Your data and deletion

Disconnect one integration, revoke Unyo at the provider, or delete your account entirely. What each control does, what it cannot do, and how to exercise your GDPR, CCPA and LGPD rights.

Cette page n'est pas encore disponible dans votre langue : voici la version anglaise.

Every connection you make to Unyo has an off switch, and every off switch does exactly one well-defined thing. This page tells you which switch to use, what it removes, and — just as importantly — what it leaves behind.

There are three levels, from smallest to largest:

You want to…UseWhat it removes
Stop Unyo using one integrationDisconnect on the Integrations pageUnyo's stored tokens for that integration
Cut Unyo off at the sourceRevoke in the provider's own settingsThe OAuth grant itself, at the provider
Leave entirelyDelete my account in SettingsEverything, across ~80 tables, plus your published sites

Level 1 — Disconnect one integration

Disconnecting is per-integration and instant. Your Gmail connection can go while Drive, Calendar and everything else stays exactly as it is.

  1. Open Integrations from the sidebar.
  2. Find the integration you want to remove.
  3. Click Disconnect.

That's it. Unyo deletes the stored tokens for that integration from its database. From that moment Unyo has no credential for that provider and cannot call its API on your behalf — the agent that depended on it will simply tell you it needs a connection.

Disconnecting Google removes Unyo's keys — it does not revoke the grant at Google.

This is a deliberate design choice, and it's worth understanding.

Unyo uses one OAuth client per provider. Gmail, Drive and Calendar all live under a single Google grant. Google's revoke endpoint kills the whole grant — so if disconnecting Gmail also called revoke, it would silently break your Drive and Calendar connections too.

So a disconnect deletes Unyo's copy of the keys, and leaves the grant alone. If you want the grant gone as well, that's Level 2 below — one extra click, and you're in control of the blast radius instead of us.


Level 2 — Revoke Unyo at the provider

This is the belt-and-braces move: it removes Unyo's authorisation at the provider's own side, from the provider's own settings page. Nothing Unyo does can undo it.

ProviderWhere to revoke
Google (Gmail / Drive / Calendar)myaccount.google.com/permissions
Microsoft (Outlook)account.microsoft.com/privacy/app-access
Meta (Facebook / Instagram)Facebook Settings → Business Integrations
LinkedInlinkedin.com/psettings/permitted-services
Xx.com/settings/connected_apps
SlackWorkspace settings → Installed Apps → Unyo
Notionnotion.so/my-integrations
Trellotrello.com/<your-username>/accountApplications
ShopifyShop admin → Settings → Apps and sales channels

You don't need this step if you're deleting your account

Account deletion revokes at the provider side automatically for every provider that offers a revocation API. Level 2 is for when you're disconnecting a single integration and want the grant gone too.


Level 3 — Delete your account

Deletion is a three-step flow, on purpose. It's irreversible, so it asks twice and then shows you exactly what happened.

  1. Open Settings → Account.
  2. Click Delete my account. A warning screen explains what is about to be removed.
  3. Type DELETE to confirm.
  4. Read the confirmation screen. It lists any provider Unyo could not revoke for you, with a direct link to each one's dashboard.

You are signed out automatically at the end.

What deletion actually does

In order, in one run:

  • Revokes your OAuth tokens at every provider that offers a revocation API — Google (each stored token: Gmail, Drive and Calendar), Meta, X, Slack and Shopify.
  • Takes your published websites offline. Every live <slug>.unyo.site you built with Steve is unpublished before the database purge, so the site returns a 404 rather than outliving your account.
  • Deletes your files from the nine user-scoped storage buckets — Neural Core files, brand logos, chat attachments, deliverables, email attachments, email signatures, offer images, social images, social posts.
  • Purges every row you own across ~80 database tables in a single atomic server-side function — conversations, messages, drafts, Neural Core entries, contacts, automations, credits, everything.
  • Removes your authentication record, then runs a second defensive purge to catch anything a still-open browser tab tried to re-create on its way out.

Our committed deadline is 30 days — in practice it runs in seconds.

Four providers cannot be revoked by us — and we tell you which

Microsoft, LinkedIn, Trello and Notion do not offer a revocation API. Nobody's app can revoke your grant at those four for you.

So Unyo deletes your tokens and then, on the final confirmation screen, hands you a direct link to each of those providers' dashboards. It's a 30-second job and it's the only part of deletion you have to finish yourself. The screen has no close button and an auto-logout countdown, specifically so you actually see the list.

A broken provider can never block your erasure

Every revocation call is wrapped individually. If Google, Meta, X, Slack or Shopify is unreachable at that exact moment, the revoke is recorded as failed — and your deletion continues and completes anyway. Your right to erasure does not depend on somebody else's uptime.


Deleting your Meta data from Facebook or Instagram

You can request deletion of your Meta-sourced data from Facebook or Instagram directly, without opening Unyo — it's the Meta-mandated flow in your Facebook/Instagram app settings.

When you do, Meta calls Unyo's data-deletion endpoint. Unyo verifies the signed request, purges 12 tables synchronously, writes an audit record, and returns a confirmation code you can use to check the status of the request.

This removes your Meta data. It does not delete your Unyo account — use Level 3 for that.


What gets deleted automatically, without you asking

Retention isn't a paragraph in a policy here — it's a job that runs at 03:00 UTC every day.

