security investigation, unresolved dispute, or mandatory legal obligation.
Account deletion
Use the account-deletion page to start a verified request. We acknowledge requests through the account email, verify identity where necessary, cancel ongoing processing for that workspace, and delete or de-identify covered data unless an exception applies.
Deletion from active systems is targeted within 30 days after verification. Provider systems and securely isolated backups may take additional time to cycle out according to their retention schedules, while remaining unavailable for ordinary use.
Legal and security exceptions
We may retain a limited record when needed to comply with law, establish or defend claims, prevent fraud, enforce a valid restriction, complete a financial audit, or protect users. Retained data is restricted to that purpose and is not returned to normal product use.
Questions or corrections
If a stated period does not match your account behavior or you need a retention exception reviewed, email support@narrativefield.com.
