Data Deletion — Church Media Kit

Version:
August 26th, 2026
Effective Date:
August 26th, 2026

This page explains how to request deletion of your Church Media Kit account and data, what gets deleted and when, what does not get deleted, and how to remove content already published to a connected destination like Meta. It supplements the Privacy Policy and Terms of Service.

How to request deletion

  • In-app: Go to Settings in Church Media Kit and use the account deletion option.
  • By email: Send a request from your account's registered email to privacy@churchmediakit.com.

Hekima's policy is to acknowledge a verifiable deletion request within 5 business days.

Export before you delete

The Service does not currently provide a portable account-data export. Before deletion, download any supported Studio files you need through the bounded local image-download flows. Those downloads are not a complete account export and do not include retained uploads, source or prompt inputs, publication manifests, provider records, credentials, logs, or third-party copies of live posts.

What gets deleted, and when

Hekima's deletion policy commitment, being implemented as a durable, retryable process, is:

  • An active-account deletion request is completed within 30 calendar days, subject to a documented legal hold, security investigation, or other lawful exception.
  • Deletion removes database records, private Cloudflare R2 source and working objects (such as uploaded sermon material and account assets), derived assets, and stored connection credentials. Database-driven deletion jobs identify the R2 objects due for removal and retry failed object deletion.
  • Backup copies are expected to expire within an additional 35 days after active deletion completes, absent a documented legal hold or statutory retention requirement.

What survives deletion

Some records are retained even after your account is deleted, because Hekima is required to keep them or because deleting them would compromise a legitimate integrity, legal, or security purpose:

  • Legal holds — material subject to a documented legal hold, subpoena, or investigation is preserved until the hold is lawfully lifted.
  • Billing, tax, and legally required records — retained for 6 years, or longer if required by law.
  • Security and authentication logs — retained for 90 days; breach and incident records — retained for 24 months.
  • Support records — retained for 24 months.
  • PostHog measurement records — account identity, product measurement, replay, and essential browser-error records already sent to PostHog are provider-held copies. Hekima does not yet operate an automated provider-deletion workflow for those copies. A verified request stops future account-linked browser measurement after the account is deleted; provider-held records remain subject to PostHog's applicable retention and deletion process.
  • Provider-held posts — content already sent to a connected destination (see below) is not deleted by your Church Media Kit deletion request.

See the Privacy Policy, Section 10, for the full retention matrix.

Meta-specific instructions

Deleting your Church Media Kit account removes locally stored Meta connection credentials from Church Media Kit. It does not itself revoke authorization in Meta. It does not delete or unpublish posts already published to Meta.

Church Media Kit does not currently provide a separate control to disconnect an individual Meta destination.

To remove a post that Church Media Kit published to your Meta destination, use Meta's own controls:

  1. Open the connected provider's app or page where the post was published.
  2. Locate the post.
  3. Use Meta's delete, unpublish, or archive option for that post.

Church Media Kit does not currently provide provider post IDs or URLs through a portable export. Use the connected Meta account's own publication history to locate posts for removal.

Questions

Send a question about deletion, export, or retention to privacy@churchmediakit.com.