# Data Retention

> This page explains how long we keep different types of data and what happens when data is deleted. We believe in transparency about retention practices so you can make informed decisions about using our platform.

Source: https://www.lev.com/docs/learn/data-retention

Last updated: December 2025

---
Current Retention Periods

  Currently, most data is retained indefinitely while your account is active:

  **Retention Periods**

- **account_data:** Indefinite (while account active)
- **deal_data:** Indefinite (while account active)
- **email_data:** Indefinite (while account active)
- **documents:** Indefinite (while account active)
- **ai_logs:** Indefinite
- **audit_logs:** Indefinite
- **backups:** 30 days (automatically rotated)

  
    We are developing formal retention policies and will update this page when they are established.

    **When you close your account**, data is deleted upon request. See the Deletion section for details.
  

  Deletion

  How Deletion Works

  When data is deleted from Lev:

  

  Requesting Deletion

  **What you can request deleted:**

  

  
    **How to request:**

    Email trust@lev.com with:

    - Your account email
    - What you want deleted
    - Any specific timeframes or data types

    **Timeline:** We process deletion requests within 30 days.
  

  What Can't Be Deleted

  Some data may be retained even after deletion requests:

  - **audit_logs:** Required for SOC 2 compliance and security investigations
- **aggregated_analytics:** Anonymized data that can't be linked back to you
- **legal_holds:** If data is subject to legal proceedings
- **backup_copies:** Until backup rotation (30 days)

  Soft vs Hard Delete

  
    **Default behavior (soft delete):** When you delete something in the app (a deal, a document),
    it's hidden from view but the data is preserved. This allows for recovery if you deleted something accidentally.

    **Hard delete (on request):** When you explicitly request data deletion via trust@lev.com,
    we perform hard deletes that remove data from our systems.
  

  Backups

  **Backup Details**

- **frequency:** Continuous (point-in-time recovery)
- **retention:** 30 days
- **encryption:** AES-256 at rest
- **location:** AWS (same region as primary)
- **testing:** Regularly tested for recoverability

  **After deletion:** Data deleted from active systems remains in backups until those backups
  rotate out of the 30-day window.

  Data After Account Termination

  When you terminate your account:

  **Termination Timeline**

- **immediately:** Account deactivated, access removed
- **within_30_days:** Personal data deleted from active systems
- **30_days_after:** Backup copies rotate out
- **retained:** Anonymized analytics, audit logs (as required)

  
    Privacy requests
    General questions