Account & Data Deletion
You are in control of your data. You can permanently delete your HealthLens account and every record associated with it from inside the app, or by emailing us if the in-app option is unavailable to you.
1. What "deletion" means here
When you confirm a deletion, we initiate a hard-delete that removes the following from our production systems within 30 days:
- your account record (email, display name, sub-identifier);
- every report image, PDF, and OCR-extracted text we hold for you;
- every AI-generated summary, chat message, symptom assessment, and pill-identification result;
- every health-profile field, family profile and caregiver share you created;
- every medication-reminder entry and dose-taken history;
- every authenticated session and refresh token.
Encrypted backups age out of our backup system within an additional 30 days. After 60 days from the deletion confirmation, no copy of your personal data remains in our systems, except where a specific statutory retention obligation applies — for example, an audit-log entry of the deletion request itself, retained for compliance reasons in an aggregated, non-identifying form.
2. In-app deletion (preferred)
- Open the HealthLens app and sign in.
- Tap the profile icon (top-right) and choose Settings.
- Open Account.
- Tap Delete account.
- Read the confirmation screen carefully. Type the confirmation phrase shown on screen.
- Tap Delete permanently.
The app calls our server-side delete-account function, which removes your records under transactional control and signs you out. The app then wipes its local database (Hive boxes), the secure storage entries (auth tokens, active-profile pointer), and any cached files in the app's sandbox. You will be returned to the sign-in screen.
3. Email-based deletion (fallback)
If you cannot access the app (for example, you have lost the device or you have already uninstalled), you may request deletion by email.
- Send an email to contact@fcappstudio.tech.
- Use the subject line
[Delete Account]. - Send the email from the same email address you used to sign in to the app (the address linked to your Google or Apple account).
- In the body, include: "I would like to delete my HealthLens account and all associated data."
We will:
- acknowledge your request within 72 hours;
- ask one or two verification questions if your sign-in email does not match the sender (this protects against a malicious deletion request from someone impersonating you);
- complete the deletion within 30 calendar days of verification and confirm by email when it is done.
4. Partial deletion
You don't have to delete everything to delete some things. Inside the app you can:
- delete an individual report from Reports → tap a report → ⋯ → Delete;
- delete an AI Health Hub session from AI Hub → Sessions → swipe left → Delete;
- delete a family profile from Settings → Family → tap profile → Delete;
- revoke a caregiver share from Settings → Family → Sharing;
- delete a medication reminder from Pills → tap medicine → Delete.
Each of these performs an immediate hard-delete on the server and propagates to your other signed-in devices on next sync.
5. Data export before deletion
If you want a copy of your data before you delete it, use Settings → Data export in the app. We generate a downloadable archive containing:
- your profile fields as JSON;
- each report's OCR text, structured fields and AI summary as JSON;
- each report's original image or PDF;
- your AI Health Hub conversation history as JSON;
- your medication-reminder list and dose-taken history as JSON.
The archive is yours to keep. Once deletion is complete, we cannot restore the data even if you ask us to.
6. Cancelling a deletion request
For India users, the DPDP Act 2023 supports a deletion grace window. If you change your mind during the grace period before the deletion is finalised, signing back into the app within that window will cancel the pending deletion and restore your account. Once the 30-day grace period has elapsed, deletion is irreversible.
7. What is not deleted
- Encrypted backups persist for up to 30 days after the deletion is finalised, then are destroyed.
- Aggregate, de-identified analytics (such as a daily count of reports processed by the service) — these cannot be linked back to you and are not deleted on request.
- Records we are legally required to keep — for example, if you have raised a billing dispute or made a legal claim, we may retain a minimum copy of records relevant to that matter for as long as the law requires.
- Information held by third parties you shared with — if you exported a report and emailed it to your doctor, deleting your account does not remove the copy your doctor has.
- Data on caregivers' devices — once a caregiver has viewed a shared record, a copy may exist in their device cache until they delete it.
8. Children's accounts
If a parent or legal guardian created the account on behalf of a child, the parent may use the same in-app or email-based deletion process to delete the account.
9. Questions
For any question about deletion, email contact@fcappstudio.tech with the subject [Privacy].