Delete your Room of Days account
If you use Room of Days as a guest, choose Me → Your save is yours → Erase everything. This removes the anonymous Firebase identity, cloud save, shared space, and on-device data, then starts a fresh blank guest profile.
In Room of Days, open Me, scroll to Your account, choose Delete account, and confirm with your password.
If the installed app shows an anonymous private service identity while cloud backup is off, use Me → Your account → remove private service identity. After confirmation, the app first turns off future place search requests. In a place-search-enabled installed build, this control is available only after the protected deletion service and owner-only room cleanup rules are active; it is not shown in the web app. Before cleanup, a protected callable creates or refreshes a service identity deletion tombstone for the anonymous Firebase UID. Firestore and Storage rules use the tombstone to block new save, shared-room, media, Spark, and Circle writes from other open app instances and late Firebase tokens. The installed app then uses an owner-only server lookup to find rooms carrying the immutable anonymous identity. A server deletion lock blocks room updates and new private Spark and Circle receipts while existing receipts are cleared from the server; the room and lock are deleted together. Only after a final server lookup finds no owned room does the app remove the save document and Firebase Auth identity. If App Check, tombstone creation, the lookup, server deletion lock, cleanup, or identity check cannot be confirmed, the identity is kept so you can retry with place-search consent still off.
This separate control does not erase your on-device Daybook, progress, manual or saved locations, journal media, or map preference. It also keeps the retained random installation ID, which is app-generated and is not a hardware or device ID. Per-identity and per-installation abuse counters are marked to expire 35 days after the last update for security and cost control. The service identity deletion tombstone remains after Auth deletion and is marked to expire 35 days after it is created or refreshed. Firestore deletes expired documents asynchronously afterward.
In-app deletion is immediate and permanent. It removes:
- your Firebase sign-in and email association;
- your cloud save backup; and
- your currently known published shared space, if any.
The in-app deletion also removes local progress, preferences, usage logs, and journal photos from that device, turns cloud backup off, and leaves a fresh device-only room. Export a backup first if you want to keep a personal copy.
Request deletion without the app
If you uninstalled Room of Days or cannot sign in, email us from the address attached to your Room of Days account. We will reply to verify the request and normally complete deletion within seven days of verification.
REQUEST ACCOUNT DELETIONNever send your password or a journal export. The request removes the same Firebase sign-in, cloud save, and currently known published shared space listed above. Room of Days does not retain the deleted Firebase account or its cloud save. Separate abuse counters follow the limited retention above, and an installation ID stored only in an installed app is not an account.