You control your account

Account deletion

This page explains the secure deletion flow without relying on an app store. Requests remain disabled until the technical and legal controls are complete.

Last updatedAugust 19, 2026
Operational pilot version. Before the open commercial launch, the controller's full legal identity and legal review must be completed, including the legal basis under Article 11 of Brazil's LGPD for sensitive data and retention periods by category.

Availability

Requests are not enabled yet

The deletion service is not connected in this version. The button stays disabled, nothing will be sent and no account will change.

Available only after the service is safely enabled.

When the flow is active, you will be able to

  • start with secure identity verification;
  • track progress and resolve blockers without entering internal IDs;
  • cancel within the allowed period;
  • use a recovery code for status and a receipt after completion.

The deletion flow does not send email addresses, phone numbers, identifiers, health data or tokens to third-party analytics.

1. How to request deletion

When the service is enabled, the control on this page and Delete my account in the app will start the same secure flow. While the button is disabled, this page is informational only.

The request will require identity verification. Never enter a password, full document number, intake answer or other health data in free-text fields.

2. Verification and progress

After verification, the flow itself will show the request state and cancellation deadline. Public responses are always generic so they cannot reveal whether an account exists.

Deletion applies to the whole account. If you belong to more than one organization, the safe summary will show the scope before confirmation.

3. What happens

The account loses access, sessions and tokens are revoked, and data directly controlled by Wellmade is deleted or anonymized according to purpose.

Training data held by a professional or organization may require coordination with that controller, especially when it forms part of service records.

4. What may be retained

We may keep minimal billing, fraud prevention, security, consent and legal-claims records for the applicable period. Access stays restricted and the data is not reused for product or marketing.

5. Alternatives to deletion

Data correction, optional-consent withdrawal, ending one relationship and export are different rights. The deletion flow will not perform an alternative without your explicit choice.