DATA / BETA
Data Retention and Deletion Policy
Customers must keep their own source and exportable site copies. Platform backups are for disaster recovery, not a permanent customer archive.
Effective 2026-08-16 · Applies to the Small Site paid beta at rw0.io.
While active
We retain account records, current and prior immutable releases, deployment metadata, billing references, audit events, and support records while needed to provide and secure the Service. The dashboard exposes available releases and rollback controls, but no retention period or number of recoverable versions is guaranteed during beta.
After cancellation or closure
After paid service ends, publishing is blocked. Sites and account data may remain available for up to 30 days to support export, billing reconciliation, security review, or reactivation, but we may suspend public serving sooner for security, abuse, law, or provider requirements. After that window, primary copies are eligible for deletion or de-identification without further notice.
Backups
Encrypted operational backups currently use hourly, daily, weekly, and monthly retention, with monthly recovery points retained for up to six months. Deleted information can therefore remain in encrypted, access-restricted backups until those recovery points expire or are pruned. Backups are restored only for platform disaster recovery, not individual discovery requests unless legally required.
Acquisition and product analytics
Raw first-party landing and public ZIP-check analytics events are retained for no more than 90 days. They use a one-way hash of a random per-tab or per-form identifier and exclude prompt text, uploaded ZIP contents, email addresses, raw IP addresses, raw user agents, full referrer URLs, and advertising identifiers. A submitted founding-beta enrollment or waitlist request separately retains the requested email and bounded first-touch source, medium, campaign, and creative labels. Pending or declined requests are eligible for deletion after 90 days; converted-request attribution and bounded account activation events follow the associated account retention period.
Legal and security holds
We may retain limited data longer for invoices, tax, fraud, abuse, disputes, security incidents, legal claims, or compliance obligations. We may retain de-identified aggregate operational measurements that no longer identify a customer.
Requests
Request export or deletion at support@rw0.io before the 30-day window ends. We may verify account control. Deletion cannot be reversed after primary data and retained backups expire.