Data Deletion & Retention Policy

Last updated July 9, 2026

This policy describes how long Surdi Family Office retains different categories of data and how deletion requests are handled. The policy is reviewed at least annually by the account owner.

1. Retention periods

  • User accounts & roles: retained while the user is authorized to access the application. Removed within 30 days of offboarding.
  • Financial data you enter (entities, manual assets, valuations): retained for as long as the account is active, so historical net-worth charts remain accurate. Deleted on request.
  • Linked-provider data (Plaid / SnapTrade / CoinStats): refreshed on each sync. When an institution is disconnected, the provider access token is revoked and the linked account rows are removed on the next sync, within 30 days at the latest.
  • Daily net-worth snapshots: retained indefinitely to support long-range performance history. These do not contain third-party PII.
  • Operational and error logs: retained up to 12 months, then purged.
  • Authentication logs (Supabase): retained per the provider's default (currently 90 days).

2. Disconnecting an institution

Authorized users may disconnect a linked bank, brokerage, or crypto account at any time from within the app. Disconnection revokes the provider access token immediately and removes the associated account rows within 30 days.

3. Deletion requests

To request deletion of your account or of specific data, email the owner at bensurdi@gmail.com. Verified requests are honored within 30 days, subject to applicable legal and tax record-keeping requirements (e.g. transactions relevant to a tax year in progress may be retained until that year is closed).

4. Legal holds

Data subject to a legal, regulatory, or tax retention obligation may be preserved beyond the periods above until the obligation expires.

5. Backups

Encrypted database backups are retained by our hosting provider (Supabase) on a rolling window per their standard schedule. Deleted records age out of backups within that window.

6. Review

This policy is reviewed at least once per year and updated as our practices, subprocessors, or applicable laws change.