DataDeleted after
Conversations and their messages90 days since last activity
Conversation folders90 days
Cached emails (the local Gmail/Outlook copy)30 days
Technical tool-call logs7 days
Completed job records7 days
The retention audit trail itself365 days

Anything not on that list — Neural Core entries, your files, your OAuth tokens, your account — is kept until you disconnect or delete. Billing records are kept for as long as French law requires invoices to be retained.

Conversations expire from last activity, not from creation

The 90-day clock resets every time a conversation gets a new message. A thread you use weekly is never purged. A thread you abandoned in March is gone by June.


Your rights under GDPR, CCPA/CPRA and LGPD

Unyo SASU (SIREN 104 459 391, 6 Rue d'Armaillé, 75017 Paris) is the data controller. You can exercise any of the following by emailing privacy@unyo.ai:

  • Access — a copy of the data we hold about you.
  • Rectification — correct anything inaccurate.
  • Erasure — the in-app flow above is the fastest route, but you can ask us instead.
  • Restriction — limit how we process your data.
  • Portability — a machine-readable copy of the data you gave us.
  • Objection — to processing based on legitimate interests.
  • Withdraw consent — at any time, without affecting what happened before.

California residents have the equivalent rights to know, delete, opt out of sale, and not be discriminated against for exercising them. Brazilian residents' LGPD Art. 18 rights go through the same address.

We answer within 30 days, extendable by up to 60 more with notice if the request is complex.

There is no one-click export yet

Data portability (GDPR Art. 20) is an email process today, not a button in the app. Email privacy@unyo.ai and we'll produce your copy within the 30-day window. A self-service export is on the roadmap, and we'd rather tell you that than let you hunt for a feature that isn't there.

If you're not satisfied with how we handle a request, you can lodge a complaint with your national data protection authority. In France that's the CNIL (cnil.fr).


What Unyo doesn't collect

Worth stating plainly, because it shortens the list of things you have to worry about deleting:

  • No device fingerprints.
  • No cross-site tracking.
  • No analytics on your content. Nobody is mining your emails for product metrics.
  • No sale of personal data. Ever, to anyone.

Your Gmail, Drive and Calendar content is never used to train any AI model — every model Unyo routes through runs under a no-training guarantee. The Limited Use commitments Google requires are reproduced word-for-word in our Privacy Policy.

Where your data is processed: France, the EU/EEA, the United States and Canada. Transfers outside the EU/EEA are covered by the EU-US Data Privacy Framework where the provider is certified, and by Standard Contractual Clauses otherwise. The full, versioned list of every subprocessor that can touch your data is published in the Privacy Policy.


Ask an agent

Your agents can't delete your account for you — that's deliberate, it's a control that lives with you and only you. But they can tell you what's there.

What's in my Neural Core about my company? List every entry so I can check what you've remembered.

Delete the Neural Core entry about my old pricing — it's out of date.

Deleting a Neural Core entry is itself a confirmation-gated action: the agent proposes, you approve. And once an entry is deleted it stays deleted — a tombstone tells the extractor never to learn that fact again.


FAQ

Does disconnecting Gmail also revoke Unyo at Google?

No, and that's intentional. Unyo has one Google grant covering Gmail, Drive and Calendar together — revoking it when you disconnect Gmail would silently break your Drive and Calendar connections too. Disconnect removes Unyo's stored tokens, so Unyo can no longer call Gmail. If you also want the grant gone at Google's side, take 20 seconds at myaccount.google.com/permissions. Account deletion, on the other hand, does revoke the whole grant automatically.

Can I get my account back after deleting it?

No. Deletion is atomic and irreversible — the rows are gone, your files are gone, your published sites are offline, and your authentication record is removed. That's why the flow makes you type DELETE. Export anything you want to keep first, by emailing privacy@unyo.ai.

What happens to a website I published with Steve if I delete my account?

It goes offline. Before touching the database, the deletion flow reads every site you have live and unpublishes each one, so <slug>.unyo.site starts returning a 404. Nothing you published survives your account.

How do I get a copy of my data?

Email privacy@unyo.ai and ask. We respond within 30 days. There is no self-service export button in the app yet — it's on the roadmap, and until it ships the email process is the real answer.

Are my old conversations deleted automatically?

Yes. A job runs at 03:00 UTC daily and deletes conversations 90 days after their last activity, along with all their messages and attachments. Cached emails go at 30 days, technical logs at 7. You don't have to ask, and you can't be charged for storage you forgot about.

If Google is down when I delete my account, does deletion fail?

No. Each revocation call is wrapped on its own, and the purge runs regardless of whether any provider is reachable. A failed revoke is recorded and reported to you on the confirmation screen — it never blocks your erasure.


Troubleshooting

The Disconnect button doesn't seem to do anything. Refresh the Integrations page. If the integration still shows as connected, disconnect and reconnect once — and check the provider's own permissions page (Level 2) to confirm what's actually granted.

I deleted my account but the provider still lists Unyo. Almost certainly one of the four that has no revocation API — Microsoft, LinkedIn, Trello or Notion. The confirmation screen listed them with links; use the Level 2 table above to finish the job. The grant is inert either way: Unyo no longer holds any token for it.

I want to delete my account but I'm mid-billing-cycle. Deletion removes your account and your credit balance. Credits are not refundable on deletion, so spend or export first. Billing records themselves are retained for the period French law requires.

I emailed privacy@unyo.ai and haven't heard back. Our SLA is 30 days, and complex requests can be extended by up to 60 more with notice to you. If you've passed that window, you can escalate to the CNIL.