Legal instrument
ACCOUNT DELETION & RIGHT TO BE FORGOTTEN PROTOCOL
Last Updated: June 29, 2026
ACCOUNT DELETION & RIGHT TO BE FORGOTTEN PROTOCOL
Last Updated: June 29, 2026
This protocol governs how Zaliplay honors deletion requests under GDPR, CCPA, and comparable global privacy frameworks. Initiating deletion begins a timed, automated purge sequence designed to erase personal data while preserving legally required financial records.
SECTION 1: HOW TO REQUEST DELETION
- 1.1
IN-APP REQUEST: Authenticated users may submit a deletion request from account settings or by contacting privacy@zaliplay.com from their registered email or verified phone number.
- 1.2
VERIFICATION: We may require re-authentication or a one-time verification code before marking `account_deletion_requested` on your profile to prevent unauthorized erasure.
- 1.3
COOLING-OFF WINDOW: You may cancel a pending deletion within seventy-two (72) hours of submission by signing in and selecting "Cancel Deletion Request".
SECTION 2: AUTOMATED 30-DAY COMPLETE DATA PURGE SEQUENCE
Upon confirmed deletion, the following automated timeline applies:
- 2.1
DAY 0 — FLAG & LOCK: Profile is deactivated. `account_deletion_requested` is set true and `deletion_requested_at` is stamped. Public content is hidden; live streams terminate; API tokens revoke.
- 2.2
DAYS 1–29 — CASCADE ERASURE: Scheduled jobs delete avatar media, display names, refresh tokens, device attestations, engagement metrics, algorithmic lever preferences, non-settled draft uploads, and marketing telemetry tied to your user ID.
- 2.3
DAY 30 — FINAL PURGE: Remaining personal identifiers (email, phone, username, tax registration number, biometric identity hash) are irreversibly anonymized or deleted. The user row is removed or replaced with a non-identifying tombstone UUID.
SECTION 3: IMMUTABLE FINANCIAL LEDGER EXCLUSIONS
Certain records cannot be deleted without breaking accounting, tax, and anti-fraud obligations.
- 3.1
WITHDRAWAL & PAYMENT LEDGERS: Completed withdrawal requests, wallet ledger entries, coin ledger transactions, Stripe webhook idempotency records, and platform fee allocations are retained in pseudonymized form for seven (7) years or as required by applicable law.
- 3.2
DISPUTE & CHARGEBACK HOLD: If an open escrow hold, chargeback, or law-enforcement packet references your account, deletion pauses until the matter resolves, then resumes at the next purge cycle.
- 3.3
AGGREGATED ANALYTICS: Anonymized, non-re-identifiable aggregates (e.g., country-level RPM statistics) may persist indefinitely.
SECTION 4: POST-DELETION EFFECTS
- 4.1
USERNAME RECYCLING: Deleted usernames enter a ninety (90) day quarantine before becoming available to new registrants.
- 4.2
NO RECOVERY: After Day 30, account restoration is impossible. You must register a new account if you return to the Platform.