When a member deletes their account
Access ends at once, the data stays visible until the contract ends, and a nightly run anonymises the profile after that.
A member can request the deletion of their account themselves. It is reviewed and carried out at selfdesk, not in your space. You do not have to do anything, but you see the consequences in your member list, so the sequence is worth knowing.
The sequence
- The person files the request and confirms it through a link in their email. Without that second confirmation nothing happens. It is the protection against someone having a stranger's account deleted.
- Up to 14 days lie between confirmation and processing. Every request is reviewed by a human, nothing runs through automatically.
- On processing, running contracts end under the same rule as a self-cancelled one, at the end of the current month. Credentials and sessions are deleted immediately. From here on the person cannot sign in and cannot open a door.
- Name, email and address stay visible until the contract ends, so that you can manage the running contract, issue the last invoice and recognise someone at the door.
- After the contract ends, a nightly run removes that data. Only then does the profile drop out of your member list.
What stays
- Invoices freeze name and address at the moment they were issued, so old invoices still carry the name.
- Invoices, payments, bookings and kiosk purchases are kept for eight years. See What is stored, and for how long.
- In your list such a member carries the mark Account deleted.
- Door access grants and door log rows remain as a security record. If you remove the member from the space yourself, their door log rows are deleted instead.
- You never see why somebody cancelled. That field is not stored.