Concierge legal
Data Retention Notice
Concierge keeps information according to its purpose, account status, customer controls, legal obligations, security needs, and recovery lifecycle.
Last updated: August 19, 2026
Not every record has the same lifecycle. A customer may delete some data earlier through product controls or a verified privacy request. A documented legal, security, fraud, dispute, or audit hold may require longer retention.
Current category-level schedule
| Category | Current retention approach |
|---|---|
| Account and team profile | For the active account relationship and then until account-deletion processing, dispute handling, or legal requirements are complete. |
| Authentication sessions | Until expiration, sign-out, credential reset, account deletion, or security revocation. Limited authentication evidence may remain in security logs. |
| Site configuration, sources, Pages, and crawler findings | While the site or account is active and until deleted by an authorized user or through controlled site-deletion processing. |
| Conversations, contacts, visitor activity, and customer-growth records | While needed by the customer for the service, subject to customer controls and verified visitor or account requests. Customers should not treat Concierge as a permanent system of record. |
| Provider connections and OAuth tokens | Until disconnect, uninstall, account/site deletion, token expiration, provider revocation, or a security-driven revocation. |
| Voice and notification usage records | Operational records follow the account and billing lifecycle; conversation-derived text follows the conversation lifecycle. |
| Optional public-site analytics | Browser attribution and deduplication values normally last for the browser session. Aggregated event records are kept only as needed for performance analysis and operational evidence. |
| Public website previews | The public access token expires after 24 hours. The submitted website, contact identity, scan result, source, conversion match, and consent evidence are retained for up to 90 days by default, unless a shorter privacy request or a documented legal or security need applies. |
| Billing, transaction, tax, and refund records | For the account relationship and afterward for the period required by tax, accounting, payment, fraud, dispute, and legal obligations. |
| Security, abuse, audit, and incident records | For investigation, prevention, enforcement, and legal defense according to severity and continuing risk. |
| Recovery backups | Deleted information may remain in encrypted recovery backups until the applicable provider backup cycle expires. Backups are isolated from ordinary product use and are not restored solely to recover deleted records. |
Deletion does not always mean immediate physical erasure
Deletion may involve deactivation, removal from active systems, anonymization, provider revocation, queued site-data fulfillment, and expiration from recovery backups. We preserve only the minimum evidence needed to record that a verified request was handled.
Request a specific disposition
Use Privacy Choices to ask about a record, request deletion, or challenge retention. The response will identify completed scope and any limited information retained where applicable.