Jansevt Labs

Account & Data Deletion — Re:Fill

Last updated: 2026-09-24

This page explains how to delete your Re:Fill account and the data linked to it.

Re:Fill is operated by Jansevt Labs.

Note: Most of your data stays on your device and never reaches an account. You have a cloud account when you connect your Apple or Google account in Re:Fill. The steps below delete that account and its cloud data.

Option 1 — Delete inside the app (fastest)

  1. Open Re:Fill.
  1. Go to Settings → Account.
  1. Tap Delete Account and confirm.

This starts the live account-deletion sequence and signs you out after it succeeds. A failed step may require a retry; it does not undo records already deleted. It does not make every provider recovery copy or log disappear instantly; the limits and fixed expiry windows are explained below.

On iOS, a temporary account-linked protection record can let your deletion request continue if an Apple connection-revocation notification arrives first and restrict other requests from recreating account records during deletion. It holds identifiers and limited authentication/protection times, not medication or backup contents. The limited permission to continue deletion lasts 2 hours from the setting or renewal of that deletion-request protection; an Apple account-change notification does not itself extend it. Record retention is separate: a protection-only record becomes eligible for asynchronous TTL deletion at that two-hour boundary, while an Apple access restriction or unresolved permanent-deletion safeguard follows the account-security criteria below. Waiting for record deletion does not keep expired permission valid. Firestore recovery copies follow the separate periods below. This protection does not introduce an extra consent screen.

Option 2 — Request by email

If you cannot use the app, email support@jansevtlabs.com from (or naming) the address you signed in with, using the subject “Delete my account.” We verify the request and then delete your account and cloud data.

Withdrawing Sign in with Apple and deleting the Apple Account

We verify the source and contents of Apple's account-change notifications before handling them as follows.

Notification delivery and processing may be delayed. Do not rely on Apple Account deletion alone for immediate Re:Fill erasure; use in-app deletion or the email-request route when you need to request deletion directly. This server processing does not delete on-device data or cancel the store purchase itself. Purchase recovery after permanent deletion of the Apple Account depends on Apple's rules and is not guaranteed by Re:Fill.

Use methods 1 or 2 above to request deletion directly.

Purchasing and restoring “Remove Ads” do not require a Re:Fill account. Account deletion removes legacy cloud purchase records linked to that account; it does not erase the device's current verified store entitlement. Restore on the same store using the store account that owns the purchase (or eligible Apple Family Sharing). Re:Fill accounts and medication backups do not share purchases between Apple and Google. Older app versions may still create account-linked purchase records, which follow the retention rules below.

What gets deleted

After Firebase Authentication reports an individual account deletion, the server re‑checks that account's backup folder and requests deletion of all remaining generations, including earlier versions, only after confirming the account is absent. If a backup or its metadata file finishes uploading later, a separate check requests deletion of only that exact file version if the account is absent. An existing account found by either check is preserved, including a disabled or recreated one; a failed check does not permit deletion. These cleanup routes do not read the file contents or bypass unresolved Apple account-deletion safeguards. Event delivery or processing can fail or be delayed. Retry windows are up to 7 days for account-deletion events and 24 hours for upload-completion events; unresolved cases require operational follow-up. These are retry limits, not waiting periods before deletion or guaranteed deletion deadlines. They do not replay all old account deletions or uploads, or change the recovery-copy periods below.

What this does not affect

How long it takes

For Apple permanent-account deletion, we remove existing cloud data and the account after safety checks, then check for late uploads against an eight-day boundary measured from confirmed revocation of sign-in credentials. Completion requires a new check started at or after that boundary confirming no residual data. Existing backups are not kept for eight days before deletion. Delays, failures or uncertain account states can postpone confirmation. Necessary processing records remain during that work, not a separate copy of medication contents. This eight-day check is not applied universally to ordinary in-app account deletion.

We act on deletion requests without undue delay, verify identity only as necessary, and notify you of the result or the reason for any lawful limitation within the period required by applicable law. We promptly remove or request deletion of live records in the account-deletion sequence. The separate retention and provider-deletion periods below are not waiting periods for handling your request. The provider‑held copies described above — the 7‑day Soft Delete window, the 7‑ and 28‑day Firestore recovery copies, and the 180-day ordinary logs and released-refund records, and the 400-day provider-required administrative audit logs — then become unavailable on their own schedules. When Google‑hosted Customer Data can no longer be recovered by us, the current Google Cloud Data Processing Addendum requires Google to delete it from its systems as soon as reasonably practicable and within a maximum of 180 days, unless applicable law requires storage. A product recovery deadline is therefore not a promise that every physical provider copy is erased on that same day.

Contact

Email: support@jansevtlabs.com