Legal · Account & Data Deletion

Account & Data Deletion

Last updated: July 30, 2026

1. Summary

This page explains how to delete your account and the personal data associated with it across the Fjord service and its clients (the Fjord web platform, the Fjord iOS app, and the fj command-line interface). The Fjord clients are sign-in surfaces: they do not hold accounts themselves, and the account you sign in with is one of two kinds, each deleted in its own place.

  • A Fjord Account created on this platform. Delete it from your account settings, or request deletion by email.
  • A self-hosted or third-party Forgejo account that you connect with a personal access token. That account lives on your own Forgejo instance, not on Fjord, and is deleted there.

2. Deleting a Fjord account

To permanently close your Fjord account and delete its data:

  • Sign in at fjord.sh with your Fjord Account (the same account the iOS app and fj CLI use).
  • Go to Account → Delete account, or open fjord.sh/account/delete directly.
  • Confirm by typing your email address and ticking the acknowledgement. Sign-in on fjord.sh goes through your identity provider, so there is no password to re-enter. This closes the account immediately and signs you out of every device, including the iOS app and the fj CLI.

You can also request deletion without signing in by emailing [email protected] from the address on your account.

3. What is deleted, and what is kept

When you delete a Fjord account:

  • Deleted: your account profile (email, display name, any stored credentials, MFA devices), your sessions and issued tokens for the iOS app and fj CLI, and your connected-account settings.
  • Recoverable for 90 days, then anonymized: a recoverable copy of the account is kept during this window in case you change your mind, and you can still export your data. To recover within the window, contact [email protected]. After it closes, your personal data is anonymized rather than hard-deleted and can no longer be recovered.
  • Not deleted automatically: any managed forges you own keep running and continue to bill until you delete them. Cancel or delete them from your dashboard first. The contents of a forge are the data you stored in Forgejo, and are removed when the forge is deleted.
  • Retained after anonymization: a minimal set of non-personal records is kept where the law requires, specifically your legal-acceptance history, license records, and billing and tax records (some for up to 10 years), as described in our Privacy Policy. These are kept for legal, tax, and fraud-prevention obligations, not to operate your closed account.

If you want a copy of your data, export it before deleting from your account export; after the retention window it cannot be recovered.

4. Deleting a connected Forgejo account

If you signed in with a personal access token for a self-hosted or third-party Forgejo instance, that account is not held by Fjord. To remove Fjord's access, revoke the token in your Forgejo instance under Settings → Applications. To delete the account itself, use that instance's /user/settings/account page. Signing out of the Fjord app and removing the app from your device also deletes the locally stored token.

5. Data stored on your device

The Fjord iOS app stores your access token encrypted on the device and caches content you view. Signing out of the app, or uninstalling it, removes this local data from the device. It does not by itself delete your Fjord or Forgejo account, which you delete using the steps above.

6. Questions

For help with deletion or to make a deletion request, contact [email protected]. For broader privacy questions and your rights over your personal data, see our Privacy Policy or write to [email protected].