User deletion
To prioritize user privacy and comply with data protection regulations, a specific process is followed for deleting user accounts and anonymizing their data.
For web-based deletion requests, ioki Platform can add a captcha step before the verification flow continues.
It is not possible to start the deletion process for
- Users with active rides
- Users with outstanding payments
In any other case, the steps involved are listed in the following sections.
Clearing user activity
- We delete all request tokens associated with the user account.
- All actor roles assigned to the user are removed.
- Firebase debug records linked to the account are deleted.
- All devices associated with the user account are deleted.
- SMS messages in which the user or their phone number participated are deleted.
- All notifications sent to the user are deleted.
Managing payment methods
- We delete Stripe customer data stored for the user.
- We disable the user’s Logpay customer.
- Unused payment methods and their associated changesets are deleted.
Handling service credits and personal discounts
- We delete all unused service credits and their changesets.
- Unused personal discounts and their changesets are also deleted.
User data anonymization
- The user’s phone number, email address, unverified email address, stored email-address data, and notes are removed.
- We hard-lock and archive the user account to prevent further activity.
- If the user has not made any payments, the first name, last name, and referral code are anonymized.
- If the user has made payments, this anonymization step is skipped.
Firebase
If Firebase passenger data exists for the user, ioki Platform deletes that Firebase passenger resource.
Changeset cleanup
We delete the changesets of the user account and of related records that are removed during the deletion process.
Note that specific entities, such as redeemed promo codes, promo code redemption attempts, service violations, rides, account deletion requests, referred users, receipts, tickets, Stripe charges, Logpay payments, ride payment recoveries, first product information, and referring user associations are not deleted as part of the user account deletion process.